Senior Engineer, Application Security

3 - 8 years

20 - 35 Lacs

Posted:1 day ago| Platform: Naukri logo

Apply

Work Mode

Hybrid

Job Type

Full Time

Job Description

Job Title- Senior Application Security Engineer

Shift- Hybrid (2 days a week)

Senior Engineer

You excel at the core of Application Security from secure design reviews, threat modeling to vulnerability discovery via penetration tests and remediation and bring an engineering mindset that enhances your impact. You're also passionate about building internal tools, scripting automation, and scaling security practices across diverse tech stacks as part of Cvent's Application Security Research & Engineering (ASRE) program.

What you will be doing:

  • Integrate and scale security across the SDLC, embedding tools like SAST, DAST, and SCA within CI/CD pipelines.
  • Perform threat modeling, secure code and design reviews, penetration testing and risk assessments for new and existing featuresincluding cloud-native and AI/ML systems.
  • Develop internal tools to automate security testing, support securing cloud-native applications using AWS CDK (CDF), and governance processes using scripting languages like Python, JavaScript, TypeScript, or similar.
  • Collaborate with engineering teams to remediate vulnerabilities identified via scans, manual testing, or external assessments.
  • Partner with product and engineering teams to improve the security posture of APIs, web apps, mobile apps, and infrastructure.
  • Communicate risks clearly to technical and non-technical audiences and support compliance efforts with ISO 27001, SOC2, and PCI.

What you will need for this position:

  • 6+ years of hands-on experience in application security or secure software development.
  • Strong scripting/programming skills able to automate tasks and build internal tools using

    Python, JavaScript, Bash

    , or similar.
  • Experience with CI/CD toolchains and integration of security tools in SDLC.
  • Strong familiarity with cloud platforms (AWS-preferred, GCP, or Azure) and principles of cloud-native security.
  • Proficiency in security testing tools (e.g. BurpSuite, Checkmarx, Mend, Veracode, Fortify, ZAP, etc.).
  • Strong grasp of OWASP Top 10, CWE, SANS Top 25, secure coding practices, and web application vulnerabilities.
  • Experience securing

    AI/ML pipelines

    and understanding of adversarial ML or model privacy concerns.
  • Exposure to

    DevSecOps

    , SBOMs, IaC security, or supply chain risk management
  • Security certifications such as

    AWS Certified Security Specialty

    ,

    AWS Certified Solutions Architect Associate/Professional

    ,

    CSSLP

    ,

    OSWE

    ,

    GWAPT

    ,

    CISSP

    ,

    OSCP

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
Cvent logo
Cvent

Software and Technology, Event Management

Tysons Corner

RecommendedJobs for You