Application Security Engineer
Nagpur, India
MicroStrategy
Launch AI apps for business intelligence that boost user engagement and drive actual impact. Quick integration. Cloud native. Data governance baked in.Company Description
MicroStrategy transforms organizations into intelligent enterprises through data-driven innovation. We match smart people to dynamic projects and technologies that truly challenge their talents. Curious and creative in outlook, our success is built on the talent and energy of smart and driven people. MicroStrategy (Nasdaq: MSTR) is a worldwide leader in enterprise analytics and mobility software. A pioneer in the BI and analytics space, MicroStrategy delivers innovative software that empowers people to make better decisions and transform the way they do business. We provide our enterprise customers with world-class software and expert services so they can deploy unique intelligence applications.
Job Description
Company Description
Strategy (Nasdaq: MSTR) is at the forefront of transforming organizations into intelligent enterprises through data-driven innovation. We don't just follow trends, we set them and drive change. As a market leader in enterprise analytics and mobility software, we've pioneered the BI and analytics space, empowering people to make better decisions and revolutionizing how businesses operate.
But that's not all. Strategy is also leading a groundbreaking shift in how companies approach their treasury reserve strategy, boldly adopting Bitcoin as a key asset. This visionary move is reshaping the financial landscape and solidifying our position as a forward-thinking, innovative force in the market. Four years after adopting the Bitcoin Standard, Strategy's stock has outperformed every company in S&P 500.
Our people are the core of our success. At Strategy, you'll join a team of smart, creative minds working on dynamic projects with cutting-edge technologies. We thrive on curiosity, innovation, and a relentless pursuit of excellence.
Our corporate values—bold, agile, engaged, impactful, and united—are the foundation of our culture. As we lead the charge into the new era of AI and financial innovation, we foster an environment where every employee's contributions are recognized and valued.
Join us and be part of an organization that lives and breathes innovation every day. At Strategy, you're not just another employee; you're a crucial part of a mission to push the boundaries of analytics and redefine financial investment.
Job Description
Join Strategy’s IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategy’s software applications while using modern security and AI tooling. In this position, you will be responsible for integrating security practices throughout the software development lifecycle, ensuring that our software products are resilient against vulnerabilities.
Secure SDLC Integration: Work closely with development teams to integrate security into the SDLC, including threat modeling, secure code reviews, and security testing.
Vulnerability Management: Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA) tools.
Security Assessments & Penetration Testing: Conduct manual and automated penetration testing of web, mobile, and cloud applications to detect security flaws.
Secure Code Review: Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices.
Threat Modeling & Risk Analysis: Perform threat modeling to anticipate potential attack vectors and improve security architecture.
DevSecOps Enablement: Support and enhance DevSecOps initiatives by integrating security automation within CI/CD pipelines.
Incident Response & Remediation: Assist in investigating security incidents related to applications and work with engineering teams to remediate threats.
Security Awareness & Training: Educate and mentor developers on OWASP Top 10, SANS 25, and other security best practices.
Qualifications
Bachelor’s degree in Computer Science, Engineering, or related field
Minimum 2 years of software development or software security experience in an agile environment
Hands-on experience with SAST, DAST, IAST, and SCA tools (e.g., Checkmarx, Fortify, Veracode, SonarQube, Burp Suite, ZAP).
Fluent in one or more programming languages, such as Python, Java, JavaScript
Strong knowledge of secure coding principles and application security frameworks
Familiarity with security tools (e.g., static and dynamic analysis tools, vulnerability scanners)
Understanding of security standards and regulations (e.g., OWASP, NIST)
Hands-on experience with Generative AI and/or ML in creating innovative applications that enhance productivity and efficiency, coupled with a strong eagerness to learn
Experience with cloud security best practices in AWS, Azure, or GCP.
Strong work ethic with a commitment to meeting business needs and effectively collaborating with global colleagues
Effective interpersonal skills; ability to collaborate successfully with both technical and non-technical stakeholders
Ability to articulate complex technical concepts with clarity, supported by effective written and verbal communication skills
Job Location
Application Security Engineer
Pune, India
Full-time in person from Strategy Office a minimum of 4 days per week
Additional Information
The recruitment process includes online assessments as a first step (English, logic, design, technical) - we send them via e-mail, please check also your SPAM folder
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Analytics Application security Automation AWS Azure Burp Suite Business Intelligence Checkmarx CI/CD Cloud Computer Science DAST DevSecOps GCP Generative AI IAST Incident response Java JavaScript NIST OWASP Pentesting Python Risk analysis SANS SAST SDLC Security assessment SonarQube Strategy Veracode Vulnerabilities Vulnerability management
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.