NewSpace Research and Technologies

Application Security Test Engineer

Bangalore, India
Python JavaScript C++ Burp Suite OWASP ZAP OWASP NIST DevSecOps
Description

Engineer II - Application Security Test

Location: Bangalore, India

Department: IT Infrastructure

Experience: 3-5

Who we are:

We are a start-up based out of Bengaluru & Delhi NCR. We are engaged in development of next generation missions and technologies (NGM&T) towards future warfare needs of the Indian defence forces. It is undertaking research towards enhancing persistence and autonomy for unmanned vehicles and robotic swarms. NRT’s product development portfolio includes a solar power stratospheric high altitude pseudo satellite (HAPS) unmanned platform and an air/ground launched stand-off autonomous system.

Application Security Test Engineer

Test Engineer Grade II/III (Code, Application, IoT Tech)" role involves performing dynamic and static application security testing (DAST/SAST), secure code reviews, and managing software development posture. Key responsibilities include identifying and reporting vulnerabilities in code, applications, and IoT devices, collaborating with developers to integrate security into the SDLC, auditing security documentation, and conducting risk assessments.

The role requires 2-3 years of experience in security application testing, strong understanding of web application and IoT security, experience with tools like Burp Suite and OWASP ZAP, and proficiency in languages like Python, Javascripts, or C/C++. Desired skills include penetration testing experience, knowledge of security frameworks (OWASApplication Security P, NIST), familiarity with DevSecOps, and certifications like CEH or OSCP.

Key Responsibilities:

  • DAST/SAST (Dynamic Application Security Testing/Static Application Security Testing): Perform both dynamic and static analysis of applications to identify security vulnerabilities.
  • Secure Code Review - Coding Best Practices: Conduct systematic reviews of source code to ensure adherence to secure coding principles and identify potential weaknesses.
  • Software Development Posture and Inventory Management/Monitoring: Continuously manage and monitor the security state of all software assets and their underlying infrastructure.
  • Perform security testing on code, applications, IoT devices, and communication protocols developed by the organization: Execute various security tests on the organization's proprietary software, IoT devices, and communication methods to uncover vulnerabilities.
  • Identify vulnerabilities and weaknesses in the software and applications, reporting findings to the development team: Discover and clearly report security flaws in software and applications to development teams for remediation.
  • Collaborate with developers to integrate security testing throughout the software development lifecycle (SDLC): Work closely with development teams to embed security activities into every stage of the software development process.
  • Review and audit security-related documentation for compliance with security best practices: Examine and verify security documentation to ensure it meets established industry standards and best practices.
  • Develop and execute penetration testing scripts and automated testing tools to identify potential exploits: Create and run specialized programs to simulate attacks and discover exploitable vulnerabilities.
  • Conduct risk assessments and provide actionable recommendations for mitigating security risks and vulnerabilities: Evaluate potential security threats and offer practical solutions to reduce or eliminate risks.
  • Stay updated with the latest trends, technologies, and best practices in application security: Continuously research and learn about emerging threats, new security tools, and industry standards to maintain expertise.

Required Skills:

  • 2-3 years of experience in security application testing or related fields.
  • Strong understanding of web application security, IoT security, and communication protocols.
  • Experience with security testing tools like Burp Suite, OWASP ZAP, and others.
  • Proficiency in programming languages such as Python, Java, or C/C++.
  • Understanding of secure coding practices and software development lifecycles.

Desired Skills:

  • Experience in penetration testing, vulnerability assessments, and threat modeling.
  • Knowledge of common security frameworks and standards (e.g., OWASP, NIST).
  • Familiarity with automated testing and DevSecOps practices.
  • Certifications like CEH (Certified Ethical Hacker), OSCP (Offensive Security Certified Professional) are a plus.

NewSpace Research and Technologies
NewSpace Research and Technologies

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say