Application Security – Vulnerability Discovery

🕒 July 17

🇮🇳 India – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 14%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of SRM Technologies

SRM Technologies

501 - 1000 employees

Founded 1998

📦 Logistics

💼 Consulting

🏭 Manufacturing

Logistics • Consulting • Manufacturing

SRM Technologies is a leading provider of Product Engineering, Automotive Solutions, and Digital Transformation services. With over 25 years of experience, the company specializes in mobility solutions, cloud technologies, data analytics, and artificial intelligence to help enterprises enhance their operational efficiency and innovate their product offerings. SRM Tech focuses on diverse industries such as automotive, healthcare, consumer and retail, telecommunications, and education, leveraging technology to drive business success and agility.

📋 Description

• Triage, validate, and prioritize security vulnerabilities identified through manual reviews, automated tooling, bug bounty reports, and AI-assisted security analysis platforms. • Participate in on-call rotation to support security incident triage, perform code reviews, and address security questions. • Partner closely with engineering teams to drive remediation efforts, provide actionable guidance, and ensure timely closure of security findings based on risk and severity. • Review security-related pull requests and code changes, providing guidance on secure implementation patterns and identifying potential vulnerabilities before production deployment. • Analyze findings generated by AI-powered security agents and automation platforms, validate results, reduce false positives, and help drive remediation workflows across engineering teams. • Collaborate with Product Security Architecture and development teams to improve vulnerability detection, prioritization, and remediation processes. • Support security incident investigations and root cause analysis when vulnerabilities or application security issues are discovered. • Develop security tooling, automation, and workflows that improve security coverage and reduce manual effort for security reviews and vulnerability management. • Administer and manage vulnerability scanning tools (e.g., Tenable or similar). • Configure, optimize, and maintain scanning tools, policies, and schedules. • Track and report on remediation progress, security metrics, and risk reduction initiatives across assigned engineering organizations. • Contribute to security documentation, best practices, and developer education efforts to improve secure coding practices across Dropbox.

🎯 Requirements

• 3+ years experience in application security engineering • Strong communication skills and relationship building skills • Experience in building and scaling the Secure Development Lifecycle • Experience with handling vulnerability and bug bounty reports • Experience partnering with cross-functional engineering and product teams • Experience triaging, validating, and prioritizing security vulnerabilities from static analysis, dynamic analysis, dependency scanning, penetration testing, or bug bounty programs. • Strong understanding of common application security vulnerabilities (OWASP Top 10, API Security, authentication, authorization, secrets management, cryptography, etc.). • Experience reviewing source code and identifying security vulnerabilities in modern programming languages and frameworks. • Familiarity with security tooling such as SAST, DAST, SCA, IaC scanning, secrets detection, and vulnerability management platforms. • Experience working with cloud-native architectures and public cloud environments (AWS preferred).

🏖️ Benefits

• This is a remote position. • Health insurance

Apply Now

Similar Jobs

🕒 July 11

ClanX

1 - 10

🎯 Recruiter

🤖 Artificial Intelligence

👥 HR Tech

Security Engineer securing Conqr AI’s regulated legal AI infrastructure, applications, cloud, and compliance. Conducting penetration testing, improving data protection, and leading SOC 2, ISO 27001, and GDPR initiatives.

AWS

Azure

Cloud

Docker

Google Cloud Platform

Kubernetes

🕒 July 11

Fortrea

10,000+ employees

🏥 Healthcare

🧬 Biotechnology

💊 Pharmaceuticals

Workday Security Lead driving security design and governance for Fortrea's Workday platform. Ensuring secure access and compliance with regulatory frameworks while collaborating with various teams.

🕒 July 9

Solstice Advanced Materials

1001 - 5000

🚘 Automotive

🎖️ Defense

🏥 Healthcare

Senior Network Security Architect at Solstice Advanced Materials driving network security and Zero Trust strategy. Ensuring secure operations across corporate, cloud, and high-trust environments.

Cloud

TCP/IP

🕒 July 1

Akamai Technologies

5001 - 10000

🔒 Cybersecurity

Security Architect detecting and mitigating real-time attacks for Akamai's managed security customers. Protecting digital properties through Akamai's cloud, edge, DDoS, web application, and bot security platform.

DNS

🕒 July 1

Empower

10,000+ employees

💸 Finance

💳 Fintech

👥 B2C

Security Architect advancing Empower’s financial-services cloud security architecture. Designing secure cloud-native systems, threat models, standards, and guardrails across AWS and Azure.

AWS

Azure

Cloud

Cyber Security

GRPC

Jenkins

Kubernetes

Terraform