A

Application Security Engineer

ADMIN Hyderabad, Telangana, India

5 h ago
security Mid (2-5 yrs) Full-time India
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Application Security Engineer will embed security into the software development lifecycle by conducting threat modeling, secure code reviews, and vulnerability assessments. They will also partner with development teams to integrate security testing into CI/CD pipelines and provide guidance on secure coding practices.

What they look for

Application security Threat modeling Secure code review Vulnerability assessment DevSecOps SAST DAST SCA IAST Java C# Python JavaScript TypeScript Go CI/CD

Requirements

Candidates must have a bachelor's degree in a relevant field and 3-5 years of experience in application security or penetration testing. Proficiency in secure coding practices, modern security tooling, and web/mobile/API security is essential for this role.

Benefits

Competitive compensation Performance incentives Flexible working options Health insurance Wellness initiatives Career advancement programs Mentorship Team-building activities

Full description

At Provido, we’re more than a technology company. We are a global hub of innovation, creativity, and engineering excellence.

Our teams design and deliver intelligent, secure, and high-performance digital solutions that help organizations modernize operations, scale their platforms, and succeed in an increasingly digital world.

As part of a dynamic international ecosystem, we bring together forward-thinking engineers, technology specialists, designers, and delivery professionals who transform ideas into scalable, real-world solutions with measurable business impact. If you are motivated by challenge, inspired by technology, and ready to grow with a company that truly invests in its people, your journey starts here.

👉 Why We Need You

The Application Security Engineer is responsible for embedding security across the software development lifecycle, conducting threat modeling, secure code review, and vulnerability assessments to protect enterprise and player-facing applications. This role is well suited to experienced security professionals with strong knowledge of secure coding practices, web, mobile, and API security, and modern DevSecOps tooling. The engineer partners with development teams to identify and remediate vulnerabilities, integrate security testing into CI/CD pipelines, and champion secure-by-design principles. The role is based on-site in Hyderabad and is designed for candidates who can collaborate effectively with global engineering, product, and operations teams.

👉 What You’ll Be Doing

•Perform security assessments of web, mobile, and API-based applications, including manual testing and automated scanning.

•Conduct threat modeling and secure design reviews during application architecture and design phases.

•Review source code (manually and with SAST tooling) to identify and remediate vulnerabilities such as injection, broken authentication, insecure deserialization, and business logic flaws.

•Integrate and tune SAST, DAST, SCA, and IAST tools within CI/CD pipelines to shift security left.

•Partner with development teams to triage findings, prioritize remediation, and provide secure-coding guidance and training.

•Track and report on application security metrics, vulnerability trends, and remediation SLAs to engineering leadership.

•Support incident investigations involving application-layer issues and contribute to root-cause analysis and preventive controls.

•Maintain awareness of OWASP Top 10, CWE/SANS Top 25, and emerging threats relevant to gaming, fintech, and digital services.

👉 What You Bring to the Team

•Bachelor's degree in Cybersecurity, Computer Science, Software Engineering, or a related discipline.

•3-5 years of experience in application security, secure software development, or penetration testing.

•Strong understanding of web application security, OWASP Top 10, and secure coding practices in languages such as Java, C#, Python, JavaScript/TypeScript, or Go.

•Hands-on experience with SAST, DAST, and SCA tools (e.g., Checkmarx, Veracode, Burp Suite, SonarQube, Snyk).

•Experience integrating security testing into CI/CD pipelines (Jenkins, GitLab CI, GitHub Actions, or Azure DevOps).

•Experience securing applications in the gaming industry, including familiarity with anti-cheat, in-game economy abuse, account takeover, fraud, and platform-specific risks across PC, mobile, and console environments.

•Strong analytical, communication, and documentation skills, with the ability to work effectively alongside engineering and product teams.

•Working proficiency in English to support multinational teams and stakeholders.

•Availability to work on-site in Hyderabad, India.

👉 Preferred Skills

•Professional certifications such as OSCP, OSWE, GWAPT, CSSLP, CISSP, or equivalent.

•Experience with cloud-native application security across AWS, Azure, or GCP, and with container and Kubernetes security.

•Familiarity with mobile application security (iOS, Android) and reverse engineering techniques.

•Contributions to bug bounty programs, CTF competitions, or open-source security tooling.

•Knowledge of regulatory and compliance frameworks relevant to gaming and digital services, such as PCI-DSS, GDPR, and ISO 27001.

•Experience with API security, GraphQL, microservices, and event-driven architectures.

•Exposure to game engines and platforms (e.g., Unity, Unreal) and an understanding of common gaming-specific threat vectors.

👉 Why You’ll Love Working with Us

☐ Employee Benefits & Advantages

At Provido, we value our employees and nurture a culture of progress and creativity. Our team members enjoy a supportive, inclusive, and growth-focused environment.

☐ Competitive Compensation & Performance Incentives Provido offers an attractive salary package and performance-based bonuses to recognize and reward your contribution.

☐ Flexible Working Options We support remote and hybrid working models to help you maintain a healthy work-life balance.

☐ Health & Well-being Support We provide comprehensive health insurance, wellness initiatives, and resources to support both physical and mental well-being.

☐ Career Advancement & Development Programs We invest in continuous learning through training programs, mentorship, and clearly defined career development paths.

☐ Team-Oriented & Inclusive Workplace Our culture is built on diversity, inclusion, and collaboration. Every voice matters and innovation is encouraged.

☐ Team Events & Social Activities We organize regular team-building activities and social events to strengthen relationships and create a positive, connected workplace.

Similar roles