DevSecOps/ AppSecOps Staff Engineer

First American (India)

India

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading real estate technology company in India seeks an experienced DevSecOps/ AppSecOps Staff Engineer to enhance platform security. The ideal candidate has over 10 years of experience in security, knowledge of AWS/Azure, and a background in application security best practices. This full-time role requires strong leadership skills and collaborative mindset to embed security in software development processes.

Qualifications

  • Over 10 years of experience in DevSecOps and AppSecOps.
  • Deep understanding of application, infrastructure, and cloud security principles.
  • Ability to lead technical initiatives and mentor engineering teams.
  • Advanced knowledge of AWS and Azure security controls.
  • Proficiency in scripting and infrastructure-as-code tools.
  • Experience with vulnerability detection tools.

Responsibilities

  • Take responsibility for application security initiatives.
  • Provide leadership and mentorship to engineers.
  • Drive initiatives to enhance platform security.
  • Identify and resolve security vulnerabilities.
  • Lead vulnerability management efforts.
  • Collaborate with cross-functional teams on security measures.

Skills

DevSecOps expertise
Application Security (AppSec)
Leadership and mentorship
AWS and Azure knowledge
Scripting (Python, Bash)
Vulnerability management
Secure coding practices

Tools

Veracode
Snyk
Terraform
Burp Suite

Job description

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from First American (India)

Overview

At First American (India), we don’t just build software—we build the future of real estate technology. Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design.

If you're driven by impact, thrive in collaborative environments, and want to shape how world-class products are delivered, this is the place for you.

Job Title: DevSecOps/ AppSecOps Staff Engineer

About the Role

We are looking for an experienced Platform Security Engineer with strong expertise in DevSecOps and Application Security (AppSec) to join our Security team. In this role, you will be instrumental in designing, building, and maintaining secure platforms and tooling that empower our development teams to deliver software efficiently, while embedding security throughout the development lifecycle. You’ll collaborate closely with engineering teams to integrate security best practices, automate controls, and ensure our platforms are resilient, compliant, and scalable.

What You Will Do

  • Application Security Ownership: Take end-to-end responsibility for application security initiatives, including vulnerability remediation, conducting security reviews, and educating internal teams on secure coding practices and standards.
  • Leadership and Cross-Team Collaboration: Provide technical leadership and mentorship to engineers while working closely with cross-functional teams to embed security seamlessly into development workflows.
  • Continuous Improvement: Drive initiatives to continuously enhance platform security and efficiency by optimizing workflows, automating controls, and implementing industry best practices.
  • Strategic Thinking: Contribute to the long-term vision for platform security and DevSecOps, aligning efforts with organizational goals and staying current with emerging technologies and trends.
  • Technical Issue Resolution: Proactively identify, investigate, and resolve security vulnerabilities across applications, infrastructure, and cloud environments.
  • Vulnerability Management: Lead efforts to detect, assess, and remediate infrastructure and software vulnerabilities, ensuring timely patching and mitigation in alignment with security policies.
  • Cross-Functional Alignment: Collaborate with engineering, infrastructure, and compliance teams to ensure that platform capabilities and security measures align with broader organizational objectives.

What You Bring

  • Over 10 years of hands-on experience in DevSecOps and AppSecOps, with at least 5 years in application development using .NET and Java technology stacks.
  • Deep understanding of application, infrastructure, and cloud security principles. Proven experience in identifying, remediating, and preventing vulnerabilities across the stack.
  • Demonstrated ability to lead technical initiatives, develop secure architecture patterns, and mentor engineering teams on secure development practices.
  • Advanced knowledge of AWS and Azure, including secure cloud networking (e.g., security groups, NACLs), IAM, encryption, and compliance controls.
  • Proficiency in scripting (Python, Bash) and infrastructure-as-code tools such as Terraform, Terragrunt, or CloudFormation to automate secure infrastructure provisioning.
  • Experience with tools like Veracode, Snyk, Prisma Cloud, and Checkmarx to detect and remediate vulnerabilities in code, containers, and infrastructure.
  • Ability to guide teams in addressing OWASP Top 10 and SANS Top 25 vulnerabilities, conduct threat modeling, and perform secure code reviews and penetration testing.
  • Experience in conducting security training, raising awareness across engineering teams, and embedding security into the SDLC.
  • Familiarity with DAST, SAST, and IAST tools such as Burp Suite, Veracode, and Checkmarx for comprehensive application security assessments.
  • Strong ability to document technical findings, communicate risks and recommendations clearly to developers, and advocate for security best practices.
  • Excellent communication, critical thinking, and problem-solving skills. Comfortable working independently or collaboratively in fast-paced, high-stakes environments.

Seniority level

  • Mid-Senior level

Employment type

  • Full-time

Job function

  • Information Technology and Engineering

Industries

  • Technology, Information and Media and Information Services

Note: This description reflects current responsibilities and qualifications for the role and may be subject to change.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps/ AppSecOps Staff Engineer
DevSecOps/ AppSecOps Staff Engineer

First American (India) • India

On-site
INR 1,200,000 - 1,800,000
Application Security Engineer
Application Security Engineer

US Software Group Inc • Bengaluru

Hybrid
INR 9,033,000 - 11,744,000
Sr. DevSecOps Engineer / Tech Lead - DevSecOps (Application Security)
Sr. DevSecOps Engineer / Tech Lead - DevSecOps (Application Security)

TechBlocks • Ahmedabad District, Gurugram District, Hyderabad

Hybrid
INR 2,800,000 - 5,600,000
Senior Manager - Application Security & AI Security
Senior Manager - Application Security & AI Security

Pine Labs • Dadri

On-site
INR 4,500,000 - 7,500,000
Senior Platform Engineer II
Senior Platform Engineer II

First American • Bengaluru

On-site
INR 4,200,000 - 7,200,000
Senior Application Security Engineer
Senior Application Security Engineer

Hyland • Hyderabad

Hybrid
INR 2,500,000 - 4,200,000
Senior Application Security Specialist
Senior Application Security Specialist

[24]7.ai • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Application Security Architect
Application Security Architect

Mettler-Toledo, Inc. • Bengaluru

Hybrid
INR 2,000,000 - 3,000,000
Hybrid working model
Family mediclaim benefits
Wide portfolio of training opportunities
+1
Application Security Engineer
Application Security Engineer

Byline Learning Solutions • Pune District

On-site
INR 1,200,000 - 1,800,000
Lead Application Security Engineer ID71665
Lead Application Security Engineer ID71665

AgileEngine, LLC. • Coimbatore District

On-site
INR 13,359,000 - 18,130,000
Professional growth
Competitive pay (USD)
Exciting projects
+1