Infosec Engineer IV

7-Eleven Global Solution Center – India

Bengaluru

On-site

INR 800,000 - 1,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

7-Eleven Global Solution Center – India is looking for an Application Security Engineer responsible for executing automated security tools and performing vulnerability scans. You will work with development teams to address security weaknesses and integrate security into the Software Development Life Cycle.

The ideal candidate holds a Bachelor's in Computer Science and has 4 to 6 years of related experience, including working with security tools and knowledge of various programming languages.

Qualifications

  • 4 to 6 years of experience in Application Security with knowledge on security tools and vulnerabilities.
  • Certifications such as CSSLP, GWAPT, CEH, CISSP, and CCSP are a plus.

Responsibilities

  • Execute automated SAST and SCA scans to identify security vulnerabilities.
  • Perform manual secure code reviews and analyze scan results.
  • Collaborate with developers to resolve security issues.
  • Integrate application security testing into SDLC.

Skills

Automating secure coding tools and processes
Security test results review
Java
Python
Go
Knowledge of WAF
Network penetration testing
NIST and OWASP frameworks
AWS
Security measures communication

Education

Bachelor's degree in Computer Science or related field

Tools

Security tools expertise
Docker
Kubernetes

Job description

Overview

Application security engineer will be executing automated application security tools for security weaknesses, performing vulnerability scans, managing security tools and providing security guidance to software development teams.

Responsibilities
  • Execute automated SAST and SCA scans to identify security vulnerabilities in web, API, and mobile applications.
  • Perform manual secure code reviews to validate findings and detect security issues not identified by automated tools.
  • Analyze vulnerability scan results, prioritize risks, and provide remediation recommendations to development teams.
  • Collaborate with developers to resolve security issues and promote secure coding best practices.
  • Integrate application security testing into the Software Development Life Cycle (SDLC) to ensure security is embedded throughout development.
  • Manage application security tools, perform re-validation of fixes, and support continuous improvement of the organization's application security posture.
Key Skills Required
  • Expertise in automating secure coding tools and processes (SAST, SCA, DAST, Mobile & API Security).
  • Review security test results from vulnerability scans, perform penetration testing for true positives and propose appropriate remediation measures or mitigation controls.
  • Experience with programming languages such as Java, Python, or Go, and at least one scripting language.
  • Knowledge on WAF.
  • Knowledge of web, mobile, API, Microservices and network pen testing.
  • Knowledge of security best practices, principles, and common security frameworks, such as NIST and OWASP.
  • Knowledge of current and emerging security technologies, threats and techniques for exploiting security vulnerabilities.
  • Knowledge of AWS, Azure, Google cloud or Oracle is preferable.
  • Knowledge on securing container platforms such as Docker and Kubernetes.
  • Ability to interact with a broad cross-section of personnel to explain and enforce security measures.
  • Good written and verbal communication skills.
Education & Experience
  • Bachelor's degree in Computer Science, Information Technology, Cyber Security, or related discipline or equivalent experience.
  • 4 to 6 years of Application Security experience with knowledge on security tools and vulnerabilities.
  • Certifications:
  • CSSLP
  • GWAPT
  • CEH
  • CISSP
  • CCSP
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Lead-CXA
Application Security Lead-CXA

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,800,000 - 2,500,000
Application Security Engineer
Application Security Engineer

Ola • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Application Security Specialist
Application Security Specialist

Pearson India Education Services Pvt Ltd • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Appsec Specialist - Lead
Appsec Specialist - Lead

Adani Group • Ahmedabad District

On-site
INR 2,800,000 - 4,200,000
Application Security Testing Engineer
Application Security Testing Engineer

Infosys • Bengaluru

On-site
INR 900,000 - 1,200,000
System Security
System Security

BigShip Technologies Pvt. Ltd • Dadri

On-site
INR 1,000,000 - 1,500,000
Application Security Engineer
Application Security Engineer

DigiCert • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Generous time off policies
Top shelf benefits
Education, wellness, and lifestyle support
Appsec Specialist - Lead
Appsec Specialist - Lead

Adani Enterprises Limited • Ahmedabad District

On-site
INR 2,600,000 - 3,800,000
Application Security Engineer
Application Security Engineer

Basebiz • Bengaluru

On-site
INR 1,800,000 - 2,800,000
Application Security Engineer
Application Security Engineer

Basebiz • Chennai District

On-site
INR 1,200,000 - 1,800,000