This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Application Security - Design Reviews Threat Modelling based in India.
This role offers the opportunity to strengthen application security across a modern software ecosystem by partnering with engineering and product teams throughout the software development lifecycle. You will help identify and reduce security risks early by conducting threat modeling, architecture reviews, and security assessments. The position focuses on building secure-by-design practices and enabling teams to make informed security decisions. You will collaborate with technical teams working on innovative products, including AI and machine learning capabilities. The role combines deep technical expertise, problem-solving, and communication skills to improve security maturity at scale. You will also contribute to security tooling, documentation, automation, and developer education initiatives. This is an impactful opportunity for an experienced security professional who enjoys solving complex challenges in a collaborative environment.
Accountabilities
- Conduct security design reviews and threat modeling exercises for new products, services, applications, and platform capabilities.
- Collaborate with engineering and product teams to identify security risks and recommend practical mitigation strategies throughout the development lifecycle.
- Review application architectures, technical designs, data flows, deployment models, and system configurations to identify vulnerabilities and recommend secure design patterns.
- Act as a security consultant for engineering teams by providing guidance on secure implementation practices, application security principles, and risk management.
- Partner with teams developing AI and machine learning features to identify emerging security risks and support secure implementation approaches.
- Maintain and improve security standards, reference architectures, documentation, and internal security guidance.
- Develop and enhance automation, tooling, and processes that improve the efficiency and scalability of threat modeling and security review activities.
- Support application security assessments, investigate security concerns, and contribute to root cause analysis for identified issues.
- Participate in developer education initiatives through workshops, documentation, office hours, and security awareness programs.
- Assist with security incident investigations related to application vulnerabilities when required.
Requirements
- 5+ years of experience in Application Security, Product Security, Security Engineering, or a related technical field.
- Availability to work until 11:00 AM Pacific Standard Time (PST).