Dynamic application security Engineer

Cloudxtreme

Hyderabad, Chennai District, Bengaluru

Hybrid

INR 1,200,000 - 2,400,000

Full time

8 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Hybrid work model

Job summary

Cloudxtreme is seeking a dedicated CyberSecurity Specialist with 7–11 years of experience in threat and vulnerability management. The role focuses on web services testing, DAST triage, and remediation within a hybrid work model in India.

You will validate DAST findings, prioritize risk using CVSS, and collaborate with development and security teams to drive secure SDLC practices. The position offers day shifts and cross-functional collaboration across teams.

Qualifications

  • 7–11 years of cybersecurity experience focused on web services testing and security practices.
  • In-depth hands-on validation using Burp Suite, Postman and OWASP ZAP.
  • Experience reviewing DAST findings, prioritizing risk with CVSS and guiding remediation with DevOps.
  • Familiarity with HTTP methods, authN/authZ, and web traffic analysis.

Responsibilities

  • DAST triage, vulnerability assessment, and prioritization of findings.
  • Validate findings with Burp Suite, Postman, and OWASP ZAP.
  • Drive remediation with development/DevOps teams and CI/CD integration.
  • Develop remediation guidance, knowledge base articles, and best practices.

Skills

DAST tools
Burp Suite
Postman
OWASP ZAP
CVSS scoring
CI/CD integration
Python/Go/Java

Tools

Burp Suite
Postman
OWASP ZAP
CI/CD tools
DevOps

Job description

Role & responsibilities
  • Primary mandate skill required
Dynamic Application Security Testing (DAST) triage and vulnerability assessment

— ability to review and validate DAST scan findings, distinguish true vs false positives (using tools like Burp Suite/Postman), prioritize risk using CVSS/risk scoring, and drive remediation with dev/DevOps teams (including CI/CD integration support).

  • Secondary mandate skill required.

Web & API security fundamentals with hands‑on validation skills— strong understanding of HTTP methods/status codes, request/response flows, authN/authZ, and web traffic analysis (browser dev tools/network tab), with ability to validate findings using Burp Suite/Postman/OWASP ZAP.

  • Open to look at CWR’s – Yes / No– Yes
  • Flexible to hire in any location – If not, please mention job location – Yes – Pan India
  • Detailed Job Description–
Job Summary

We are seeking a dedicated CyberSecurity Specialist with expertise in Threat and Vulnerability Management (TVM) to join our team. The ideal candidate will have 7 to 11 years of experience in cybersecurity, focusing on web services testing and security practices. This role involves working in a hybrid model with day shifts, ensuring the security of our digital assets and contributing to the safety of our users.

Responsibilities
  • DAST Triage and Vulnerability Assessment Review and triage dynamic application security testing DAST scan results identify, prioritize, and validate vulnerabilities in running applications using CVSS scoring and risk frameworks to determine business impact and recommend remediation strategies False Positive Management Assess and validate false positives from DAST scans using tools such as Burp Suite and Postman working with development teams to understand their application document findings and maintain accuracy of vulnerability data Remediation Support Work with development teams to identify and implement fixes for DAST identified vulnerabilities track remediation efforts and verify resolutions Policy Compliance Support enforcement of application security policies ensure compliance with security requirements for web and API applications Documentation Create vulnerability assessments remediation guidance and knowledge base articles for development teams based on DAST findings processes and identified best practices Tool Management Assist in managing and optimizing enterprise DAST tool maintain tool hygiene and data quality DevOps Integration Support integration of DAST tools within CICD pipelines assist with security gate implementation for DAST testing Cross functional Collaboration Partner with developers DevOps and security teams to embed dynamic testing practices into the SDLC Reporting and Metrics Track and report on DAST vulnerability metrics remediation status and security trends 2 4 years of experience in application security software development or DevOps Strong knowledge of Dynamic Application Security Testing DAST tools and runtime vulnerability management Understanding of vulnerability assessment and prioritization CVSS risk scoring Proficiency in at least one programming language Python Go JavaScript Java or similar Familiarity with SQL and database concepts including querying data manipulation data dashboarding and visualization Familiarity with web application and API fundamentals including HTTP methods error codes request response structures authentication authorization web traffic analysis and the use of browser developer tools eg network tab Experience with vulnerability databases NVD CVE GitHub Advisory or similar Basic understanding of CI CD pipelines and DevOps practices Strong analytical and problem solving skills Excellent written and verbal communication skills Ability to work cross functionally with development and operations teams
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Dynamic Application Security Testing
Dynamic Application Security Testing

Cloudxtreme • Hyderabad, Bengaluru, Delhi

Hybrid
INR 1,500,000 - 3,500,000
Application Security Engineer (SAST & DAST, DevSecOps)
Application Security Engineer (SAST & DAST, DevSecOps)

2COMS Consulting Pvt. Ltd. • Bengaluru Urban

On-site
INR 1,500,000 - 2,100,000
Application Security Engineer (SAST & DAST, DevSecOps)
Application Security Engineer (SAST & DAST, DevSecOps)

2coms • Bengaluru Urban

On-site
INR 1,800,000 - 2,400,000
SAST/DAST Application Security Consultant (Pen Testing)
SAST/DAST Application Security Consultant (Pen Testing)

Alignity Solutions • Hyderabad

Hybrid
INR 1,200,000 - 1,800,000
DevSecOps Engineer (SAST/DAST)
DevSecOps Engineer (SAST/DAST)

Alignity Solutions • Hyderabad

Hybrid
INR 1,200,000 - 1,800,000
Hybrid work model
Application Security Testing Consultant with SAST and DAST
Application Security Testing Consultant with SAST and DAST

Cloudxtreme • Hyderabad, Pune District, Bengaluru

On-site
INR 1,200,000 - 1,800,000
Application Security Engineer (SAST & DAST, DevSecOps)
Application Security Engineer (SAST & DAST, DevSecOps)

2coms • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Application Security Engineer
Application Security Engineer

Cyberpwn • Bengaluru

On-site
INR 900,000 - 1,300,000
Application Security Lead-CXA
Application Security Lead-CXA

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,800,000 - 2,500,000
Application Security Engineer
Application Security Engineer

Kyndryl • Dadri, Greater Noida

On-site
INR 2,500,000 - 4,500,000