14 Sep
|
MoneyView
|
India
Job DescriptionRequired Qualifications (Must-Haves):
N
n
Experience: Graduate with 5+ years of hands-on experience in Application Security, Product Security, or a similar software security role.
N
Technical Acumen:
N
Strong ability to read,review, and reason about code in one or more contemporary programming languages used in our stack (e.G., Python, Go, Java, JavaScript/TypeScript).
N
Deep understanding of common web, API and mobile application vulnerabilities (OWASP Top 10) and their mitigation.
N
Hands-on experience with security tools like Burp Suite, Semgrep, Frida, Jadx, Ghidra or similar SAST/DAST/SCA solutions.
N
Familiarity with cloud environments (AWS, GCP, or Azure) and their security principles.
N
Knowledge of contemporary authentication and authorization protocols like JWT, OAuth, SAML and OpenID Connect.
N
Familiarity with fundamental cryptographic principles.
N
Exposure to AI/ML security risks, including testing AI agents, chatbots, and LLM-based applications (e.G., prompt injection,
output handling, model abuse).
N
Communication: Excellent written and verbal communication skills, with the ability to explain complex security concepts to both technical and non-technical audiences.
N
Problem-Solving: Solid analytical and problem-solving skills with a pragmatic, risk-based approach to security.
N
nPreferred Qualifications (Nice-to-Haves)
N
n
Experience building security automation and integrating tools into CI/CD pipelines
N
Familiarity with LLM security topics such as OWASP Top 10 for LLMs, agent security, RAG pipeline attacks, and jailbreak research.
N
Proven experience running or contributing to a bug bounty program.
N
Relevant security certifications are a plus (OSCP, OSWE, eWPT, eWPTX, GWAPT etc.).
N
Track record of contributions to the security community (e.G., blogs, talks, open-source tools, CVEs).
N
📌 Hiring: Senior Application Security Engineer Bengaluru (India)
🏢 MoneyView
📍 India