Application Security Engineer
4 days ago
As an Application Security Engineer, you will be at the forefront of securing our applications and infrastructure. You will work with cross-functional teams to embed security into the software development life cycle (SDLC), reduce risk exposure, and ensure compliance with industry standards. Your expertise will directly safeguard sensitive data, protect against emerging threats, and strengthen our overall security posture.
Roles & Responsibilities
· Partner with development teams to embed security principles and practices throughout the SDLC.
· Perform code security assessments to uncover vulnerabilities such as SQL injection, cross-site scripting (XSS), and insecure APIs.
· Lead threat modeling sessions and conduct risk assessments for upcoming features and services.
· Deploy, configure, and maintain tools for both static and dynamic application security testing.
· Assess security risks and propose effective mitigation and remediation strategies.
· Ensure sensitive data (e.g., credentials, tokens, keys) remains protected during builds and deployments.
· Collaborate with teams to remediate or replace insecure third-party libraries and components.
· Support internal and external audits concerning application and infrastructure security practices.
· Strengthen CI/CD pipelines and infrastructure by enforcing secure configurations.
· Monitor and stay informed on the latest exploits, vulnerabilities, and application security trends.
· Deliver training and mentorship to developers on secure coding standards and practices.
· Develop and maintain internal playbooks, documentation, and security guidelines.
· Ensure cloud services (AWS, Azure, GCP) are deployed with secure configurations and controls.
· Review, audit, and optimize access permissions, network policies, and identity management practices.
Requirements & Qualifications
· Bachelor's/Master's in Computer Science, Cybersecurity, or related discipline.
· Minimum 5 years of experience in Application Security, Security Engineering, or DevSecOps.
· Strong knowledge of web application vulnerabilities and remediation (OWASP Top 10, CWE Top 25).
· Experience with security testing tools such as Burp Suite, OWASP ZAP, Checkmarx, Veracode, or Fortify.
· Proficiency in secure coding practices across languages (Java, Python, JavaScript, C#, etc.).
· Hands-on experience with CI/CD and security automation (Jenkins, GitLab CI, GitHub Actions).
· Cloud security expertise in AWS, Azure, or GCP (IAM, secrets management, networking).
· Familiarity with container and microservices security (Docker, Kubernetes).
· Experience with compliance standards (ISO 27001, SOC 2, PCI DSS, GDPR).
Preferred Skills
· Security certifications such as OSWE, OSCP, GWAPT, CEH, or CISSP.
· Knowledge of Infrastructure-as-Code security (Terraform, CloudFormation).
· Experience with API security testing and automation.
- · Strong communication and collaboration skills to bridge technical and non-technical teams.
-
Application/ Information Security Engineer
4 days ago
Lahore, Punjab, Pakistan TekBoox Full time 2,400,000 - 3,000,000 per yearTekboox US base IT company urgently looking to hire experienced Application/ Information Security EngineerKey ResponsibilitiesPerform penetration testing across web, mobile, APIs, networks, cloud, and Active Directory environments.Identify, exploit, and document vulnerabilities, misconfigurations, and insecure coding practices.Proactively design and...
-
Application/ Information Security Engineer
5 days ago
Lahore, Punjab, Pakistan Tekboox Full time 600,000 - 1,200,000 per yearTekboox US base IT company urgently looking to hire experienced Application/Information Security EngineerKey ResponsibilitiesPerform penetration testing across web, mobile, APIs, networks, cloud, and Active Directory environments.Identify, exploit, and document vulnerabilities, misconfigurations, and insecure coding practices.Proactively design and...
-
Application Security Analyst
2 weeks ago
Lahore, Punjab, Pakistan CureMD Full time 600,000 - 1,200,000 per yearJob Overview:The Application Security Analyst at CureMD plays a critical role in safeguarding our applications, data, and systems from potential security threats and vulnerabilities. This position involves in-depth technical expertise, and proactive security measures to maintain the integrity, confidentiality, and availability of our applications. As a...
-
Security Engineer
2 weeks ago
Lahore, Punjab, Pakistan Strukture Full time 900,000 - 1,200,000 per yearWe're Hiring: Security EngineerOurUS Clientneeds aSecurity Engineerwho can help him build secure, resilient, and scalable technology solutions. What You'll Do:Design, implement, and monitor security solutions across applications, networks, and cloud environmentsConduct security assessments, penetration testing, and risk analysisRespond to incidents and...
-
Security Engineer
2 weeks ago
Lahore, Punjab, Pakistan Cloud Primero B.V Full time 120,000 - 360,000 per yearCloud Primero B.V is looking for an experiencedSecurity Engineerto evaluate and strengthen the security of our infrastructure, applications, and data. The role will ensure all solutions meet regulatory requirements and organisational standards while supporting the design of secure future-state architectures.Key Responsibilities:• Conduct security audits...
-
Application Engineer
4 days ago
Lahore, Punjab, Pakistan Power Zone Engineering & Services Full time 600,000 - 800,000 per yearCompany DescriptionPower Zone Engineering & Services is a premier provider of advanced power solutions in Pakistan, specializing in diesel generator sets and battery energy storage systems (BESS). As the Genuine OEM of Cummins in Pakistan and the exclusive distributor of FPT (Italy), Power Zone offers a comprehensive range of high-performance solutions with...
-
Senior Network Security Engineer
2 days ago
Lahore, Punjab, Pakistan 92Techno Full time 3,600,000 - 4,200,000 per yearWe are seeking a highly skilled Senior Network Security Engineer with deep expertise in firewall security, routing, and cloud networking. The ideal candidate will have expert-level proficiency in Palo Alto Firewalls, Cisco security solutions, AWS/Azure networking, and complex BGP/OSPF environments. This role involves managing next-gen security features,...
-
Security Expert
4 days ago
Lahore, Punjab, Pakistan Viral Square Full time 1,200,000 - 3,600,000 per yearJob Description – Security ExpertPosition:Security Expert (Application & Web Security)About the RoleWe are seeking an experienced Security Expert with strong technical skills in application security, TLS/SSL, CDN/WAF configuration, and bot mitigation.The ideal candidate has hands-on experience with Python tooling, Akamai/CDNs, and defending against...
-
Sr. DevOps and Security Engineer
2 weeks ago
Lahore, Punjab, Pakistan Simplex Technology Solutions Full time 70,000 - 120,000 per yearPosition Summary:We are seeking a highly skilled Sr. DevOps & Security Engineer with 5+ years of experience to lead the design, automation and security of our hybrid infrastructure. This role requires expertise in managing local data center environments (VMware vCenter/ESXi, firewalls, routers, and switches) as well as AWS production cloud environments. The...
-
Application Engineer – iOS
2 weeks ago
Lahore, Punjab, Pakistan Astra Full time $90,000 - $120,000 per yearAbout UsAstra is revolutionizing financial compliance through AI and blockchain-powered identityverification and KYC solutions. Our one-click identity platform seamlessly integrates biometricverification, document authentication, and real-time risk assessment to empower financialinstitutions with faster, more secure, and cost-effective compliance...