All jobs
NeST Digital logo

Application Security Engineer

NeST Digital · Posted today

  • Bengaluru, Karnataka, India (On-site)
  • Full-time

About the role

Application security engineer with expertise in application security and cloud security, as well as significant experience with current security best practices as efficiently and effectively applied to the development of existing and future cloud-hosted and on-premises software products.

Key Responsibilities

  •  Support overall secure development lifecycle activities to incorporate robust security into all product development stages and activities.
  •  Perform static and dynamic security testing for development projects; work with project teams to evaluate the risk exposure of the findings; drive the effective design, prioritization, and implementation of remediating controls in collaboration with development teams.
  •  Provide expert technical guidance for application security matters related to various software development activities spanning cloud, on-prem, and controls software.
  •  Stay abreast of application security best practices, technology trends, tools, and frameworks.
  •  Provide vulnerability prioritization and guidance on remediation.

Required Skills / Experience

  •  Hands-on experience with application security scanning tools and how to manage vulnerability findings: SAST, DAST, and SCA.
  •  Experience reviewing architecture design documents for security input.
  •  Extensive experience with agile methodologies.
  •  Experience with security tools such as Synk, Semgrep, SonarQube, Veracode, Burp Suite, and Wiz.
  •  Experience with Application integration strategies and security risks.
  •  Strong knowledge of application security and cloud security architecture.
  •  In-depth knowledge of security standards and best practices (OWASP, SANS25, etc.) as it relates to cloud, web, and mobile applications.
  •  Experience in analyzing the security of Java applications and cloud-native applications.
  •  Ability to read and write one or more common programming languages such as Java, JavaScript, C/C++, Python, including at least two years of hands-on software development within a modern DevOps and cloud-native environment.
  •  Good understanding of Linux and Windows OS
  •  Experience with cloud computing platforms (e.g., AWS, Azure, GCP) and containerization technologies (e.g., Docker, Kubernetes).
  •  Knowledge of secure software development practices and DevSecOps principles.

Skills

JavaCloud-nativePythonDevOpsLinuxWindowsAWSAzureGCPDockerKubernetesDevSecOps
Application Security Engineer at NeST Digital, Bengaluru, Karnataka, India (On-site) | Quark9