Application Security Engineer

healthcare

Bengaluru

Hybrid

INR 1,200,000 - 2,100,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Solventum is seeking an Application Security Engineer to strengthen our healthcare information systems. You will operate security tool environments, run DAST across web apps and APIs, and collaborate with developers to remediate findings.

Required: 3–6 years of experience, Qualys/AppSec, RESTful API testing, and cloud familiarity. This hybrid India-based role offers growth and exposure to governance standards.

Qualifications

  • Bachelor’s Degree with 3–6 years of experience.
  • Experience administering Qualys VM or AppSec.
  • Experience working across multiple teams and disciplines.
  • Strong attention to detail and analytical skills.
  • Risk-based prioritization and sound judgment.
  • Knowledgeable with AWS or Azure cloud environments.
  • Familiarity with best practice software security requirements in industry standard compliance programs (NIST, HITRUST, FedRAMP, etc.).
  • Experience developing or testing RESTful APIs with an understanding of Postman and/or Swagger files.
  • Strong communication skills, ability to work independently or collaborate with application teams.

Responsibilities

  • Operate and enhance application security tool environments.
  • Author automation scripts for recurring tasks (Python preferred).
  • Setup and execute authenticated and unauthenticated dynamic application security testing (DAST) scans against web applications and APIs using approved tools.
  • Manage scan scheduling, configuration, and coverage across application security tool environments.
  • Tune scanning profiles to reduce false positives and improve detection accuracy.
  • Ensure DAST scanning aligns with release cycles and risk-based scanning requirements.
  • Validate DAST findings to confirm exploitability and business impact.
  • Categorize vulnerabilities using industry standards (e.g., OWASP Top 10).
  • Prioritize findings based on risk, application criticality, and exposure.
  • Eliminate false positives and duplicate findings prior to developer handoff.
  • Partner with development and platform teams to explain DAST findings and remediation expectations.
  • Track remediation progress and verify fixes through re‑scanning or targeted validation.
  • Maintain accurate vulnerability records in enterprise tracking systems.
  • Escalate overdue or high‑risk vulnerabilities in accordance with policy.
  • Working with application teams to validate that software applications meet security guidelines and compliance standards such as HIPPA, SOC II, GDPR, NIST 800-53, etc.
  • Building solutions that collect and present vulnerability and compliance data to Solventum’s leadership.

Skills

Qualys VM or AppSec
Team collaboration
Attention to detail
Risk-based prioritization
AWS or Azure
Compliance knowledge (NIST, HITRUST, F

Education

Bachelor’s Degree & 3-6 years experience

Tools

RESTful API testing (Postman/Swagger)

Job description

Job Description
Application Security Engineer
3M Health Care is now Solventum

At Solventum, we enable better, smarter, safer healthcare to improve lives. As a new company with a long legacy of creating breakthrough solutions for our customers’ toughest challenges, we pioneer game-changing innovations at the intersection of health, material and data science that change patients' lives for the better while enabling healthcare professionals to perform at their best. Because people, and their wellbeing, are at the heart of every scientific advancement we pursue.

We partner closely with the brightest minds in healthcare to ensure that every solution we create melds the latest technology with compassion and empathy. Because at Solventum, we never stop solving for you.

The Impact You’ll Make in this Role

Joining a team of cybersecurity professionals motivated to secure Solventum's healthcare information systems and the personal health information of our clients and their patients.

