Application Security expert
Bengaluru, KA, India
- Experience
- 6–8 years
- Employment
- Full-time
- Work mode
- Onsite
- Salary
- ₹12 L–17 L / year
- Deadline
- Apply by 1 Nov 2026
- Posted
- 2025-07-04
Required skills
| Skill | Experience | Level |
|---|---|---|
| Application Security | 5+ years | Intermediate |
| Risk Management | 3+ years | Intermediate |
| Technical Documentation | 3+ years | Intermediate |
| Compliance Management | 3+ years | Intermediate |
| Cloud Security Framework | 3+ years | Intermediate |
About the role
Application Security expert
Job Overview:
The Application Security Expert will be responsible for ensuring the security of the software
applications throughout their development lifecycle. This role requires in-depth knowledge of
security best practices, coding standards, and the ability to work closely with development and
DevOps teams to secure applications, prevent vulnerabilities, and ensure compliance with
industry standards.
Key Responsibilities:
• Security Integration: Collaborate with software development teams to integrate
security practices into the Software Development Life Cycle (SDLC).
• Vulnerability Assessments: Conduct regular security assessments, including code
reviews, penetration testing, and vulnerability scanning of applications.
• Threat Modeling: Identify, document, and mitigate potential security threats,
vulnerabilities, and risks in applications and systems.
• Security Tools: Implement and manage security tools such as SAST (Static Application
Security Testing), DAST (Dynamic Application Security Testing), and IAST (Interactive
Application Security Testing) tools.
• Security Awareness: Provide security training to developers and stakeholders on
secure coding practices and emerging security threats.
• Compliance: Ensure applications comply with relevant security regulations, standards,
and frameworks such as GXP, PII, SoX, CMMI etc.
• DevSecOps: Collaborate with DevOps teams to implement security practices in CI/CD
pipelines, ensuring automated security checks are in place.
• Risk Management: Conduct risk assessments for new projects and recommend
appropriate security controls to mitigate risks.
• Documentation: Develop and maintain security guidelines, policies, and
documentation for application security processes and best practices.