Description -
We are seeking an experienced Application Security Engineer with a strong background in application security and pen-testing to join our global team. In this role, you will ensure the resiliency and security of our software systems and digital experiences. You will work closely with the cross-functional teams to protect HP’s software, systems, and data. You will focus on automating and improving the security aspects of our code development and deployment practices and leading the application security triage and prioritization processes.
You will:
- Work with developers to implement and maintain secure software development life cycle best practices to produce secure products, and services.
- Contribute to the security hardening efforts and produce sensible baseline configurations for all applications and systems
- Perform application security penetration testing, including managing the existing security tools in the CI/CD pipelines, reviewing proposed project architectures, initial threat modeling, triage of the identified application security defects and the suggested fixes
- Implement and maintain DevOps security tools to perform SAST, DAST, SCA, SBOM and vulnerability management.
- Work closely with the infrastructure and the DevOps teams to ensure consistent implementation of the security standards, including the remediation of the identified gaps in the security posture
- Perform security reviews to make sure the secure code development practices culture is maintained across the organization
- Contribute to the bug bounty triage and remediation processes
You bring:
- Bachelor's degree in Computer Science, Information Technology, or a related technical field
- 5+ years of proven experience in AppSec (web, API, mobile) or a related role
- 3+ years of experience in cloud environments (AWS preferred)
- Proficient in managing static and dynamic code analysis tools
- Familiar with the Infrastructure as Code and “desired state” concepts, including tools such as Terraform, Salt, Chef, Puppet etc.
- Knowledge of common attack vectors, including OWASP Top 10
- Experience automating build and deployment infrastructure built on Kubernetes, Docker etc.
- Experience in Python programming or other shell scripting languages
- Experience with CI/CD tools (e.g., Jenkins, CircleCI) and version control systems (e.g., GitHub)
- Excellent problem-solving and communication skills
Skills:
- OWASP top 10
- NIST
- OSCP/CEH/CISSP/eJPT/eWPT (Certifications)
- Bug Bounty
- Web Security
- API Security
- Burp Suite
- Threat modelling
- Kali Linux
Preferred Qualifications:
- In-depth knowledge of containerization technologies (Docker), orchestration (Kubernetes) and infrastructure as code (Terraform).
- Proficiency in deploying, monitoring, and scaling containerized applications on AWS using EKS, serverless, and ensuring high availability and performance.
- Proficiency in application security assessments, penetration testing, red team, purple team.
#LI-POST
Job -
SoftwareSchedule -
Full timeShift -
No shift premium (India)Travel -
Relocation -
Equal Opportunity Employer (EEO) -
HP, Inc. provides equal employment opportunity to all employees and prospective employees, without regard to race, color, religion, sex, national origin, ancestry, citizenship, sexual orientation, age, disability, or status as a protected veteran, marital status, familial status, physical or mental disability, medical condition, pregnancy, genetic predisposition or carrier status, uniformed service status, political affiliation or any other characteristic protected by applicable national, federal, state, and local law(s).
Please be assured that you will not be subject to any adverse treatment if you choose to disclose the information requested. This information is provided voluntarily. The information obtained will be kept in strict confidence.
If you’d like more information about HP’s EEO Policy or your EEO rights as an applicant under the law, please click here: Equal Employment Opportunity is the Law Equal Employment Opportunity is the Law – Supplement
Other Jobs from HP
Project/Program Engineer
Data Engineer
Data Analyst 4
Similar Jobs
Software Engineer
Principal Dev Ops Engineer
Senior Data Engineer
Sr Engineer, Software (DevOps)
Senior Computer Vision Engineer - Photo AI
Site Reliability Engineer - Intermediate
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say