Source description
About the role
About the role We are seeking an experienced Security Engineer with expertise in AI/ML, DevSecOps, and Application Security to strengthen security across software development lifecycles. This role emphasizes hands-on delivery of SAST, SCA, and DAST integration in CI/CD pipelines, application security assessments, and secure-by-design practices for cloud-native and enterprise applications. Key responsibilities - Integrate and optimize security tools like SAST, SCA, and DAST within CI/CD pipelines to automate testing and enforce quality gates. - Conduct comprehensive security assessments including static, dynamic, open-source dependency, and API security testing with actionable remediation guidance. - Collaborate with development and DevOps teams to embed secure coding practices, perform threat modeling, and drive remediation efforts. - Implement DevSecOps controls such as IaC scanning, secrets detection, container and Kubernetes security, and enforce policy-as-code. - Design and develop AI-driven automation workflows for AppSec tasks including vulnerability triage and secure code review assistance while ensuring safe-guards and human oversight. Required skills and experience - 8+ years of experience in application security with solid hands-on expertise in SAST, SCA, and DAST tool integration and management. - Proficiency in automating and scaling security testing within CI/CD environments including quality gates and exception workflows. - Experience performing API security testing covering authentication, authorization, and OWASP Top 10 risks. - Strong scripting skills (e.g., Python, Bash) to automate security tasks and integrate with reporting systems. - Knowledge of DevSecOps practices including infrastructure as code scanning, secrets management, container security, and policy-as-code implementation. - Ability to lead security architecture reviews, threat modeling, and risk prioritization for modern applications and AI/ML systems. Nice to have - Familiarity with software supply-chain security practices including SBOM generation and artifact provenance verification. - Experience designing and deploying AI agents or agentic workflows specifically for application security automation. - Exposure to secure SDLC standards aligned with frameworks like OWASP ASVS. - Understanding of emerging threats and security challenges in AI-enabled applications and workflows. Location Hyderabad, Telangana, India .
More at Alignity
Related open roles
USI-CTS SAP HCM Testing Consultant (Time & Payroll, ABAP HR) Specialist
India
ServiceNow Development Lead
Hyderabad
USI-CTS Oracle Cloud Order to Cash Specialist 6-8 years (Siliguri)
India
USI-CTS Oracle Cloud Order to Cash Specialist 6-8 years (Ward Number 13)
India
USI-CTS Oracle RMCS 5 - 8 years
India
Security Engineer AI/ML/DevSecOps / Application Security
Hyderabad