Remotery

Application Security Engineer

Posted Jul 18

This is a fully remote position, open to applicants in India.

📋 Description

• Provide engineering support focused on security for web and API applications.

• Integrate security measures into the Secure SDLC, encompassing threat modeling and security design evaluations.

• Ensure compliance with organizational security protocols and industry best practices.

• Administer and oversee vulnerability scanning tools (e.g., Tenable or similar).

• Set up, adjust, and maintain scanning policies and schedules.

• Enhance tool performance to increase accuracy and minimize false positives.

• Implement and sustain SAST and DAST tools within CI/CD pipelines.

• Collaborate with engineering teams to ensure smooth integration and actionable insights.

• Identify and verify vulnerabilities through both automated and manual testing.

• Conduct false-positive analysis and evaluate exploitability.

• Review scanning results and monitor vulnerabilities to resolution.

• Work with development teams for prompt remediation efforts.

• Validate vulnerabilities using manual testing and offensive security techniques.

• Clearly document attack paths, reproduction steps, and impact assessments.

• Conduct both manual and automated security testing for applications and APIs.


⛳️ Requirements

• Bachelor’s degree in computer science, Information Security, or a related field.

• 3–6 years of experience in Application Security or a comparable area.

• Practical experience with SAST, DAST, and vulnerability scanning tools.

• Strong knowledge of the OWASP Top 10, as well as web application and API security.

• Familiarity with CI/CD pipeline integrations (e.g., Jenkins, GitHub Actions, GitLab).

• Understanding of secure coding practices and common vulnerability patterns.

• Knowledge of scripting languages (Python, Bash, or similar) is an advantage.

• Experience with threat modeling and secure design reviews is preferred.

• Exposure to red teaming or penetration testing techniques is an advantage.

• Relevant certifications (e.g., OSCP, CEH, GWAPT) are a plus.


🏝️ Benefits

• E-Verify participation

• Equal Opportunity Employer

People also viewed

Fusion Practices5 days ago

Windows Infrastructure and Application Migration Engineer

IN flagIndia OnlyFull-timeApplication Engineer
ApplyView job
Lightology5 days ago

Web Application Firewall Engineer

US flagUnited States OnlyFull-timeApplication Engineer$100k – $120k/year
ApplyView job
Trimark Associates, Inc.5 days ago

Application Support Engineer II

US flagCalifornia OnlyFull-timeApplication Engineer$90k – $120k/year
ApplyView job
Intuitive5 days ago

Clinical Applications Engineer

CH flagSwitzerland OnlyFull-timeApplication Engineer
ApplyView job
Bonterra5 days ago

Senior Application Security Engineer

US flagUnited States OnlyFull-timeApplication Engineer$100k – $130k/year
ApplyView job
Nokia6 days ago

Senior Director of Application Engineering

US flagCalifornia OnlyFull-timeApplication Engineer$153.5k – $285.2k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers