Application Security Engineer (Bengaluru)

Application Security Engineer (Bengaluru)

19 Aug
|
Cyberpwn
|
Bengaluru

19 Aug

Cyberpwn

Bengaluru

Role & responsibilities:-

KEY RESPONSIBILITY AREAS (KRA)
- Execute hybrid and fully automated penetration testing across web applications and APIs in line with the agreed testing schedule.
- Configure and operate authenticated and unauthenticated energetic application security testing using Fortify on Demand, OWASP ZAP, Burp Suite, and Qualys WAS.
- Validate and triage automated scan output, eliminate false positives, and confirm exploitability before findings are reported.
- Assign severity to findings using CVSS and application context, and prepare findings for peer review.
- Produce penetration test reports with OWASP-mapped findings, reproduction steps, and remediation guidance.
- Perform retest validation following remediation closure and document whether fixes are effective.
- Support Senior Engineers on manual testing of critical applications, taking ownership of defined test areas.
- Maintain scan configurations, authentication profiles, and application inventory records to ensure accurate testing scope.




- Track application security findings through to closure in the client workflow system and escalate at-risk items ahead of SLA breach.
- Support walkthrough sessions with development teams and capture remediation actions and owners.
- Contribute to the application testing schedule, coverage tracking, and monthly application security reporting inputs.
- Participate in shadowing, reverse-shadowing, and assisted-operation phases of knowledge transfer during mobilisation and transition.

KEY PERFORMANCE INDICATORS (KPIs)
- Assessment execution rate against the planned testing schedule.
- Report delivery timeliness following completion of testing.
- False-positive rate in reported findings.
- Severity rating precision, measured by severity upheld on peer review.
- Retest completion timeliness following receipt of remediation evidence.
- Application testing coverage contribution against the annual portfolio plan.
- Timeliness of escalation for at-risk findings ahea

📌 Application Security Engineer (Bengaluru)
🏢 Cyberpwn
📍 Bengaluru

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: application security engineer (bengaluru) / bengaluru

Subscribe to this job alert:

Get the latest job offers by email for: application security engineer (bengaluru) / bengaluru