Product Security Engineer -III ( Application Security)

5 - 10 years

11 - 16 Lacs

Posted:3 weeks ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

What You'll Do

Avalara is seeking a Security Engineer to join our Application Security team. In this role you will be tasked with designing, implementing and deploying security engineering tooling for our code scanning and web scanning pipelines. You will help us scale the traditional application security mode of code auditing into automated pipelines to find security vulnerabilities such as XSS, SSRF, RCE, CSRF and SQLi across Avalaras code base. You will leverage your software skills and security knowledge to help uplift the security posture of our products and services. You will report into the Senior Manager of Application Security.

What Your Responsibilities Will Be

  • Design, build and deploy microservice-based automation leveraging manually discovered findings to scale automated scanning and vulnerability discovery efforts
  • Identify tooling gaps in static and dynamic scanning technologies and build out tooling to correct coverage and findings accuracy.
  • Provide security guidance and consultancy to engineering service owners to remediate known vulnerabilities. Build company-wide remediation burndowns plans.
  • Perform threat modelling, design, and code reviews on an as-needed basis to assess software security and service posture, to lead future product roadmaps and requirements.

What You'll Need to be Successful

  • B.S. in Computer Science, Computer or Electrical Engineering, Mathematics or a related field.
  • Programming skills in at least one of Java, Go, Python, .NET.
  • Minimum of 5 years work in application security, with hands-on experience in SCA, SAST, DAST and related code scanning technologies.
  • Experience identifying, evaluation, and remediating application vulnerabilities including the OWASP Top-10 and/or CWE Top-25.
  • Experience with CI/CD build pipelines and AWS/GCP cloud provider IaC provisioning technologies.

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
Avalara Technologies logo
Avalara Technologies

Software Development

Durham NC

RecommendedJobs for You

thiruvananthapuram

noida, new delhi, pune, bengaluru