Application Security Engineer (Appsec) - Bengaluru
OmnissaMatch Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessLog in to see why each signal reads the way it does.
Job Description
Structured overview of role & requirementsAbout This Role
Lead end-to-end application security testing and secure code reviews for Web, Mobile, and Thick Client apps across the product suite.
Drive threat modeling, security architecture reviews, and root cause analysis for critical vulnerabilities, collaborating closely with product and engineering teams.
Implement and improve scalable security processes, automation (e.g., Semgrep), and development guardrails to enhance overall product security posture.
Minimum Requirements
2 to 8 years of experience in Application/Product Security including mandatory penetration testing and manual source code reviews.
Hands-on expertise in Web, Mobile (Android/iOS), and Thick Client security testing and manual code reviews across multiple languages (Java, Kotlin, Swift, JS, Python, C#/.NET).
Experience with security tools and automation such as Semgrep, SAST/DAST, and custom scripts.
Work Experience Required: 2 to 8 years; Notice Period: Not explicitly mentioned in the JD.
Ideal Candidate Profile
Technically deep individual contributor with experience leading security initiatives in product environments involving multiple platforms and languages.
Comfortable working directly with product and engineering teams to influence secure design and remediation strategies early in development.
Experienced in threat modeling, secure design patterns, and integrating security practices into CI/CD pipelines and automation workflows.
