Senior Application Security Engineer

HPE (Hewlett Packard Enterprise)

Bangalore, India
Hybrid
Securing ci/cd pipelines and source repositories
Waf tuning and api security
Sast, dast, sca and container scanning tools
Hewlett Packard Enterprise helps companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, fostering a culture that embraces growth and innovation

Job Summary

  • Hewlett Packard Enterprise helps companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, fostering a culture that embraces growth and innovation.
  • The role involves partnering with engineering, architecture, and DevOps teams to embed security into the SDLC, optimize WAF policies, enhance supply chain and pipeline security, and promote secure API and application design.
  • HPE offers comprehensive health and wellbeing benefits, invests in personal and professional development, and fosters an inclusive culture that values varied backgrounds and flexible work arrangements.

Matching Summary

Hewlett Packard Enterprise helps companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, fostering a culture that embraces growth and innovation.

Skills & Requirements

Must-have

  • Securing CI/CD pipelines and source repositories
  • WAF tuning and API security
  • SAST, DAST, SCA and container scanning tools
  • Cloud security experience (AWS, Azure, GCP)
  • Secure coding standards and automation
  • Threat modeling for applications and APIs
  • Supply chain security frameworks knowledge

Nice-to-have

  • Mentoring engineering teams
  • Collaborative and outcome-oriented mindset
  • Automation-first problem solving
  • Experience with GitOps and IaC scanning
  • Knowledge of runtime protection tools
  • Support Security Champions program
  • Experience with AI-powered security tools

Key Requirements

  • 5–8+ years in Application or Product Security
  • Hands-on experience with CI/CD pipeline security
  • Knowledge of supply chain security frameworks (SLSA, NIST SSDF)
  • Experience with secrets management and artifact signing
  • Proficiency in Python, Java, Go, or JavaScript/Node.js
  • Strong understanding of OWASP Top 10 and CWE
  • Relevant certifications such as OSWE, CSSLP, GPCS

Work Rights

Not specified

Tailored Resume

Cover Letter