  • Operating and enhancing application security tool environments.
  • Authoring automation scripts for reoccurring tasks (Python preferred)
  • Setup and execute authenticated and unauthenticated dynamic application security testing (DAST) scans against web applications and APIs using approved tools.
  • Manage scan scheduling, configuration, and coverage across application security tool environments.
  • Tune scanning profiles to reduce false positives and improve detection accuracy.
  • Ensure DAST scanning aligns with release cycles and risk-based scanning requirements
  • Validate DAST findings to confirm exploitability and business impact.
  • Categorize vulnerabilities using industry standards (e.g., OWASP Top 10).
  • Prioritize findings based on risk, application criticality, and exposure.
  • Eliminate false positives and duplicate findings prior to developer handoff.
  • Partner with development and platform teams to explain DAST findings and remediation expectations.
  • Track remediation progress and verify fixes through re‑scanning or targeted validation.
  • Maintain accurate vulnerability records in enterprise tracking systems.
  • Escalate overdue or high‑risk vulnerabilities in accordance with policy.
  • Working with application teams to validate that software applications meet security guidelines and compliance standards such as HIPPA, SOC II, GDPR, NIST 800-53, etc.
  • Building solutions that collect and present vulnerability and compliance data to Solventum’s leadership.
Your skills & expertise (Minimum qualifications)
  • Bachelor’s Degree & 3-6 years of experience
  • Experience administering Qualys VM or App sec
  • Experience in working across multiple teams and disciplines
  • Strong attention to detail and analytical skills.
  • Risk-based prioritization and sound judgment.
  • Knowledgeable with AWS or Azure cloud environments
  • Familiarity with best practice software security requirements in industry standard compliance programs (NIST, HITRUST, FedRAMP, etc.)
  • Experience developing or testing RESTful APIs with an understanding of Postman and/or Swagger files
  • Strong communication skills, ability to work independently or collaborate with application teams
Additional qualifications (Nice to have)
  • Experience administering Qualys or WebInspect vulnerability management and application security modules
Work location
  • Hybrid – India Only
Travel

May include up to 10%

Relocation Assistance

Is not authorized.

Supporting Your Well-being

Solventum offers many programs to help you live your best life – both physically and financially. To ensure competitive pay and benefits, Solventum regularly benchmarks with other companies that are comparable in size and scope.

Diversity & Inclusion

(*) We are an equal opportunity employer and value diversity at our company. We do not discriminateon the basis ofrace, religion, gender,sexual orientation, age, civil status, disability, family status, or membership of the travelling community.

Solventum Global Terms of Use and Privacy Statement

Carefully read these Terms of Use before using this website. Your access to and use of this website and application for a job at Solventum are conditioned on your acceptance and compliance with these terms.

Please note that all email communications from Solventum regarding job opportunities with the company will be from an email with a domain of @solventum.com. Be wary of unsolicited emails or messages regarding Solventum job opportunities from emails with other email domains.

Please note: your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

SOLVENTUM • Bengaluru

Hybrid
INR 1,200,000 - 2,000,000
Application Security Engineer
Application Security Engineer

Solventum- • Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Application Security Engineer
Application Security Engineer

IND KCI Medical India Private limited • Bengaluru

Hybrid
INR 1,200,000 - 2,400,000
Vulnerability Management Engineer
Vulnerability Management Engineer

healthcare • Bengaluru

Hybrid
INR 1,800,000 - 2,800,000
Hybrid work
Vulnerability Management Engineer
Vulnerability Management Engineer

Solventum- • Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Hybrid work model
Travel up to 10%
Software Engineer - DevOps
Software Engineer - DevOps

healthcare • Bengaluru

Hybrid
INR 1,800,000 - 3,200,000
Hybrid work arrangement
Cyber Metrics & Reporting Manager
Cyber Metrics & Reporting Manager

healthcare • Bengaluru

Hybrid
INR 4,200,000 - 7,000,000
Vulnerability Management Engineer
Vulnerability Management Engineer

IND KCI Medical India Private limited • Bengaluru

Hybrid
INR 900,000 - 1,500,000
Hybrid work
Engr Software Devt
Engr Software Devt

3mcompany • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Hybrid work arrangement
DevOps Engineer - Cloud & Datacenter Operations
DevOps Engineer - Cloud & Datacenter Operations

healthcare • Bengaluru

Hybrid
INR 1,500,000 - 2,800,000