Hiring.Camp

Security Engineer III

Verizon Communications

·

Today

Location
VDSI-5th floor Wing B, Etamin Block, Bangalore, IND (IND39), India · Chennai, India
Type
Full-time
Department
Engineering
Closing date
Today
Source
Workday

Description

When you join Verizon

You want more out of a career. A place to share your ideas freely — even if they’re daring or different. Where the true you can learn, grow, and thrive. At Verizon, we power and empower how people live, work and play by connecting them to what brings them joy. We do what we love — driving innovation, creativity, and impact in the world. Our V Team is a community of people who anticipate, lead, and believe that listening is where learning begins. In crisis and in celebration, we come together — lifting our communities and building trust in how we show up, everywhere & always. Want in? Join the #VTeamLife.

We are seeking a highly skilled and motivated Security Engineer to join our Application Security team. This role requires a unique blend of deep expertise in Dynamic Application Security Testing (DAST) methodologies and tools, coupled with strong hands-on experience in Java development. The ideal candidate will be instrumental in integrating security practices directly into our Software Development Lifecycle (SDLC), particularly by establishing, tuning, and operating our DAST program and helping development teams remediate complex security vulnerabilities.

What you’ll be doing…

  • Strategy & Implementation: Defining, implementing, and continuously maturing the organization's DAST strategy, integrating automated scanning into CI/CD pipelines (e.g., Jenkins, GitLab CI).

  • Tool Management: Selecting, configuring, managing, and maintaining DAST solutions (e.g., OWASP ZAP, Burp Suite Enterprise, or commercial tools like Tenable WAS).

  • Scanning & Analysis: Performing comprehensive DAST scans on web applications, APIs, and microservices, analyzing results for false positives and reporting actionable vulnerabilities.

  • Custom Scripting & Automation: Developing custom scripts and automation (using Python, Java, or Shell) to enhance DAST coverage, automate testing scenarios, and integrate DAST output with defect tracking systems (e.g., Jira).

  • Vulnerability Remediation: Partnering directly with development teams to explain vulnerability root causes, provide secure coding examples, and guide them through the remediation process.

  • Code Review: Conducting targeted security code reviews for critical applications, focusing on architectural security flaws and common specific vulnerabilities (e.g., deserialization issues, Spring/Struts security misconfigurations, injection flaws).

  • Secure Coding Standards: Developing and promoting secure coding standards and best practices and associated frameworks.

  • Documentation & Training: Creating high-quality documentation, training materials, and run hands-on workshops to elevate the security knowledge of engineering teams.

  • Incident Response: Assisting in the investigation and resolution of application security incidents, providing deep technical insight into Java application behavior and potential attack vectors.

  • Stay Current: Researching continuously for new attack techniques, security trends, and emerging Java-related vulnerabilities.

What we’re looking for...

You'll need to have:

  • Bachelor’s degree or two or more years of work experience.

  • Three or more years of experience in Software Engineering, Application Security, or a related role.

  • DAST Expertise: Deep, hands-on experience managing and operating DAST tools in an enterprise environment, including configuring authenticated scans and handling Single Sign-On (SSO) contexts.

  • Java Development: Strong background (2+ years) in professional software development, primarily using Java and common frameworks (Spring Boot, Jakarta EE/JEE).

  • Web Technologies: Expert understanding of web application architecture, HTTP protocols, RESTful APIs, and associated security controls (CORS, CSRF, XSS, etc.).

  • Vulnerability Knowledge: Expert knowledge of the OWASP Top 10 or CWE/SANS Top 25.

  • CI/CD: Experience integrating security tools (DAST, SAST) into automated CI/CD pipelines (e.g., Jenkins, GitLab, Azure DevOps).

  • Cloud: Familiarity with securing applications deployed on major cloud platforms (AWS, Azure, or GCP).

Even better if you have one or more of the following:

  • Good communication and presentation skills.

  • Relevant industry certifications (e.g: CSSLP, OSCP, eJPT ).

  • Experience with other security testing methodologies (SAST, IAST, Penetration Testing).

  • Familiarity with containerization and orchestration technologies (Docker, Kubernetes).

