Flexera Software

Senior Application Security Engineer

Bangalore, India
C++ C# Python Go React Terraform Pulumi
Description

Senior Application Security Engineer

Location: Bangalore

Remote Type: Hybrid

Time Type: Full time

Job Description

Revenera helps product executives build better products, accelerate time to value and monetize what matters.  Revenera’s leading solutions help software and technology companies drive top line revenue with modern software monetization, understand usage and compliance with software usage analytics, empower the use of open source with software composition analysis and deliver an excellent user experience—for embedded, on premises, cloud, and SaaS products.

As a Senior Application Security Engineer, you will be a cornerstone of our Global Product Security organization. We don't just "check boxes"—we build paved roads. You will be responsible for securing a massive ecosystem that spans legacy on-prem C++ and C# applications to modern, cloud-native SaaS solutions built on Python, Go, and React. Your mission is to shift security left by empowering developers, not by being a bottleneck.

 

Key Responsibilities

  • Secure Software Development Lifecycle (SSDLC): Design and integrate security gates into diverse CI/CD pipelines. You’ll be responsible for making SAST/DAST/SCA results actionable for developers across different tech stacks.

  • Strategic Threat Modeling: Lead deep-dive threat modeling sessions for high-risk features. You should be able to visualize attack vectors for both a monolithic C# app and a distributed React/Go architecture.

  • Security Research & Remediation: Conduct targeted manual code reviews and internal penetration tests. When a vulnerability is found, you don't just drop a report; you provide the "Gold Standard" fix or library.

  • Vulnerability Management: Triage bugs from our Bug Bounty program and automated scanners. You will help prioritize risks based on business impact and exploitability.

  • Security Architecture: Consult with product teams during the design phase to ensure we are building in "secure-by-default" patterns (e.g., OIDC, mTLS, encryption at rest).

Preferred Qualifications

  • 7+ years of experience in Application Security or Software Engineering.

  • Proven track record of building Security Champions programs to scale security culture across large engineering orgs.

  • Relevant certifications (e.g., OSCP, CASE, GWEB) or a history of CVEs/Bug Bounty hall-of-fame recognitions.

  • Experience with infrastructure-as-code (Terraform/Pulumi) to automate security configurations.

The "Culture Fit"

We are looking for a pragmatic expert. You understand that a "Perfectly Secure" product that never ships is a failure. You possess the "soft skills" to explain a complex SQL injection to a Product Manager and a Deep Buffer Overflow to a Senior C++ Developer without losing their trust.

Revenera is proud to be an equal opportunity employer.  Qualified applicants will be considered for open roles regardless of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by local/national laws, policies and/or regulations.  Regarding disability, we encourage candidates requiring accommodations to please let us know by emailing [email protected].

Flexera Software
Flexera Software

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say