Application Security Engineer

Cloudxtreme

Hyderabad

On-site

INR 1,400,000 - 2,600,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Cloudxtreme is seeking an experienced Application Security Engineer to strengthen our security posture across products and platforms. You will work with Checkmarx, Zafran, ThreatModeler, and Qualys to proactively identify, assess, and mitigate risks.

You will collaborate with development, DevOps, cloud, and architecture teams to implement secure coding practices and integrate security throughout the SDLC. The role requires 5–8 years of hands-on AppSec experience and face-to-face collaboration in

Qualifications

  • Strong understanding of Application Security, OWASP Top 10, and secure coding standards.
  • Hands-on experience with Checkmarx (SAST), Zafran, ThreatModeler, and Qualys.
  • Experience working with CI/CD pipelines (Jenkins, GitHub Actions, GitLab CI, Azure DevOps, etc.).
  • Knowledge of API security, cloud environments (AWS/Azure/GCP), and DevSecOps principles.
  • Ability to interpret complex security issues and communicate them clearly.

Responsibilities

  • Perform SAST scans using Checkmarx; analyze vulnerabilities and coordinate remediation with development teams.
  • Use Zafran for advanced code analysis and automated security insights.
  • Build, update, and maintain threat models using ThreatModeler to ensure secure application design.
  • Conduct vulnerability scanning and compliance assessments using Qualys.
  • Integrate AppSec tools into CI/CD pipelines and automate routine security checks.
  • Conduct manual code reviews, threat assessments, and risk evaluations.
  • Provide security guidance to engineering teams and lead secure coding initiatives.
  • Document vulnerabilities, remediation plans, and best practices.

Skills

Application Security
OWASP Top 10
Secure coding
CI/CD security
Security threat modeling
Communication

Tools

Checkmarx
Zafran
ThreatModeler
Qualys
Jenkins
GitHub Actions
GitLab CI
Azure DevOps

Job description

Location: Hyderabad

Experience: 5 to 8years


Drive: Face to Face - Hyderabad


Job Description:


About the Role

We are looking for a highly skilled Application Security Engineer to strengthen our security posture across products and platforms. The role involves working with industry-leading tools such as Checkmarx, Zafran, ThreatModeler, and Qualys to proactively identify, assess, and mitigate security risks.

You will collaborate closely with development, DevOps, cloud, and architecture teams to implement secure coding practices and integrate security throughout the SDLC.

Key Responsibilities

  • Perform SAST scans using Checkmarx; analyze vulnerabilities and coordinate remediation with development teams.
  • Use Zafran for advanced code analysis and automated security insights.
  • Build, update, and maintain threat models using ThreatModeler to ensure secure application design.
  • Conduct vulnerability scanning and compliance assessments using Qualys.
  • Integrate AppSec tools into CI/CD pipelines and automate routine security checks.
  • Conduct manual code reviews, threat assessments, and risk evaluations.
  • Provide security guidance to engineering teams and lead secure coding initiatives.
  • Document vulnerabilities, remediation plans, and best practices.

Required Skills & Qualifications

  • Strong understanding of Application Security, OWASP Top 10, and secure coding standards.
  • Hands-on experience with:
    • Checkmarx (SAST)
    • Zafran security scanning/analysis tools
    • ThreatModeler (Threat Modeling)
    • Qualys (Vulnerability Management & Compliance)
  • Experience working with CI/CD pipelines (Jenkins, GitHub Actions, GitLab CI, Azure DevOps, etc.).
  • Knowledge of API security, cloud environments (AWS/Azure/GCP), and DevSecOps principles.
  • Ability to interpret complex security issues and communicate them clearly.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer (SAST & DAST, DevSecOps)
Application Security Engineer (SAST & DAST, DevSecOps)

2coms • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Senior Application Security Engineer
Senior Application Security Engineer

Hyland • Hyderabad

Hybrid
INR 2,500,000 - 4,200,000
Application Security Engineer (6 Months Contract)
Application Security Engineer (6 Months Contract)

Weekday AI (YC W21) • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Application Security Engineer
Application Security Engineer

US Software Group Inc • Bengaluru

Hybrid
INR 9,033,000 - 11,744,000
Application Security Engineer (SAST & DAST, DevSecOps)
Application Security Engineer (SAST & DAST, DevSecOps)

2COMS Consulting Pvt. Ltd. • Bengaluru Urban

On-site
INR 1,500,000 - 2,100,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • Surat

On-site
INR 1,600,000 - 2,800,000
Application Security Engineer
Application Security Engineer

Madhees Techno Consulting Pvt Ltd • Pune District

On-site
INR 1,500,000 - 2,100,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • Jaipur

On-site
INR 1,200,000 - 1,800,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • New Delhi

On-site
INR 1,500,000 - 2,500,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • Ernakulam

On-site
INR 1,800,000 - 2,400,000