🎁 Before you apply, rehearse this interview. Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card. I want my training →
Do you love a career where you Experience, Grow & Contribute at the same time, while earning at least 10% above the market If so, we are excited to have bumped onto you. Learn how we are redefining the meaning of work, and be a part of the team raved by Clients, Job-seekers and Employees. Jobseeker Video Testimonials Employee Glassdoor Reviews If you are a Application Security Engineer looking for excitement, challenge and stability in your work, then you would be glad to come across this page. We are an IT Solutions Integrator/Consulting Firm helping our clients hire the right professional for an exciting long-term project. Here are a few details. Check if you are up for maximizing your earning/growth potential, leveraging our Disruptive Talent Solution. Role:Application Security Engineer Experience:5-8Years Location:Hyderabad | Bengaluru | Pune | Chennai Work Mode:Hybrid Type:Contract to Hire Notice Period: 0-30 days Requirements Role Summary We are looking for an Application Security Engineer to support Static and Dynamic Application Security Testing (SAST/DAST) scan and triage activities, while also providing hands-on outage support for the security tooling ecosystem including AppScan, Checkmarx, Cycode, and GCP Model Armor. This role combines day-to-day vulnerability triage and remediation guidance with structured, SOP-driven incident response when scanning tools are degraded or unavailable, including support during scheduled patching windows and off-business-hours coverage. Key Responsibilities SAST & DAST Testing and Triage Perform and support Static (SAST) and Dynamic (DAST) application security testing across in-scope applications.Triage scan findings across SAST, DAST, SaaS, Secrets, and API security scan results, distinguishing false positives from confirmed vulnerabilities.Provide developers with clear, actionable remediation guidance for validated vulnerabilities.Support application onboarding into scan tooling and manage Penalty-Box exception handling and unblock decisions.Provide security support during production release ACAB reviews and Breakglass approvals.Create, validate, and drive Vulnerability Information Tracker (VIT) and defect records through to closure. AppScan & Checkmarx Windows Server Patching Outage Support Provide support during scheduled monthly Windows Server patching windows to ensure AppScan and Checkmarx remain available and operational after server restarts.Validate application access for AppScan and Checkmarx following patching.Use RDP to connect to in-scope management servers for troubleshooting.Check IIS Manager to confirm required application pools are in Started status; verify all required HCL AppScan and Cx services are in Running status.Start any stopped services or application pools; reboot the AppScan management server when required for database-related errors.Revalidate application login pages after restart and escalate unresolved issues via email or Microsoft Teams. Cycode Tool Outage Support Support Cycode-related issues, primarily stuck or delayed pull requests during the secret-scanning process.Review incident details and validate pull request scan history in Cycode; check for missing or delayed pull requests.Coordinate with the E3 team to verify Azure DevOps webhooks and recent ADO changes, and confirm branch policy settings.Validate whether an actual secret is blocking the pull request and raise a vendor support ticket with Cycode when required.Coordinate unresolved issues with the appropriate internal teams and Cycode Support until resolution. GCP Model Armor Support Provide off-business-hours support for managing Google Cloud Model Armor configurations.Enable or disable Model Armor for required projects and switch configurations between Inspect Only mode and Inspect and Block mode.Update the necessary Terraform configuration, create pull requests, coordinate approvals, and trigger pipeline deployments.Approve Terraform runs in accordance with the SOP, coordinating with reviewers and approvers as needed. Required Skills & Experience Hands-on experience with SAST and DAST tools and processes (e.g., Checkmarx, HCL AppScan, or equivalen .
Here's how to pick the right one and stand out in your application.
144.883Jobs
31.687IN
81%EN
That number is real. WorkMundi's database shows 144,883 open engineer roles across the world. India has the most with 31,687 jobs, followed by the United States with 30,084. If you just finished reading one job ad and felt paralyzed by choice, you're not alone—but this scale is actually an advantage. It means you can afford to be selective.
Start by geography and language. The majority of engineer ads—117,837 of them—have the job posting text written in English. Use that as one filter, but remember: the ad text language tells you nothing about whether the role actually requires you to speak English day-to-day. Read the job description carefully. Then check which countries have the volume you're targeting. Singapore, Poland, and Australia round out the top five after India and the US.
Next, learn who's hiring. Accenture has posted 2,801 engineer roles. andurilindustries, speechify, and jobgether are also actively recruiting. If you're applying to one of these names, research their hiring patterns and interview style before you apply. That homework pays off.
When you interview, expect the question every engineer hears: 'Tell me about a time you had to debug a problem that wasn't in your job description.' Have a specific story ready—not a general one. Name the tools, the deadline pressure, and what you learned. Hiring managers listen for whether you see problem-solving as part of the role itself, not a favour.