If Verizon and this role sound like a fit for you, we encourage you to apply even if you don’t meet every “even better” qualification listed above.

Where you’ll be working

In this hybrid role, you'll have a defined work location that includes work from home and assigned office days set by your manager.

Scheduled Weekly Hours

40

Equal Employment Opportunity

Verizon is an equal opportunity employer. We evaluate qualified applicants without regard to race, gender, disability or any other legally protected characteristics.

Skills

PythonJavaSpring BootAWSAzureGCPDockerKubernetesJenkinsCI/CDGitLabJiraPenetration TestingDevOpsMicroservices

Similar Jobs

30

Security Engineer III

JPMorgan Chase · Dublin, Ireland, IE

Yesterday

Security Engineer III

JP Morgan Chase · Dublin, Ireland, IE

Yesterday

Security Engineer III

Veeamsoftware · San Jose, CA, USA · Hybrid

1 week ago

Security Engineer III

Anaplan · Gurugram, India +1

1 month ago

Security Engineer III

JPMorgan Chase · Wilmington, DE, United States, US

1 month ago

Security Engineer III

JP Morgan Chase · Wilmington, DE, United States, US

1 month ago

Security Engineer III

Pearson · Bangalore, Karnataka, India

3 months ago

Security Engineer III

Globalhealthcareexchangeinc · Hyderabad, Telangana, India · Hybrid

3 months ago

Security Engineer III

Relx · UK-Oxford (Nielsen House), United Kingdom

4 months ago

Security Engineer III

Yum Restaurant Services Group · India · Hybrid

6 months ago

Endpoint Security Engineer III

Blueorigin · WA - Landmark (Ride East), United States of America

Yesterday

Security Engineer III - AMZ9971078

Amazon · Remote

3 days ago

Information Security Engineer III

Capgroup · Irvine, United States of America

4 days ago

Systems Security Engineer III

Snc · Southern Pines, NC - NC_NS7, United States of America +1 · Onsite

6 days ago

Endpoint Security Engineer III - Nessus

Caci · BRB SPRINGFIELD VA, United States of America +1 · Onsite

6 days ago

Engineer III - Information Security

AmerisourceBergen is now Cencora! Explore our careers. · NCEE > Lithuania > Vilnius > Konstitucijos

6 days ago

Security Detection Engineer III

Ffive · Warsaw, Poland +2 · Hybrid

1 week ago

Engineer III - Security Analyst

Iehp · Rancho Cucamonga, CA, US · Remote, Hybrid, Onsite

1 week ago

Product Security Engineer III (Remote)

Crowdstrike · USA CA Remote, United States of America · Remote

1 week ago

Security Electronics Engineer III

Challp · Albany, NY, US

1 week ago

Security Engineer III - (Java/Python full stack)

JPMorgan Chase · Plano, TX, United States, US

1 week ago

Security Engineer III - (Java/Python full stack)

JP Morgan Chase · Plano, TX, United States, US

1 week ago

Support Engineer III, SIG, Security Integrations Group (SIG)

Amazon · Remote

2 weeks ago

Information Security Engineer III

Massgeneralbrigham · 399 Revolution Drive Somerville (Assembly Row Main Building), United States of America · Hybrid

2 weeks ago

Security Engineer III-Python, Bash, Vulnerability Assessments

JPMorgan Chase · Columbus, OH, United States

2 weeks ago

Security Engineer III-Python, Bash, Vulnerability Assessments

JP Morgan Chase · Columbus, OH, United States

2 weeks ago

Technical Support Engineer III - Web Security

Forcepoint · Flex - Bengaluru, India

2 weeks ago

Technical Support Engineer III - Web Security

Forcepoint · Flex - Bengaluru, India

2 weeks ago

Security Engineer III, Product Security-Senior Vulnerability Remediation Engineer

Anaplan · Gurugram +1 · Hybrid

3 weeks ago

Systems Security Engineer III

Snc · Englewood, CO - CO_RMS, United States of America · Onsite

3 weeks ago
Security Engineer III at Verizon Communications | Hiring.Camp