Application Security Engineer

DigiCert

Bengaluru

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Generous time off policies
Top shelf benefits
Education, wellness, and lifestyle support

Job summary

DigiCert is looking for an Application Security Engineer to join their cybersecurity team in Bengaluru, India. This role involves integrating security practices into the Software Development Life Cycle (SDLC) and collaborating with various teams to identify and remediate vulnerabilities. The ideal candidate should have a Bachelor's degree in computer science or cybersecurity, with 2+ years of relevant experience. Benefits include generous time off policies and top shelf benefits.

Qualifications

  • 2+ years of experience in cybersecurity, software engineering, or DevOps, with at least 1+ years focused on application security.
  • Solid understanding of common web application vulnerabilities (e.g., OWASP Top 10, CWE) and remediation strategies.
  • Hands-on experience with CI/CD pipelines is a plus.

Responsibilities

  • Support integration of security controls across the SDLC.
  • Assist in security assessments including code analysis and penetration testing.
  • Collaborate with software engineers to promote secure development practices.

Skills

Programming/scripting languages (Python, JavaScript, Java)
Familiarity with DevSecOps tools (SAST, DAST, SCA)
Strong communication and collaboration skills
Attention to detail
Ability to analyze code

Education

Bachelor’s degree in computer science, cybersecurity, or related field

Tools

CI/CD tools (GitHub Actions, GitLab CI, Jenkins)
Security standards and frameworks (NIST, OWASP SAMM, ISO 27001, PCI DSS)

Job description

Who we are

We're a leading, global security authority that's disrupting our own category. Our encryption is trusted by the major ecommerce brands, the world's largest companies, the major cloud providers, entire country financial systems, entire internets of things and even down to the little things like surgically embedded pacemakers. We help companies put trust - an abstract idea - to work. That's digital trust for the real world.

Job summary

As an Application Security Engineer within our cybersecurity team, you will help safeguard the company’s web applications and services by supporting the integration of security practices into the Software Development Life Cycle (SDLC). You will collaborate with development, DevOps, and security teams to identify, assess, and remediate vulnerabilities, contribute to secure coding practices, and assist in implementing DevSecOps tooling and processes. This role is ideal for someone with a strong technical foundation who is eager to grow within the product/application security space.

What you will do
  • Support the integration of security controls and best practices across various phases of the SDLC.
  • Assist in security assessments, including static and dynamic code analysis, open-source dependency analysis, and limited penetration testing.
  • Participate in manual and automated code reviews to identify potential vulnerabilities and coding flaws.
  • Collaborate with software engineers to promote secure development practices, including the use of security testing tools in CI/CD pipelines.
  • Contribute to the evaluation, deployment, and tuning of DevSecOps tools such as SAST, DAST, and SCA platforms.
  • Help maintain secure deployment workflows and support security automation efforts.
  • Participate in cross-functional security reviews of new features and systems with guidance from senior engineers.
  • Stay up to date on current security threats, vulnerabilities, and best practices in application security.
  • Assist with triaging vulnerabilities from internal scans, bug bounty submissions, or external assessments.
  • Document processes and playbooks to support consistent and scalable security practices.
  • Provide input to the development of internal security standards and reference architectures.
  • Support remediation efforts in collaboration with engineering teams.
  • Participate in promoting a security-first culture across the organization.
  • Other duties and responsibilities as assigned.
What you will have
  • Bachelor’s degree in computer science, cybersecurity, or a related technical field.
  • 2+ years of experience in cybersecurity, software engineering, or DevOps, with at least 1+ years focused on application or product security.
  • Experience with programming/scripting languages such as Python, JavaScript, or Java.
  • Familiarity with DevSecOps tools (SAST, DAST, SCA) and secure SDLC methodologies. nice to have if they have a solid understanding of common web application vulnerabilities (e.g., OWASP Top 10, CWE).
  • Solid understanding of common web application vulnerabilities (e.g., OWASP Top 10, CWE) and remediation strategies.
  • Ability to analyze code and spot security issues with guidance.
  • Strong communication and collaboration skills.
  • Strong attention to detail and willingness to learn new technologies.
Nice to have
  • Hands-on experience with CI/CD pipelines (e.g., GitHub Actions, GitLab CI, Jenkins).
  • Familiarity with security standards and frameworks such as NIST, OWASP SAMM, ISO 27001, or PCI DSS.
  • Experience working in a regulated environment (e.g., financial services, healthcare, or government).
  • Professional certifications such as Security+, CEH, eJPT, or equivalent (OSCP or similar preferred but not required).
  • Exposure to cloud platforms such as AWS, Azure, or GCP.
  • Experience contributing to or managing a bug bounty triage process.
Benefits
  • Generous time off policies
  • Top shelf benefits
  • Education, wellness and lifestyle support
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Ola • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Application Security Specialist
Application Security Specialist

Pearson India Education Services Pvt Ltd • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Application Security Lead | Offshore
Application Security Lead | Offshore

Photon • Hyderabad

On-site
INR 850,000 - 1,800,000
Senior Application Security Engineer
Senior Application Security Engineer

FloQast, Inc. • Pune District

On-site
INR 1,500,000 - 2,500,000
Application Security Architect
Application Security Architect

Mettler-Toledo, Inc. • Bengaluru

Hybrid
INR 2,000,000 - 3,000,000
Hybrid working model
Family mediclaim benefits
Wide portfolio of training opportunities
+1
Application Security Engineer
Application Security Engineer

Whitefield Careers • Bengaluru

On-site
INR 800,000 - 1,200,000
Application Security Lead-CXA
Application Security Lead-CXA

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,800,000 - 2,500,000
Application Security Engineer
Application Security Engineer

Byline Learning Solutions • Pune District

On-site
INR 1,200,000 - 1,800,000
Application Security
Application Security

Airtel • India

On-site
INR 1,200,000 - 2,400,000
Security-focused culture
Consultant - Application Security Job
Consultant - Application Security Job

YASH Technologies • Bengaluru

On-site
INR 1,800,000 - 3,200,000