
Posted a day ago
Application Security Engineer
Strategy IncApplication Security Engineer
Requirements
Bachelor's degree in Computer Science or related field, Minimum 5 years software development or security experience, Hands-on experience with SAST, DAST, IAST, and SCA tools, Deep knowledge of API security, Experience securing containerized applications, Familiarity with AI/ML security risks, Experience with Infrastructure as Code (IaC), Proficiency in Python, Java, or JavaScript
Skills
PythonJavaJavaScriptAWSDockerKubernetesTerraform
About the role
Responsibilities
- Design and implement application security architecture and processes aligned with industry best practices.
- Manage a risk-balanced SDLC by integrating threat modeling, secure code reviews, and security testing.
- Identify, triage, and remediate vulnerabilities using SAST, DAST, IAST, and SCA tools.
- Perform advanced penetration testing and red teaming across web, mobile, and cloud applications.
- Lead DevSecOps initiatives by integrating security automation within CI/CD pipelines.
- Conduct threat modeling to anticipate attack vectors and improve security architecture.
- Develop and lead customized security training programs for engineering teams, focusing on OWASP and AI security risks.
Requirements
- Bachelor's degree in Computer Science, Engineering, or a related field.
- Minimum 5 years of software development or software security experience in an agile environment.
- Hands-on experience with SAST, DAST, IAST, and SCA tools (e.g., Checkmarx, Veracode, Burp Suite).
- Deep knowledge of API security (OWASP API Top 10, GraphQL).
- Experience securing containerized applications using Docker and Kubernetes.
- Proficiency in at least one programming language such as Python, Java, or JavaScript.
- Experience with Infrastructure as Code (IaC) security, such as Terraform or CloudFormation.
- Familiarity with AI/ML security risks and adversarial machine learning techniques.
Preferred Qualifications
- Experience with cloud security best practices in AWS, Azure, or GCP.
- Knowledge of supply chain security risks, including SBOM and software dependency management.
- Experience mentoring junior engineers and leading security champions within development teams.
About the Company
Strategy (Nasdaq: MSTR) is a market leader in enterprise analytics and AI software, transforming organizations into intelligent enterprises through data-driven innovation. We are also pioneers in the digital asset space, having adopted Bitcoin as our primary treasury reserve asset. We thrive on curiosity and innovation, fostering a culture that is bold, agile, and impactful.
ScoutJobs Agent
Get matches like this delivered daily
Sign up free — we'll pull jobs that fit your CV from across the web and rank them for you.
Get started — it's freeApplication Security Engineer
Strategy Inc · Pune
