Application Security Engineer II

Cvent

Gurugram District

Hybrid

INR 1,800,000 - 2,800,000

Full time

1 hour ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cvent is seeking a hands-on Application Security Engineer to join our AI-focused security team in an environment where security and AI intersect. You will build automation, wire agents, and enable developers with self-serve tooling.

You should be comfortable across core AppSec areas including threat modeling, secure design, code review, penetration testing and vulnerability remediation. You will work with cloud-native apps on AWS and collaborate with engineers to remediate risks.

Qualifications

  • 3-5 years of hands-on experience in application security or secure software development.
  • Strong scripting/programming skills to automate security tasks and build internal tools.
  • Working experience integrating security tools into CI/CD pipelines and SDLC.
  • Familiarity with one major cloud platform (AWS preferred; GCP or Azure acceptable) and cloud-native security principles.
  • Proficiency with security testing tools and frameworks (Burp Suite, Checkmarx, Mend, Veracode, ZAP, Wiz).
  • Exposure to LLMs and AI agents, with a aim to build with AI tooling professionally.

Responsibilities

  • Build and maintain AI-powered security automation and pipelines across diverse tech stacks.
  • Develop and extend agentic workflows that integrate LLMs into security tooling.
  • Embed SAST, DAST, and SCA into CI/CD pipelines and improve AI-assisted triage.
  • Perform threat modeling, secure code/design reviews, and targeted penetration testing.
  • Apply security frameworks (OWASP LLM Top 10, MITRE ATLAS) to assess risks.
  • Write internal tools/scripts to automate security testing and governance.
  • Partner with engineering to remediate vulnerabilities and communicate risks.

Skills

Application Security
Scripting
Security Testing
CI/CD
Cloud Security
AI/LLM Security
Automation

Tools

Burp Suite
Checkmarx
Mend
Veracode
ZAP
Wiz
AWS

Job description

Cvent is a leading meetings, events, and hospitality technology provider with more than 5,500+ employees and ~30,000 customers worldwide, including 60% of the Fortune 500. Founded in 1999, Cvent delivers a comprehensive event marketing and management platform for marketers and event professionals and offers software solutions to hotels, special event venues and destinations to help them grow their group/MICE and corporate travel business. Our technology brings millions of people together at events around the world. In short, we're transforming the meetings and events industry through innovative technology that powers the human connection.



Cvent's strength lies in its people, fostering a culture where everyone is encouraged to think like entrepreneurs, taking risks and making decisions confidently. We value diverse perspectives and celebrate differences, working together with colleagues and clients to build strong connections.



AI at Cvent: Leading the Future


Are you ready to shape the future of work at the intersection of human expertise and AI innovation? At Cvent, we're committed to continuous learning and adaptation-AI isn't just a tool for us, it's part of our DNA. We're looking for candidates who are eager to evolve alongside technology. If you love to experiment boldly, share your discoveries, and help define best practices for AI-augmented work, you'll thrive here. Our team values professionals who thoughtfully integrate AI into their daily work, delivering exceptional results while relying on the human judgment and creativity that drive real innovation



Throughout our interview process, you'll have the chance to demonstrate how you use AI to learn, iterate, and amplify your impact. If you're excited to be part of a team that's leading the way in AI-powered collaboration, we'd love to meet you.



Who are you? You're a hands-on Application Security Engineer who is energized by the intersection of security and AI. You like to build, not just review - you write automation, wire up agents, and turn repetitive security work into self-serve tooling that developers actually use. You're comfortable across the core of AppSec (threat modeling, secure design and code review, penetration testing, vulnerability remediation) and you bring a builder's mindset that multiplies your impact. You're looking to grow your technical depth while contributing to a security program that treats AI as a first-class engineering capability, not an afterthought. You're required to be in the office 2 days/week.




  • Build and maintain AI-powered security automation - agents, skills, and pipelines that automate threat modeling, vulnerability triage, finding deduplication, and report generation across diverse tech stacks.

