About this role
Staff Application Security Engineer at FloQast. Location: Pune, Maharashtra, India. Role: engineering security, leading projects, mentoring teams Requirements: 8+ years auditing web applications, 3+ years programming (Node.js, Python, Go, Java, Ruby), experience with web app scanners and pentest tools, cloud (AWS/Azure) security, threat modeling, OWASP Top 10, SDL/SAMM/BSIMM, and CI/CD security. Category: Engineering Seniority: Senior Level Tools: Node.js, Python, Go, Java, Ruby, Burp Suite, ZAP, Nessus, Qualys, Metasploit, CANVAS, Nuclei, Cobalt Strike, AWS, Azure, Lambda, ECS, EKS, DynamoDB, HTTP, DNS, VPN, SAML, OAuth, OpenID, Microsoft Security Development Lifecycle (SDL), OWASP Software Assurance Maturity Model (SAMM), Building Security in Maturity Model (BSIMM), CI/CD, SOC 2, HIPAA, PCI-DSS Certifications: oscp, oswa, oswe, bscp Commitment: Full Time Workplace: Onsite Languages: English