Live opening · Posted 27 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
We're looking for an Application Security Engineer who can proactively identify and mitigate security risks across our applications, APIs, and cloud infrastructure. This role requires a strong understanding of secure coding practices, hands-on experience in VAPT, and the ability to work closely with engineering teams to build secure and scalable products.
Responsibilities:
Perform Vulnerability Assessment and Penetration Testing (VAPT) across web, mobile, and APIs.
Conduct manual secure code reviews to identify vulnerabilities beyond automated tools.
Partner with engineering teams to remediate security issues and implement best practices.
Identify and assess security risks in cloud environments (AWS preferred), including IAM, networking, and misconfigurations.
Support incident response and threat analysis when required.
Integrate security into the SDLC (Shift Left Security approach).
Document findings, provide actionable recommendations, and track resolution.
Requirements:
Hands-on experience with VAPT and secure code reviews.
Ability to read and analyze code in Golang, Python, Java, and Node.js .
Strong understanding of common vulnerabilities (OWASP Top 10).
Experience with web, mobile, and API security testing.
Knowledge of AWS security fundamentals (IAM, networking, misconfigurations).
Strong problem-solving mindset with a proactive approach to security.
Experience with bug bounty programs / CTFs / security research.
Familiarity with tools like Burp Suite, Metasploit, OWASP ZAP, etc.
Understanding of DevSecOps practices.
Ability to balance security with product and business needs.
Strong collaboration and communication skills.
Experience
4-7 yrs
More openings worth a look
Recently tracked roles with full details and direct application links.