Application Security – Design Reviews, Threat Modelling

🕒 July 17

🇮🇳 India – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 14%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of SRM Technologies

SRM Technologies

501 - 1000 employees

Founded 1998

📦 Logistics

💼 Consulting

🏭 Manufacturing

Logistics • Consulting • Manufacturing

SRM Technologies is a leading provider of Product Engineering, Automotive Solutions, and Digital Transformation services. With over 25 years of experience, the company specializes in mobility solutions, cloud technologies, data analytics, and artificial intelligence to help enterprises enhance their operational efficiency and innovate their product offerings. SRM Tech focuses on diverse industries such as automotive, healthcare, consumer and retail, telecommunications, and education, leveraging technology to drive business success and agility.

📋 Description

• Participate in security design reviews and threat modeling exercises for new products, services, and platform capabilities • Partner with engineering teams to identify security risks and recommend practical mitigations during the design and development process • Serve as a security consultant for product and engineering teams, answering security questions and providing guidance on secure implementation patterns • Review application and system architectures, technical designs, data flows, and deployment models to identify security risks and recommend secure design patterns • Partner with engineering teams developing AI and machine learning features to identify emerging security risks and recommend secure implementation patterns • Help maintain and improve security standards, guidance, reference architectures, and internal documentation • Develop or enhance tooling and automation that improve the efficiency of threat modeling, security reviews, and risk assessment processes • Collaborate with other Product Security engineers to perform application security assessments and investigate security concerns identified during development • Contribute to developer education efforts through documentation, office hours, workshops, or security awareness initiatives • Support security incident investigations and root cause analysis when application security issues are discovered

🎯 Requirements

• Available to work until 11:00AM Pacific Standard Time (PST) • 5+ years of experience in Application Security, Product Security, or a related field • Strong understanding of common application security vulnerabilities (OWASP Top 10, API Security, authentication, authorization, secrets management, cryptography, etc.) • Experience participating in security reviews, threat modeling exercises, architecture discussions, or application security assessments • Strong technical writing skills and experience creating documentation and guidelines • Strong communication skills and ability to explain security concepts to engineers with varying levels of security expertise • Experience working collaboratively with software engineering teams to identify and address security risks • Familiarity with cloud platforms and modern application architectures (AWS preferred) • Ability to assess risk, prioritize issues, and provide practical security recommendations • Experience reading and understanding source code in one or more modern programming languages • Experience building scripts, tools, or automation to improve engineering or security workflows

🏖️ Benefits

• Health insurance • Retirement plans • Paid time off • Flexible work arrangements • Professional development

Apply Now

Similar Jobs

🕒 July 11

ClanX

1 - 10

🎯 Recruiter

🤖 Artificial Intelligence

👥 HR Tech

Security Engineer securing Conqr AI’s regulated legal AI infrastructure, applications, cloud, and compliance. Conducting penetration testing, improving data protection, and leading SOC 2, ISO 27001, and GDPR initiatives.

AWS

Azure

Cloud

Docker

Google Cloud Platform

Kubernetes

🕒 July 11

Fortrea

10,000+ employees

🏥 Healthcare

🧬 Biotechnology

💊 Pharmaceuticals

Workday Security Lead driving security design and governance for Fortrea's Workday platform. Ensuring secure access and compliance with regulatory frameworks while collaborating with various teams.

🕒 July 9

Solstice Advanced Materials

1001 - 5000

🚘 Automotive

🎖️ Defense

🏥 Healthcare

Senior Network Security Architect at Solstice Advanced Materials driving network security and Zero Trust strategy. Ensuring secure operations across corporate, cloud, and high-trust environments.

Cloud

TCP/IP

🕒 July 1

Akamai Technologies

5001 - 10000

🔒 Cybersecurity

Security Architect detecting and mitigating real-time attacks for Akamai's managed security customers. Protecting digital properties through Akamai's cloud, edge, DDoS, web application, and bot security platform.

DNS

🕒 July 1

Empower

10,000+ employees

💸 Finance

💳 Fintech

👥 B2C

Security Architect advancing Empower’s financial-services cloud security architecture. Designing secure cloud-native systems, threat models, standards, and guardrails across AWS and Azure.

AWS

Azure

Cloud

Cyber Security

GRPC

Jenkins

Kubernetes

Terraform