Posted on: 20/07/2026
Timings : 3 pm IST - 10/11 pm IST
Notice Period : Immediate Joiner
The candidate will work closely with our AppSec team to strengthen secure SDLC practices, validate vulnerabilities, and implement security controls across traditional and AI-driven applications.
This role requires a hands-on engineer capable of operating at both code-level and system design level, with the ability to quickly contribute.
Key Responsibilities :
- Perform hands-on development, vulnerability analysis and validation
- Conduct secure code reviews (.NET/APIs/microservices)
- Partner with developers on remediation and secure coding practices
- Support CI/CD security automation (operational ability)
- Participate in AppSec design reviews early in SDLC
AI Application Security Responsibilities :
- Assess security risks in AI/LLM-enabled applications
- Identify and mitigate : Prompt injection attacks, Data leakage via LLM responses, Insecure plugin/tool integrations
- Support implementation of AI guardrails and usage policies
- Review and validate : Model input/output handling, Sensitive data exposure controls
- Evaluate third-party AI tools and APIs for security risks
- Support AI governance enforcement across development teams
- Define and implement secure patterns for AI integration in applications
Required Skills :
1. Core AppSec Skills - Must Have :
- Strong knowledge of : OWASP Top 10, Secure SDLC practices
- Hands-on experience with : SAST, SCA, API, DAST tools (SonarQube, Black Duck, Burp Suite)
- Strong ability in : Code-level vulnerability triage and validation
- Strong knowledge in powershell/bash automation
- Strong coding skills (recent and hands-on required) .NET / C# / Angular
- Experience with : REST APIs and microservices
- Authentication (OAuth2, SAML, Entra ID)
2. Nice to Have :
- Knowledge : MCP servers, Agentic AI, Ansible
- CICD security pipeline automation
- Container / platform security (OpenShift/Kubernetes preferred)
- Vault (CyberArk/Conjur)
- Experience with Azure / Entra ID
- Knowledge of : RBAC, identity flows, and secrets management
- Certificate/credential handling
Preferred Qualifications :
- Experience with enterprise AppSec programs
- Exposure to : API security tools, Pen-test validation workflows
- Experience in : AI governance frameworks and policy enforcement
- Experience working with : Security gates and automated enforcement controls
Nice-to-Have :
- Experience with : Secure AI SDLC frameworks, AI threat modeling methodologies
- Certifications : CSSLP, OSCP, GWAPT
- AI security / cloud security certifications
Experience Requirements :
- 5-8+ years in Application Security / Secure Development
- Proven hands-on engineering background (recent coding required)
- Demonstrated ability to : Collaborate with development teams, Analyze and remediate vulnerabilities, Quickly ramp and contribute (Important : Must be execution-focused, not purely architectural based on prior candidate feedback.)
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1655679