
Posted 4 hours ago
Application Security Engineer
Strategy IncApplication Security Engineer
Requirements
Bachelor's degree in Computer Science or related field, Minimum 5 years software security experience, Hands-on experience with SAST, DAST, IAST, and SCA tools, Deep knowledge of API security, Experience securing containerized applications, Familiarity with AI/ML security risks, Experience with Infrastructure as Code, Proficiency in Python, Java, or JavaScript
Skills
Application SecurityPythonAWSKubernetesDevSecOps
About the role
Responsibilities
- Design and implement application security architecture and processes aligned with industry best practices.
- Manage a risk-balanced Secure SDLC by integrating threat modeling, secure code reviews, and security testing.
- Identify, triage, and remediate vulnerabilities using SAST, DAST, IAST, and SCA tools.
- Perform advanced penetration testing and red teaming across web, mobile, and cloud applications.
- Lead DevSecOps initiatives by integrating security automation within CI/CD pipelines.
- Conduct threat modeling to anticipate attack vectors and improve security architecture.
- Develop and lead security training programs for engineering teams, focusing on OWASP Top 10 and AI security risks.
Requirements
- Bachelor's degree in Computer Science, Engineering, or a related field.
- Minimum 5 years of software security or software development experience in an agile environment.
- Hands-on experience with security tools such as GitHub Advanced Security, Checkmarx, Fortify, Veracode, or Burp Suite.
- Deep knowledge of API security (OWASP API Top 10, GraphQL) and securing containerized applications (Docker, Kubernetes).
- Proficiency in at least one programming language, such as Python, Java, or JavaScript.
- Experience with Infrastructure as Code (IaC) security using Terraform or CloudFormation.
- Familiarity with AI/ML security risks, including adversarial machine learning and model poisoning.
Preferred Qualifications
- Experience with cloud security best practices in AWS, Azure, or GCP.
- Knowledge of supply chain security risks and software dependency management (SBOM).
- Experience mentoring junior engineers and leading security champions within development teams.
About the Company
Strategy (Nasdaq: MSTR) is a market leader in enterprise analytics and AI software, transforming organizations into intelligent enterprises through data-driven innovation. We are also pioneers in the digital asset space, having adopted Bitcoin as our primary treasury reserve asset. We thrive on curiosity and innovation, fostering a culture that is bold, agile, and impactful.
ScoutJobs Agent
Get matches like this delivered daily
Sign up free — we'll pull jobs that fit your CV from across the web and rank them for you.
Get started — it's freeApplication Security Engineer
Strategy Inc · Pune
