19 Sep
|
Softenger
|
Mumbai
Application Security Engineer
Experience: 3-6 Years
Location: Navi Mumbai
Employment Type: Full-time (WFO)
Job Summary
We are looking for an Application Security Engineer with hands-on experience in security testing of Web, Mobile (Android/iOS), APIs, and Cloud environments.
Key Responsibilities
- Conduct VAPT and penetration testing of web applications, mobile apps, APIs, and cloud environments.
- Perform secure architecture/design reviews and threat modeling.
- Conduct API security testing covering authentication, authorization, data validation, and business logic.
- Identify, validate, and document vulnerabilities with risk ratings and business impact.
- Prepare security assessment reports with clear remediation recommendations.
- Work with development teams on remediation and retest fixes.
- Participate in ethical hacking/red team exercises as required.
Required Skills
- Strong knowledge of OWASP Top 10, API Security, secure coding, and threat modeling.
- Hands-on experience with tools such as Burp Suite, Nmap, Postman, etc.
- Understanding of Web, Mobile, API, and Cloud Security.
- Valuable vulnerability assessment, report writing, and communication skills.
- Scripting knowledge (Python/JavaScript) is an advantage.
- Security certifications such as OSCP, CEH, eJPT, or equivalent are a plus.
Key Skills: Application Security | VAPT | Penetration Testing | Web Security | API Security | Mobile Security | OWASP | Burp Suite | Cloud Security | Ethical Hacking
📌 Application Security Analyst (Mumbai)
🏢 Softenger
📍 Mumbai