Senior Security Engineer

SolarWinds

Bengaluru

On-site

INR 4,500,000 - 7,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

SolarWinds is seeking a Senior Application Security Engineer to lead and enhance security across the software development lifecycle. You will partner with engineering teams to identify risks early, implement secure coding practices, and improve vulnerability management for applications and services.

The role requires 5+ years in application security, strong OWASP Top 10 knowledge, and experience with SAST/DAST/SCA tools within CI/CD pipelines.

Qualifications

  • 5+ years in application security or related roles.
  • Strong knowledge of web/API security and OWASP Top 10.
  • Experience integrating security tools into CI/CD pipelines.
  • Knowledge of cryptography, authN/authZ, logging and secure configurations.
  • Experience with vulnerability management processes.

Responsibilities

  • Design, implement, and scale application security programs across the SDLC.
  • Perform security assessments of web apps, APIs, and services (SAST/DAST/manual).
  • Build and maintain security test automation (SAST/DAST/SCA in CI/CD).
  • Review architecture and code for security issues and provide remediation guidance.
  • Lead remediation for high-severity vulnerabilities and validate fixes.
  • Define security standards and guardrails (threat modeling, secure design).
  • Collaborate with DevOps and product engineering for secure deployments.
  • Create security documentation and training for developers (OWASP Top 10).
  • Monitor security posture and drive continuous improvement with metrics.
  • Stay current with threats and propose improvements.

Skills

AppSec leadership
OWASP Top 10
SAST/DAST/CI/CD
Threat modeling
Security concepts
Vulnerability management

Tools

CI/CD Integrations
SAST/DAST/SCA Tools
Cloud security

Job description

At SolarWinds, we’re a people-first company. Our purpose is to enrich the lives of the people we serve—including our employees, customers, shareholders, partners, and communities. Join us in our mission to help customers accelerate business transformation with simple, powerful, and secure solutions.

The ideal candidate thrives in an innovative, fast-paced environment and is collaborative, accountable, ready, and empathetic. We’re looking for individuals who believe they can accomplish more as a team and create lasting growth for themselves and others. We hire based on attitude, competency, and commitment. Solarians are ready to advance our world-class solutions in a fast-paced environment and accept the challenge to lead with purpose. If you’re looking to build your career with an exceptional team, you’ve come to the right place. Join SolarWinds and grow with us!

We are seeking a Senior Application Security Engineer to lead and enhance application security across our software development lifecycle. You will partner with engineering teams to identify security risks early, implement secure coding practices, and improve vulnerability management for applications and services.

Key Responsibilities
  • Design, implement, and scale application security programs across SDLC (requirements, design, development, testing, and release).
  • Perform security assessments of web applications, APIs, and services (static/dynamic/manual testing).
  • Build and maintain security test automation (SAST/DAST/SCA workflows, custom checks, CI/CD integrations).
  • Review architecture and code changes for security issues; provide actionable remediation guidance.
  • Lead remediation efforts for high-severity vulnerabilities; validate fixes and ensure root-cause improvements.
  • Define security standards and guardrails (threat modeling, secure design patterns, coding standards, policies).
  • Collaborate with DevOps/Platform and product engineering to ensure secure deployment and runtime configurations.
  • Create security documentation and training for developers (secure coding, OWASP Top 10, common attack vectors).
  • Monitor security posture and drive continuous improvement using metrics and reports.
  • Stay current with evolving threats, vulnerabilities, and security best practices; propose improvements.
Required Skills & Qualifications
  • 5+ years of experience in application security, secure software engineering, or related security engineering roles.
  • Strong knowledge of web/API security (OWASP Top 10, auth/session management, input validation, access control, SSRF, XSS, SQLi, CSRF, etc.).
  • Hands-on experience with SAST/DAST/SCA tools and integrating them into CI/CD pipelines.
  • Proficiency with secure coding and threat modeling methodologies.
  • Solid understanding of common security concepts: cryptography basics, authentication/authorization models, logging/monitoring, secure configuration.
  • Experience working with vulnerability management processes (triage, prioritization, risk acceptance, verification).
Preferred Qualifications
  • Experience with cloud security (AWS/Azure/GCP) and containerized environments.
  • Familiarity with frameworks such as OWASP ASVS, SAMM, or similar security maturity frameworks.
  • Security automation experience (custom scripts, policy-as-code, security dashboards).
  • Certifications such as: OSCP, eJPT/eWPT, or AppSec-focused certifications (optional).
Soft Skills
  • Strong communication skills and ability to explain security risks in business and technical terms.
  • Ability to collaborate cross-functionally and influence without authority.
  • Ownership mindset with strong prioritization and problem-solving skills.
  • Works closely with: Product Engineering, DevOps/Platform, QA, and Security leadership.
  • Participates in: design reviews, incident response (as needed), and security roadmap planning.

SolarWinds is an Equal Employment Opportunity Employer. SolarWinds will consider all qualified applicants for employment without regard to race, color, religion, sex, age, national origin, sexual orientation, gender identity, marital status, disability, veteran status or any other characteristic protected by law.

All applications are treated in accordance with the SolarWinds Privacy Notice: https://www.solarwinds.com/applicant-privacy-notice

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Software Engineer (SDE-2)
Software Engineer (SDE-2)

SolarWinds • Bengaluru

On-site
INR 600,000 - 1,200,000
Senior Software Engineer
Senior Software Engineer

SolarWinds • Bengaluru

On-site
INR 1,500,000 - 2,000,000
Senior Application Security Engineer
Senior Application Security Engineer

FloQast, Inc. • Pune District

On-site
INR 1,500,000 - 2,500,000
Solution Engineer - ITSM
Solution Engineer - ITSM

SolarWinds • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Application Security Engineer
Application Security Engineer

DigiCert • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Generous time off policies
Top shelf benefits
Education, wellness, and lifestyle support
Principal Engineer - SolarWinds Service Desk
Principal Engineer - SolarWinds Service Desk

SolarWinds • Bengaluru

On-site
INR 2,500,000 - 3,500,000
Senior Software Engineer - Security
Senior Software Engineer - Security

LogiNext • Mumbai

On-site
INR 1,200,000 - 1,800,000
Software Engineer
Software Engineer

Solarwinds • Bengaluru

On-site
INR 1,500,000 - 2,400,000
Senior Security Engineer
Senior Security Engineer

Cynosure Corporate Solutions • Chennai District

On-site
INR 1,800,000 - 2,800,000
Senior Information Security Engineer
Senior Information Security Engineer

Imagine Learning • Bengaluru

On-site
INR 1,500,000 - 2,500,000