HamburgerMenu
hirist

YASH Technologies - Application Security Engineer - SIEM

Posted on: 14/10/2025

Job Description

Description :


We are looking forward to hire Application Security Professionals in the following areas :

- Read/learn/discuss latest trends/tools/best practices/updates of cyber security, application development, and cloud services industries.

- Perform custom impact and risk analysis of identified security vulnerabilities for each product team.

- Create mitigation plans with product teams to resolve security vulnerabilities.

- Build tooling to automate security into the product teams development, build, deployment, and operational processes.

- Actively contribute to story planning, identifying and providing expertise on work items that involve security considerations.

- Be On-Call for : Cyber security breaches. High impact events (like a day zero effecting a team) or a breach. Uptime disruptions caused by their contributions.


Skills Required (AppSec Engineers Superpowers) :

- Cloud Platform : AWS, Microsoft Azure

- Development Environments : VSCode, JetBrains, Eclipse

- Programming languages : Know at least a few languages well (Java, JavaScript/TypeScript, C++, C, Python, Powershell, unix shell, etc.)

- Infrastructure as Code : CloudFormation, CDK, Bicep, Terraform, Ansible, etc.

- SIEM/SOAR : Microsoft Sentinel, Splunk, Checkmarx

- OS : Linux, Windows

- Configuration Management tools : Git, GitHub, GitLab, Azure DevOps

- Vulnerability management tools : Nessus Pro, Tenable IO, FireEye, CrowdStrike, Defender, SpyCloud etc.


Competencies (Who AppSec Engineer Is) :

- Willingness to prioritize team success over individual recognition.

- Champions collaboration, knowledge sharing, and mentoring as foundational practices.

- Committed to improving DevSecOps processes through continuous learning and experimentation.

- Supports sustainable pace and actively addresses technical debt.

- Willing to work onsite one week per quarter.


Annual Goals (What AppSec Engineer Will Be Measured On) :

- Direct reduction of measured security vulnerabilities via tooling

- Cycle time to mitigate vulnerabilities, assigned -> closed

- When On-Call, 100% of response times under 15 minutes

- Leads annual threat modeling exercise for all products assigned


info-icon

Did you find something suspicious?

Similar jobs that you might be interested in