Are you passionate about cybersecurity and software development? Airbus is looking for an emerging talent to join our Application Security (AppSec) team in Bangalore. This is an exciting entry-level opportunity to build a career at the intersection of security and software engineering, helping our development teams create more secure applications from the ground up.
As an Associate Security Engineer, you will learn to analyze application code for vulnerabilities, advise developers on secure coding practices, and contribute to our growing SecDevOps culture. In a unique arrangement, you will also have the opportunity to spend part of your time working within a development team, allowing you to practice and enhance your coding skills in a real-world environment.
Our Application Security/SecDevOps team is dedicated to embedding security into the software development lifecycle (SDLC). We partner with Product Owners, developers, and vulnerability management teams to proactively identify, triage, and remediate security flaws in application code. Our mission is to reduce risk and enable the business to build innovative and secure digital solutions.
As the successful candidate, your main tasks and accountabilities will include:
Vulnerability Analysis & Triage:
Analyze code security vulnerabilities identified by Static Application Security Testing (SAST) tools.
Collaborate with developers and product owners in technical meetings to triage findings (confirm true/false positives) and assess their criticality.
Remediation & Developer Guidance:
Provide clear and actionable remediation advice to development teams on how to fix identified vulnerabilities.
Produce and maintain technical documentation and guides to help developers understand and implement secure coding practices.
Contribute to maintaining and improving Airbus's secure coding standards for your specific programming language.
Metrics & Reporting:
Work with security dashboards to track and analyze Key Performance Indicators (KPIs) related to vulnerability detection and remediation rates.
Assist in extracting and analyzing data to create consolidated views that summarize risk reduction and the overall level of application protection.
Software Development:
Actively participate in a software development team for a portion of your time to maintain and grow your practical coding expertise.
Essential (0-3 Years Experience):
Programming Proficiency: Strong foundational knowledge and proficiency in at least one of the following programming languages:
JAVA
C# (with an understanding of C/C++ being a plus)
SAP/ABAP
Security Mindset: A genuine curiosity about cyber-attacks and a passion for learning about security trends and new technologies.
Analytical Skills: Strong analytical and problem-solving abilities with keen attention to detail.
Communication: Excellent English communication skills (both written and verbal), with the ability to collaborate effectively in a multicultural team environment.
Adaptability: Ability to learn quickly in a loosely structured and rapidly changing work environment.
Desirable Skills & Knowledge:
A degree in Information Technology, Computer Science, Engineering, or a related discipline.
Basic understanding of common application security vulnerabilities (e.g., OWASP Top 10).
Familiarity with the Software Development Lifecycle (SDLC) and Agile methodologies.
Prior exposure to or knowledge of SAST tools like Checkmarx is a significant plus.
Ability to understand and document technical processes and workflows.
Feel like you can't tick some boxes above? If you have most of the skills and experience that we're looking for and are willing to use your talent to learn the rest, we encourage you to apply!
This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company's success, reputation and sustainable growth.
Airbus India Private Limited
Employment Type: Permanent
Experience Level: Professional
Job Family: Digital <JF-IM-DI>