31 Jul
|
Code Vyasa
|
India
Role Overview:
We are looking for an experienced Application Security Engineer with a Full Stack development background to strengthen the security posture of our applications and cloud infrastructure. The ideal candidate should have hands-on experience in Application Security, Secure SDLC, Vulnerability Assessment & Penetration Testing (VAPT), secure code reviews, and cloud security. A robust understanding of modern Full Stack technologies is essential to identify and mitigate security risks throughout the software development lifecycle.
About Us:
CodeVyasa is a mid-sized product engineering company that works with top-tier product and solutions organizations such as McKinsey, Walmart, Razorpay, Swiggy, and others. We are a team of 550 engineers, driving innovation across Product & Data Engineering, focusing on Agentic AI, RPA, Full Stack, and GenAI-based solutions.
Mandatory Skills:
- 48 years of experience in Application Security with a strong Full Stack development background.
- Strong expertise in Application Security and Secure Software Development Lifecycle (Secure SDLC).
- Hands-on experience with Cybersecurity, Vulnerability Assessment & Penetration Testing (VAPT), and Secure Source Code Reviews.
- Strong understanding of Data Privacy regulations, including DPDP and GDPR compliance.
- Experience implementing Cloud Security best practices on AWS and/or Azure.
- Strong knowledge of Database Security, Data Protection, and Data Governance principles.
- Good understanding of Full Stack technologies including Flutter, React.js, Node.js, Laravel, MySQL, and PostgreSQL.
- Experience managing and securing cloud infrastructure.
- Knowledge of security architecture, threat modeling, and secure application design.
- Ability to perform vendor technical assessments and understand basic solution architecture.
Preferred Qualifications:
- Exposure to MERN and LAMP technology stacks.
- Experience with AWS Lightsail.
- Knowledge of DevSecOps practices and security automation tools.
- Familiarity with security standards such as OWASP Top 10, CWE, and SANS.
- Relevant security certifications such as CEH, Security , CSSLP, AWS Security Specialty, or equivalent are an advantage.
- Experience working with enterprise security and compliance frameworks.
Key Responsibilities:
- Integrate security best practices throughout the Secure SDLC.
- Conduct application security assessments, VAPT, and secure source code reviews.
- Identify, analyze, and remediate application and infrastructure vulnerabilities.
- Implement and monitor cloud security controls across AWS and Azure environments.
- Ensure compliance with DPDP, GDPR, and other applicable data privacy regulations.
- Review database security configurations and enforce data governance standards.
- Collaborate with development teams to build secure Full Stack applications.
- Perform vendor technical reviews and provide security recommendations during solution design.
- Work closely with engineering and infrastructure teams to implement security controls and improve overall application resilience.
Why Join Us?:
- Work on innovative, high-impact projects with leading global clients.
- Exposure to large-scale Cybersecurity, Cloud, AI, and Product Engineering initiatives.
- Continuous learning and upskilling opportunities through internal and external programs.
- Supportive and collaborative work culture with flexible policies.
- Competitive salary and comprehensive benefits package.
- Free healthcare coverage for employees and dependents.
📌 CodeVyasa - Application Security Engineer (India)
🏢 Code Vyasa
📍 India