Application Security Engineer

India's leading digital payments company with 500 Million registered users, offering financial services and tech solutions across India.
Security
Senior Software Engineer
In-Person
1,000 - 5,000 Employees
Finance · Cybersecurity

Description For Application Security Engineer

PhonePe, India's premier digital payments platform, is seeking an Application Security expert to join their dynamic team. With a massive user base of 500 Million registered users and 37 Million merchants, PhonePe has established itself as a leader in digital payments across India, covering 99% of postal codes.

The role focuses on application security assessments, penetration testing, and security research. You'll be responsible for evaluating both applications and merchant integrations, while developing security tools and methodologies. The position requires a deep understanding of security principles, particularly in payment integrations and third-party systems.

As an Application Security Engineer at PhonePe, you'll work with cutting-edge technology that impacts millions of users daily. The company culture emphasizes ownership, empowerment, and trust, allowing you to drive projects from conception to completion. You'll collaborate with some of the best minds in the country, contributing to a platform that's revolutionizing digital payments and financial services in India.

The ideal candidate will possess expert-level knowledge in application security, OWASP top 10/mobile, threat modeling, red teaming, and DevSecOps. You'll need excellent communication skills and a proven ability to balance security risks with product advancement. The role offers an opportunity to work on diverse projects while maintaining high security standards in a rapidly scaling fintech environment.

Benefits include comprehensive medical insurance, wellness programs, parental support, mobility benefits, and retirement plans. Join PhonePe to be part of a company that's not just leading in payments but is expanding into financial services, hyperlocal shopping, and India's first localized App Store, all while maintaining the highest security standards.

Last updated 4 months ago

Responsibilities For Application Security Engineer

  • Perform security assessments and penetration testing
  • Develop security tools, processes and testing methodologies
  • Respond to internal security engineering questions/requests
  • Test applications holistically covering all aspects including edge cases
  • Work with tech teams to define functional security design
  • Establish security best practices framework
  • Balance security risk and product advancement
  • Automate repeatable tasks and reduce operational overheads

Requirements For Application Security Engineer

Kubernetes
  • Security subject matter expertise
  • Expert knowledge of 3rd party integrations and payment integrations
  • Understanding of network security
  • Excellent communication skills
  • Knowledge of OWASP top 10/mobile, PRD Review, Threat Modelling, Red Teaming
  • Experience with Source Code review, DevSecOps, Cloud Security
  • Understanding of Fraud and Business logic related issues, Data Security
  • Ability to manage multiple projects
  • OSCP certification or bug bounty experience (preferred)

Benefits For Application Security Engineer

Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Assistance
Parental Leave
Relocation Benefits
Education Budget
  • Medical Insurance
  • Critical Illness Insurance
  • Accidental Insurance
  • Life Insurance
  • Employee Assistance Program
  • Onsite Medical Center
  • Emergency Support System
  • Maternity Benefit
  • Paternity Benefit Program
  • Adoption Assistance Program
  • Day-care Support Program
  • Relocation benefits
  • Transfer Support Policy
  • Employee PF Contribution
  • Gratuity
  • Higher Education Assistance
  • Car Lease

Interested in this job?

Jobs Related To PhonePe Application Security Engineer

Senior Security Engineer, Cloud Threat Detection

Senior Security Engineer position at Google focusing on cloud threat detection and security engineering for Google Cloud Platform products.

Security Operations Engineer, AWS Security Cloud Response

Senior Security Operations Engineer role at AWS Security focusing on incident response, security tool development, and team leadership.

Sr. Security Engineer, AppSec - Amazon Stores Security

Senior Security Engineer role at Amazon focusing on application security, threat modeling, and secure code review for Amazon Stores' diverse technology portfolio.

Security Engineer, Kuiper Security

Senior Security Engineer role at Amazon's Project Kuiper, focusing on securing satellite-based broadband communications systems and protecting customer data.

Sr. Security Systems Engineer, DC Security Solutions Engineering

Senior Security Systems Engineer role at AWS, focusing on designing and implementing comprehensive security solutions for data centers, requiring 8+ years of experience in security systems.