Application Security Engineer
3 days ago
As an Application Security Engineer, you will be at the forefront of securing our applications and infrastructure. You will work with cross-functional teams to embed security into the software development life cycle (SDLC), reduce risk exposure, and ensure compliance with industry standards. Your expertise will directly safeguard sensitive data, protect against emerging threats, and strengthen our overall security posture.
Roles & Responsibilities
· Partner with development teams to embed security principles and practices throughout the SDLC.
· Perform code security assessments to uncover vulnerabilities such as SQL injection, cross-site scripting (XSS), and insecure APIs.
· Lead threat modeling sessions and conduct risk assessments for upcoming features and services.
· Deploy, configure, and maintain tools for both static and dynamic application security testing.
· Assess security risks and propose effective mitigation and remediation strategies.
· Ensure sensitive data (e.g., credentials, tokens, keys) remains protected during builds and deployments.
· Collaborate with teams to remediate or replace insecure third-party libraries and components.
· Support internal and external audits concerning application and infrastructure security practices.
· Strengthen CI/CD pipelines and infrastructure by enforcing secure configurations.
· Monitor and stay informed on the latest exploits, vulnerabilities, and application security trends.
· Deliver training and mentorship to developers on secure coding standards and practices.
· Develop and maintain internal playbooks, documentation, and security guidelines.
· Ensure cloud services (AWS, Azure, GCP) are deployed with secure configurations and controls.
· Review, audit, and optimize access permissions, network policies, and identity management practices.
Requirements & Qualifications
· Bachelor's/Master's in Computer Science, Cybersecurity, or related discipline.
· Minimum 5 years of experience in Application Security, Security Engineering, or DevSecOps.
· Strong knowledge of web application vulnerabilities and remediation (OWASP Top 10, CWE Top 25).
· Experience with security testing tools such as Burp Suite, OWASP ZAP, Checkmarx, Veracode, or Fortify.
· Proficiency in secure coding practices across languages (Java, Python, JavaScript, C#, etc.).
· Hands-on experience with CI/CD and security automation (Jenkins, GitLab CI, GitHub Actions).
· Cloud security expertise in AWS, Azure, or GCP (IAM, secrets management, networking).
· Familiarity with container and microservices security (Docker, Kubernetes).
· Experience with compliance standards (ISO 27001, SOC 2, PCI DSS, GDPR).
Preferred Skills
· Security certifications such as OSWE, OSCP, GWAPT, CEH, or CISSP.
· Knowledge of Infrastructure-as-Code security (Terraform, CloudFormation).
· Experience with API security testing and automation.
- · Strong communication and collaboration skills to bridge technical and non-technical teams.
-
Application/ Information Security Engineer
3 days ago
Lahore, Punjab, Pakistan TekBoox Full time 2,400,000 - 3,000,000 per yearTekboox US base IT company urgently looking to hire experienced Application/ Information Security EngineerKey ResponsibilitiesPerform penetration testing across web, mobile, APIs, networks, cloud, and Active Directory environments.Identify, exploit, and document vulnerabilities, misconfigurations, and insecure coding practices.Proactively design and...
-
Application/ Information Security Engineer
3 days ago
Lahore, Punjab, Pakistan Tekboox Full time 600,000 - 1,200,000 per yearTekboox US base IT company urgently looking to hire experienced Application/Information Security EngineerKey ResponsibilitiesPerform penetration testing across web, mobile, APIs, networks, cloud, and Active Directory environments.Identify, exploit, and document vulnerabilities, misconfigurations, and insecure coding practices.Proactively design and...
-
Application Security Analyst
1 week ago
Lahore, Punjab, Pakistan CureMD Full time 600,000 - 1,200,000 per yearJob Overview:The Application Security Analyst at CureMD plays a critical role in safeguarding our applications, data, and systems from potential security threats and vulnerabilities. This position involves in-depth technical expertise, and proactive security measures to maintain the integrity, confidentiality, and availability of our applications. As a...
-
Network & Security Engineer
5 days ago
Lahore, Punjab, Pakistan Info Resume Edge Full time $30,000 - $60,000 per yearWe are seeking a highly skilled Network & Security Engineer with a minimum of 6 years of hands-on experience in designing, implementing, managing and securing network infrastructure. The ideal candidate will possess deep technical expertise in routing and switching, routing protocols, SD-WAN, and SASEframeworks, along with practical experience working with...
-
Application Engineer
3 days ago
Lahore, Punjab, Pakistan Power Zone Engineering & Services Full time 600,000 - 800,000 per yearCompany DescriptionPower Zone Engineering & Services is a premier provider of advanced power solutions in Pakistan, specializing in diesel generator sets and battery energy storage systems (BESS). As the Genuine OEM of Cummins in Pakistan and the exclusive distributor of FPT (Italy), Power Zone offers a comprehensive range of high-performance solutions with...
-
Senior Network Security Engineer
22 hours ago
Lahore, Punjab, Pakistan 92Techno Full time 3,600,000 - 4,200,000 per yearWe are seeking a highly skilled Senior Network Security Engineer with deep expertise in firewall security, routing, and cloud networking. The ideal candidate will have expert-level proficiency in Palo Alto Firewalls, Cisco security solutions, AWS/Azure networking, and complex BGP/OSPF environments. This role involves managing next-gen security features,...
-
Security Consultant
3 days ago
Lahore, Punjab, Pakistan LOGICON, LLC Full time 900,000 - 1,200,000 per yearAbout the Role:We are seeking an experienced Security Consultant with hands-on expertise in encryption, decryption, and secure credential management systems for a part-time engagement. The ideal candidate should have prior experience designing or implementing systems like 1Password, KeePass, LastPass, or other secure vaults used for password and key...
-
Design And Application Engineer
2 weeks ago
Lahore, Punjab, Pakistan Overseas Enterprises Full time 1,200,000 - 3,600,000 per yearCompany DescriptionOverseas Enterprises is a customer-driven, solution-focused company with over 60 years of experience in automation and control. Renowned for its professional staff and management, the company is committed to delivering quality services and adhering to deadlines. Overseas Enterprises offers a wide range of products, systems, solutions, and...
-
Design & Application Engineer
1 week ago
Lahore, Punjab, Pakistan M&N Business Full time 900,000 - 1,200,000 per yearPosition: Design & Application EngineerLocation: LahoreQualification: Electrical & Electronics EngineeringRequired Experience: At least 1-4 years of practical experience within the industrial automation industry.Perks & Benefits:Salary: Market Competitive Annual Bonus Vehicle Facility Medical Facility Annual, Casual and Medical Leaves And Many MoreKey...
-
IT Security Specialist, IT
1 week ago
Lahore, Punjab, Pakistan ibex Full time 600,000 - 1,200,000 per yearOverviewTo protect IBEX infrastructure from emerging threats and help organization in achieving its business objectivesDescription: This position acts as IS resource having strong concepts of web application assessments and penetration testings. This position will coordinate & will help implementing IT Security Roadmap and security processes for the...