Application Security Engineer

MicroStrategy


Date: 2 hours ago
City: Pune, Maharashtra
Contract type: Full time

Company Description

Strategy (Nasdaq: MSTR) is at the forefront of transforming organizations into intelligent enterprises through data-driven innovation. We don't just follow trends—we set them and drive change. As a market leader in enterprise analytics and AI software, we've pioneered the BI and analytics space, empowering people to make better decisions and revolutionizing how businesses operate. We are now also at the forefront of AI disruption, providing data via our enterprise semantic layer to AI agents, tools, and platforms.

But that's not all. Strategy is also leading a groundbreaking shift in digital assets, adopting bitcoin as our primary treasury reserve asset in 2020. Since then, we have issued innovative bitcoin-backed securities and have been the leader in bitcoin treasury companies. This visionary move has helped us build a fortress balance sheet, and is solidifying our position as a forward-thinking, innovative force in the market.

Our people are the core of our success. At Strategy, you'll join a team of smart, creative minds working on dynamic projects with cutting-edge technologies. We thrive on curiosity, innovation, and a relentless pursuit of excellence.

Our corporate values—bold, agile, engaged, impactful, and united—are the foundation of our culture. As we lead the charge into the new era of AI and financial innovation, we foster an environment where every employee's contributions are recognized and valued.

Join us and be part of an organization that lives and breathes innovation every day. At Strategy, you're not just another employee, you're a crucial part of a mission to push the boundaries of analytics and redefine financial investment.

Job Description

Company Description

Strategy (Nasdaq: MSTR) is at the forefront of transforming organizations into intelligent enterprises through data-driven innovation. We don't just follow trends—we set them and drive change. As a market leader in enterprise analytics and mobility software, we've pioneered the BI and analytics space, empowering people to make better decisions and revolutionizing how businesses operate.

But that's not all. Strategy is also leading a groundbreaking shift in how companies approach their treasury reserve strategy, boldly adopting Bitcoin as a key asset. This visionary move is reshaping the financial landscape and solidifying our position as a forward-thinking, innovative force in the market. Four years after adopting the Bitcoin Standard, Strategy's stock has outperformed every company in the S&P 500.

Our people are the core of our success. At Strategy, you'll join a team of smart, creative minds working on dynamic projects with cutting-edge technologies. We thrive on curiosity, innovation, and a relentless pursuit of excellence.

Our corporate values—bold, agile, engaged, impactful, and united—are the foundation of our culture. As we lead the charge into the new era of AI and financial innovation, we foster an environment where every employee's contributions are recognized and valued.

Join us and be part of an organization that lives and breathes innovation every day. At Strategy, you're not just another employee; you're a crucial part of a mission to push the boundaries of analytics and redefine financial investment.

Job Location

  • Pune, India Full-time in person from Strategy Office a minimum of 4 days per week

  • European Hours

Job Description

Join Strategy’s IT Security group as a Senior Application Security Engineer and play a crucial role in safeguarding Strategy’s software applications while using modern security and AI tooling. In this position, you will be responsible for establishing innovative security practices throughout the software development lifecycle, ensuring that our software products are resilient against novel threats and vulnerabilities.

  • Security Architecture: Design and implement application security architecture and processes, ensuring they align with industry best practices and regulatory requirements.

  • Secure SDLC: Manage a risk-balanced SDLC by integrating threat modeling, secure code reviews, and security testing.

  • Vulnerability Management: Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA) tools.

  • Security Assessments & Penetration Testing: Perform advanced penetration testing and red teaming across web, mobile, and cloud applications. Leverage exploit development techniques to identify high-risk vulnerabilities and collaborate with engineering teams for effective remediation.

  • Secure Code Review: Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices.

  • Threat Modeling & Risk Analysis: Perform threat modeling to anticipate potential attack vectors and improve security architecture on complex or cross-functional components

  • DevSecOps Enablement: Lead and enhance DevSecOps initiatives by identifying gaps and integrating security automation within CI/CD pipelines.

  • Incident Response & Remediation: Lead security incident response related to applications and work with engineering teams to remediate threats.

  • Security Awareness & Training: Develop and lead customized security training programs for engineering teams, focusing on OWASP Top 10, threat modeling, AI security risks, and secure coding principles.

Qualifications

  • Bachelor's degree in Computer Science, Engineering, or related field

  • Minimum 5 years of software development or software security experience in an agile environment with strong expertise in software secure coding practices, threat modeling, and vulnerability assessment.

  • Hands-on experience with SAST, DAST, IAST, and SCA tools (e.g., GitHub Advanced Security, Checkmarx, Fortify, Veracode, SonarQube, Burp Suite, ZAP).

  • Deep knowledge of API security (e.g., OWASP API Top 10, GraphQL security).

  • Experience in securing containerized applications (Docker, Kubernetes).

  • Knowledge of supply chain security risks (e.g., SBOM, software dependency management).

  • Familiarity with AI/ML security risks and adversarial machine learning techniques.

  • Experience with Infrastructure as Code (IaC) security (Terraform, CloudFormation).

  • Fluent in one or more programming languages, such as Python, Java, JavaScript

  • Strong knowledge of secure coding principles and application security frameworks.

  • Familiarity with security tools (e.g., static and dynamic analysis tools, vulnerability scanners).

  • Understanding of security standards and regulations (e.g., OWASP, NIST).

  • Hands-on experience securing AI/ML applications, understanding adversarial attacks, model poisoning, and data privacy risks. Strong eagerness to learn and contribute to AI security advancements.

  • Experience with cloud security best practices in AWS, Azure, or GCP.

  • Experience with AI security best practices and implementations.

  • Strong work ethic with a commitment to meeting business needs and effectively collaborating with global colleagues.

  • Effective interpersonal skills; ability to collaborate successfully with both technical and non-technical stakeholders.

  • Strong ability to balance security risk with business impact and communicate trade-offs effectively.

  • Experience mentoring junior engineers and leading security champions within development teams.

  • Ability to articulate complex technical concepts with clarity, supported by effective written and verbal communication skills.

Additional Information

The recruitment process includes online assessments as a first step (English, logic, design, technical) - we send them via e-mail, please check also your SPAM folder

Qualifications

Additional Information

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Data Scientist - 2322

Medline Industries, Pune, Maharashtra
2 days ago
Job Summary Job Description About Medline India: Medline India was setup in 2010 in Pune, primarily as an offshore Development centre and to augment resources for Medline Industries LP headquartered in Chicago, USA. We are a 1500+ strong and growing team of technology, finance & and business support professionals who support our businesses worldwide towards a mission to make healthcare...

Sr Client Service Consultant

Altera Digital Health Inc., Pune, Maharashtra
1 week ago
Responsibilities Liaison with various departments (e.g. Accounts, IT) within the company for achieving desired common objective Answer, as appropriate, inquiries and facilitate resolution of issues raised Work as an effective member of a team from a variety of departments within the company Handle escalations pertaining to unresolved cases Maintain a positive rapport with customers while discussing or resolving problem situations...

Triage Intake Analyst

HackerOne, Pune, Maharashtra
₹2,080,000 - ₹2,340,000 per year
1 week ago
HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to continuously discover, validate, prioritize, and remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming, and code security, HackerOne delivers...