7 days ago

Application Security Engineer

Rubrik

On Site
Full Time
$140,000
Bengaluru, Karnataka, India

Job Overview

Job TitleApplication Security Engineer
Job TypeFull Time
CategoryCommerce
Experience5 Years
DegreeMaster
Offered Salary$140,000
LocationBengaluru, Karnataka, India

Who's the hiring manager?

Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Uncover Hiring Manager

Job Description

About The Team

The Information Security organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our assets, provides awareness education to teams on security best practices for data protection, and ensures data governance and data sharing relationships with third parties in order to securely protect Rubrik information.

About The Role

Rubrik is seeking an Application Security Engineer. In this role, you will be responsible for ensuring that Rubrik's products and services are designed and implemented to the highest possible security standards. You will partner with a variety of stakeholders across the business to achieve successful security outcomes in product and feature deliverables.

What You'll Do

  • Integrate security controls and practices into Rubrik’s secure SDLC and collaborate with Engineering to embed security into every phase of the development process.
  • Perform security assessments of applications, identifying vulnerabilities and weaknesses through both automated and manual testing techniques.
  • Carry out detailed analysis of identified vulnerabilities to ensure high fidelity findings are provided to Engineering teams.
  • Assist in identifying and implementing frictionless "shift-left" strategies to seamlessly and proactively prevent vulnerabilities earlier in the SDLC.
  • Aid in the collection, management and reporting of key Application Security metrics to track progress and identify trends.
  • Analyze and harden existing applications, automation, and deployment processes.
  • Participate in security design reviews and threat modeling of proposed products and feature releases.
  • Work with development teams, operations, governance, and other stakeholders to document security guidance, processes and standards for Rubrik products and services.

Experience You'll Need

  • Bachelor’s degree required; BS or MS in Computer Science, Information Technology, or a related field.
  • 3+ years’ experience in Application Security, with experience across SDLC activities such as threat modeling, secure code review, vulnerability management, and penetration testing.
  • Knowledge of regulatory guidelines and standards such as FedRAMP, SOC2, ISO 27001 etc.
  • Broad knowledge of web, application, and cloud attack vectors and exploits.
  • Comprehension in multiple programming languages (Python, Go, Scala, C/C++, Javascript/Typescript).
  • Working experience with CI/CD pipeline, containerization (Kubernetes, Docker, etc) and MicroServices.
  • Working knowledge of at least one major public cloud provider (AWS, GCP, Azure).
  • Understanding of application security maturity model frameworks and how to apply them.
  • Foundational knowledge of deploying and securing SaaS applications and cloud environments.
  • Team player, ability to establish priorities, deal with conflicts, work independently, proceed with objectives and can-do attitude.
  • A self-starter with excellent critical thinking and problem solving skills.
  • Strong written and verbal communication skills.

Key skills/competency

  • Application Security
  • SDLC Security Integration
  • Threat Modeling
  • Vulnerability Management
  • Penetration Testing
  • Cloud Security (AWS, GCP, Azure)
  • Containerization (Kubernetes, Docker)
  • CI/CD Security
  • Secure Code Review
  • Regulatory Compliance (FedRAMP, SOC2, ISO 27001)

Tags:

Application Security Engineer
application security
SDLC
threat modeling
vulnerability management
penetration testing
cloud security
CI/CD security
risk assessment
security architecture
secure code review
Python
Go
Scala
C++
JavaScript
TypeScript
Kubernetes
Docker
AWS
GCP
Azure

Share Job:

How to Get Hired at Rubrik

  • Research Rubrik's culture: Study their mission, values, recent news, and employee testimonials on LinkedIn and Glassdoor.
  • Tailor your resume: Customize your Application Security Engineer resume to highlight experience in SDLC security, threat modeling, and vulnerability management, matching Rubrik's job description keywords.
  • Showcase your technical skills: Prepare to discuss your expertise in cloud security, containerization (Kubernetes, Docker), CI/CD pipelines, and relevant programming languages like Python or Go.
  • Demonstrate problem-solving: Be ready to share specific examples of how you've identified and resolved application security challenges in previous roles.
  • Understand Rubrik's products: Familiarize yourself with Rubrik Security Cloud and their focus on data protection and cyber resilience to articulate how your skills align.

Frequently Asked Questions

Find answers to common questions about this job opportunity

Explore similar opportunities that match your background