  • Develop and extend agentic workflows that integrate LLMs into security tooling through APIs and MCP (Model Context Protocol) connectors to systems like Jira, Confluence, and cloud security platforms.

  • Integrate and run security tooling across the SDLC - embedding SAST, DAST, and SCA into CI/CD pipelines and improving signal quality with AI-assisted triage.

  • Perform threat modeling, secure code and design reviews, and targeted penetration testing for new and existing features, including cloud-native, GenAI, and AI/ML systems.

  • Apply AI security frameworks in practice - OWASP LLM Top 10, OWASP AI Testing Guide, and MITRE ATLAS - to assess prompt injection, model abuse, data exposure, and agent-misuse risks.

  • Write internal tools and scripts (Python, TypeScript, JavaScript, Bash) to automate security testing and governance, including support for cloud-native apps on AWS.

  • Partner with engineering teams to remediate vulnerabilities surfaced through scans, manual testing, or AI-assisted analysis, and clearly communicate risk to technical audiences.

  • 3-5 years of hands-on experience in application security or secure software development.

  • Solid scripting/programming skills - able to automate tasks and build internal tools in Python, JavaScript/TypeScript, or Bash.

  • Working experience integrating security tools into CI/CD pipelines and the SDLC.

  • Familiarity with at least one major cloud platform (AWS preferred; GCP or Azure acceptable) and cloud-native security principles.

  • Proficiency with common security testing and cloud security tools (e.g., Burp Suite, Checkmarx, Mend, Veracode, ZAP, Wiz).

  • Strong grasp of AppSec fundamentals - OWASP Top 10, CWE, secure coding practices, and common web/API vulnerability classes. This is the hard floor for the role.

  • Exposure to LLMs and AI agents and a genuine drive to build with them - you've experimented with AI tooling and want to do it professionally. You do not need to have shipped production AI tooling; that's what you'll grow into here.

  • Hands-on experience building with LLM APIs, AI agents, or automation frameworks (e.g., Claude, MCP, function/tool calling), or exposure to securing AI/ML and GenAI features.

  • DevSecOps, IaC security, or supply-chain experience, and relevant certifications (e.g., AWS Security - Specialty, OSCP, GWAPT)



Why You'll Love This Role



  • You'll build AI-driven security automation that scales across hundreds of apps and services and see it adopted by real developers.

  • You'll join the ASRE team and grow your skills at the leading edge of AI-assisted Application Security.

  • You'll work alongside engineers who take security seriously and give you the room to ship and iterate.

  • You'll have a clear runway to grow into a Senior role as your technical depth and ownership expand.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AI and Cloud Security Engineer
AI and Cloud Security Engineer

TD Synnex • Mumbai

On-site
INR 4,500,000 - 7,500,000
AI Security Engineer
AI Security Engineer

India Fan Corporation • Hyderabad

On-site
INR 2,500,000 - 6,000,000
Security Engineer
Security Engineer

Promaynov Advisory Services Pvt. Ltd • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Senior AI Application Security Architect
Senior AI Application Security Architect

Radware • Chennai District

On-site
INR 4,000,000 - 7,000,000
Senior Manager - Application Security & AI Security
Senior Manager - Application Security & AI Security

Pine Labs • Dadri

On-site
INR 4,500,000 - 7,500,000
AI and Cloud Security Analyst
AI and Cloud Security Analyst

name • India

On-site
INR 1,500,000 - 2,300,000
SENIOR ARCHITECT - AI Automation
SENIOR ARCHITECT - AI Automation

Happiest Minds Technologies • Bengaluru

Hybrid
INR 3,500,000 - 5,500,000
AI Security Engineer
AI Security Engineer

Agile Dna • Hyderabad

On-site
INR 2,400,000 - 4,200,000
Appsec & AI Security
Appsec & AI Security

Promaynov Advisory Services Pvt. Ltd • Bengaluru

On-site
INR 2,500,000 - 3,500,000
Lead Site Reliability Engineer
Lead Site Reliability Engineer

Cvent • Gurugram District

On-site
INR 1,800,000 - 2,500,000