Application Security Engineer
Core
Drive application security initiatives by bridging security concepts with engineering practices to uplift the organization's security posture.
Role type
Senior Application Security Engineer (IC)
Builds
Automated security tools, security-first culture, and strategic security advice integrated into the SDLC.
Domain
Application Security, DevSecOps, Cloud Infrastructure
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application Security principles, DevSecOps, Cloud Infrastructure (Azure, Google Cloud, Vertex AI), Web and Mobile application security, OWASP frameworks, Container Security, Kubernetes, SAST/DAST/SCA tools, Programming (.NET/C#, JavaScript, Python), Threat Modelling, Security Architecture
Preferred skills
Industry certifications (SANS GWAPT/GPEN, OSCP, OSWE, CISSP)
Technologies
Google Gemini, Databricks, Azure, Google Cloud, Vertex AI, Kubernetes, SAST, DAST, SCA
Responsibilities
Champion a security-first culture across the organization, Enhance the SDLC through security consultations and code reviews, Build and scale automated security tools, Evaluate new application security technologies, Drive vulnerability triage and remediation, Deliver application security training to engineering teams
Seniority
Senior, hands-on IC
