Senior Application Security Engineer
FloQast
15 days ago
Pune, India
Senior
Responsibilities
- Contribute to the strategic AppSec roadmap and lead the implementation of SSDLC.
- Lead architectural reviews and threat modeling sessions for product features.
- Manage responses to critical software vulnerabilities and oversee the Bug Bounty program.
- Design internal security libraries and oversee AppSec tooling implementation.
- Serve as a core security expert and mentor junior security engineers.
- Apply knowledge of REST/GraphQL APIs and modern web frameworks to enhance security.
- Conduct forensic analysis of application-level security incidents.
- Lead technical workshops and contribute to the 'Security Champions' program.
Requirements
- 6+ years of experience in software engineering or application security.
- Strong background as a professional software developer in multiple languages.
- Proven ability to threat model complex systems and identify logic flaws.
- Mastery of identifying and mitigating the OWASP Top 10 and advanced exploitation vectors.
- Extensive experience with AppSec tools in enterprise-scale CI/CD environments.
- Deep understanding of identity protocols and modern authorization models.
- Proven ability to lead complex technical projects and cross-functional initiatives.
Tech Stack
Amazon DynamoDBAWSGitHub ActionsGoJavaJavaScriptPythonTypeScript
Categories
Security