Our US-based global BPO client is seeking an Application Security Engineer to protect mission-critical systems and applications serving millions of customers worldwide. This award-winning employer has operated for over 40 years and maintains a strong commitment to employee development, diversity, and work-life balance.
You will lead efforts to secure new and existing applications by assessing risks, developing mitigation strategies, and embedding security best practices throughout the software development lifecycle.
What You'll Do
- Lead security assessments and code reviews across web, mobile, cloud, and on-premise applications.
- Guide development teams on secure coding practices and implement effective security controls.
- Conduct vulnerability scans, penetration testing, and manage remediation processes.
- Deploy and manage SAST, DAST, and IAST tools for continuous application security monitoring.
- Collaborate with DevOps teams to embed security in CI/CD pipelines.
- Evaluate threats, conduct risk assessments, and define mitigation strategies.
- Participate in cloud security reviews across AWS, Azure, and GCP and recommend improvements.
- Deliver security training to developers and internal teams.
- Maintain documentation on architecture, incident response, and security procedures.
- Serve as a security advisor across general business units.
- Communicate findings clearly to both technical and non-technical stakeholders across cultures.
What You Bring
- Bachelor's degree in Computer Science, Information Security, or related field.
- 3+ years of experience in application security covering both cloud and on-premise environments.
- Hands-on experience with penetration testing, risk assessments, and vulnerability management.
- Solid understanding of OWASP Top 10 vulnerabilities and mitigation strategies.
- Proficiency in scripting or programming using Python, Java, or C#.
- Familiarity with security testing tools and major cloud platforms