





Strong employer brand, metro Bangalore location, and mid-level security role increase applicant competition.
Core application security skills transfer across industries, though healthcare regulatory knowledge adds moderate constraint.
Explicit 5–8 years requirement and many mandatory security technologies make screening stringent.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Design, implement, and manage authentication, authorization, and identity management solutions across enterprise applications.
Drive application security by remediating vulnerabilities, conducting secure code and design reviews, threat modeling, and reducing security risks throughout the software development lifecycle.
Collaborate across engineering, architecture, DevOps, and cloud teams to embed security controls and recommend security technologies, frameworks, and architectures for cloud-native applications, APIs, and microservices.
Bachelor's Degree in Computer Science, Software Engineering, Information Technology, or equivalent vocational education.
5–8 years of experience in software engineering, application development, or application security with a minimum of 3+ years hands-on implementing secure coding practices and application security controls.
Proficiency in Java (Spring Boot, Spring Security) and/or C# (.NET Core, ASP.NET Core) with deep understanding of security-by-design principles and secure coding standards.
Experience with Identity and Access Management protocols (OAuth2, OpenID Connect, JWT, SAML), secure API design, and security testing tools (SAST, DAST, SCA) in Microsoft Azure and/or AWS cloud environments.
Experienced security engineer capable of integrating security across distributed, enterprise-scale cloud-native applications using modern technologies and frameworks.
Demonstrates strong application security skills including threat modeling, vulnerability assessment, and hands-on remediation within DevSecOps environments and CI/CD pipelines.
Well-versed in identity management, access control (RBAC), secrets management, and compliance with data protection and privacy regulations relevant to sensitive data.