Senior Application Security Engineer

Tenarai

Bengaluru

On-site

INR 2,500,000 - 4,200,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Tenarai is seeking a Senior Application/Product Security Engineer to join our engineering delivery team. You will review code and designs, work with developers to fix security issues, and strengthen CI/CD security checks to improve release-readiness.

You will triage vulnerabilities across SAST, SCA, DAST, and container scans, and mentor teams to reduce recurring issues while championing secure-by-design practices in product development.

Qualifications

  • 8+ years hands-on experience in application security, product security, DevSecOps, or software security engineering.
  • Ability to work directly with developers to fix security issues in code, configuration, and delivery pipelines.
  • Experience triaging and remediating vulnerabilities in large or legacy codebases.
  • Practical experience with SAST, SCA, DAST, secret scanning, container scanning, and vulnerability management workflows.
  • Strong understanding of web, API, authorization, session, secrets, dependency, logging, and secure deployment risks.
  • Comfortable working inside engineering rhythms: standups, sprint planning, pull requests, release readiness, and backlog refinement.

Responsibilities

  • Perform hands-on security reviews of applications, APIs, services, and supporting components.
  • Review pull requests, application designs, authentication and authorization flows, secrets handling, logging, and data-exposure risks.
  • Triage SAST, SCA, DAST, secret-scanning, container-scanning, penetration-test, and product vulnerability findings.
  • Work directly with developers to implement secure fixes and reduce recurring issue classes.
  • Improve CI/CD security checks, branch protection, merge controls, and release-readiness signals.
  • Support secure-design reviews, focused application security testing, and remediation validation.
  • Coach developers and help identify local Security Champions.

Skills

8+ years exp
Developer collaboration
Vulnerability triage
SAST/DAST/SCA
Web/API security
Agile security

Tools

AWS
Kubernetes
CI/CD pipelines

Job description

Senior Application/Product Security Engineer

This is a hands-on role for someone who wants to work inside engineering delivery: reviewing code and designs, helping developers fix security issues, improving CI/CD security checks, and driving product-security findings to verified closure.

Role:

  • Perform hands-on security reviews of applications, APIs, services, and supporting components.
  • Review pull requests, application designs, authentication and authorization flows, secrets handling, logging, and data-exposure risks.
  • Triage SAST, SCA, DAST, secret-scanning, container-scanning, penetration-test, and product vulnerability findings.
  • Work directly with developers to implement secure fixes and reduce recurring issue classes.
  • Improve CI/CD security checks, branch protection, merge controls, and release-readiness signals.
  • Support secure-design reviews, focused application security testing, and remediation validation.
  • Coach developers and help identify local Security Champions.

Required Skills:

  • Atleast 8+ yrs hands-on experience in application security, product security, DevSecOps, or software security engineering.
  • Proven ability to work directly with developers to fix security issues in code, configuration, and delivery pipelines.
  • Experience triaging and remediating vulnerabilities in large or legacy codebases.
  • Practical experience with SAST, SCA, DAST, secret scanning, container scanning, and vulnerability management workflows.
  • Strong understanding of web, API, authorization, session, secrets, dependency, logging, and secure deployment risks.
  • Comfortable working inside engineering rhythms: standups, sprint planning, pull requests, release readiness, and backlog refinement.

Good to have:

  • Experience with cloud-native environments, AWS, Kubernetes, or containers.
  • Experience with legacy modernization, dependency remediation, software-supply-chain risk, or product vulnerability management.
  • OSCP, CSSLP, CISSP, GWAPT, cloud security, secure software, or application security certifications.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Product Security Engineer
Senior Product Security Engineer

Dun & Bradstreet • Hyderabad

On-site
INR 4,000,000 - 7,000,000
Application Security Engineer
Application Security Engineer

Omnissa • Bengaluru

On-site
INR 2,800,000 - 4,600,000
Application Security Engineer
Application Security Engineer

Ola • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Staff Product Security Engineer
Staff Product Security Engineer

Teladoc Health • Hyderabad

On-site
INR 4,000,000 - 6,000,000
Application Security Engineer
Application Security Engineer

Yantran • Chennai District

On-site
INR 1,200,000 - 2,400,000
Application Security Lead-CXA
Application Security Lead-CXA

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,800,000 - 2,500,000
Staff Engineer - Application Security
Staff Engineer - Application Security

UST • Bengaluru

On-site
INR 2,400,000 - 4,200,000
Cybersecurity Subject Matter Expert
Cybersecurity Subject Matter Expert

Sunovaa Tech • Pune District, Bengaluru

On-site
INR 2,500,000 - 4,000,000
Senior Application Security Specialist
Senior Application Security Specialist

IntouchCX • Bengaluru

On-site
INR 2,800,000 - 4,600,000
Senior Application Security Specialist
Senior Application Security Specialist

IntouchCX • Hyderabad

On-site
INR 3,200,000 - 4,200,000