HamburgerMenu
hirist

TelioLabs - Application Security Engineer - Vulnerability Assessment

Teliolabs
5 - 8 Years
Multiple Locations

Posted on: 20/07/2026

Job Description

Timings : 3 pm IST - 10/11 pm IST

Notice Period : Immediate Joiner

The candidate will work closely with our AppSec team to strengthen secure SDLC practices, validate vulnerabilities, and implement security controls across traditional and AI-driven applications.


This role requires a hands-on engineer capable of operating at both code-level and system design level, with the ability to quickly contribute.

Key Responsibilities :

- Perform hands-on development, vulnerability analysis and validation

- Conduct secure code reviews (.NET/APIs/microservices)

- Partner with developers on remediation and secure coding practices

- Support CI/CD security automation (operational ability)

- Participate in AppSec design reviews early in SDLC

AI Application Security Responsibilities :

- Assess security risks in AI/LLM-enabled applications

- Identify and mitigate : Prompt injection attacks, Data leakage via LLM responses, Insecure plugin/tool integrations

- Support implementation of AI guardrails and usage policies

- Review and validate : Model input/output handling, Sensitive data exposure controls

- Evaluate third-party AI tools and APIs for security risks

- Support AI governance enforcement across development teams

- Define and implement secure patterns for AI integration in applications

Required Skills :

1. Core AppSec Skills - Must Have :

- Strong knowledge of : OWASP Top 10, Secure SDLC practices

- Hands-on experience with : SAST, SCA, API, DAST tools (SonarQube, Black Duck, Burp Suite)

- Strong ability in : Code-level vulnerability triage and validation

- Strong knowledge in powershell/bash automation

- Strong coding skills (recent and hands-on required) .NET / C# / Angular

- Experience with : REST APIs and microservices

- Authentication (OAuth2, SAML, Entra ID)

2. Nice to Have :

- Knowledge : MCP servers, Agentic AI, Ansible

- CICD security pipeline automation

- Container / platform security (OpenShift/Kubernetes preferred)

- Vault (CyberArk/Conjur)

- Experience with Azure / Entra ID

- Knowledge of : RBAC, identity flows, and secrets management

- Certificate/credential handling

Preferred Qualifications :

- Experience with enterprise AppSec programs

- Exposure to : API security tools, Pen-test validation workflows

- Experience in : AI governance frameworks and policy enforcement

- Experience working with : Security gates and automated enforcement controls

Nice-to-Have :

- Experience with : Secure AI SDLC frameworks, AI threat modeling methodologies

- Certifications : CSSLP, OSCP, GWAPT

- AI security / cloud security certifications

Experience Requirements :

- 5-8+ years in Application Security / Secure Development

- Proven hands-on engineering background (recent coding required)

- Demonstrated ability to : Collaborate with development teams, Analyze and remediate vulnerabilities, Quickly ramp and contribute (Important : Must be execution-focused, not purely architectural based on prior candidate feedback.)

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...