Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Senior Application Security Engineer @ Avalara India

Home > Devops

 Senior Application Security Engineer

Job Description

What Youll Do
Join us in building a secure, scalable, and experienced platform to support Avalaras expanding business and global customer base. As a Senior Application Security Engineer , youll work with world-class engineers and architects to ensure security is embedded in everything we build both in todays systems and the future of our architecture. This role is perfect for someone passionate about automation, cloud-native security, and AI-driven application defense .
Youll help shape the future of Avalara Security , driving security as code, ensuring automation-first practices, and integrating modern AI tooling into security workflows. You understand the value of developer empathy, moves quickly without sacrificing quality, and excels in an environment that combines startup energy with enterprise scale.
You will report to security leadership at Avalara. This is a remote position.
 

What Your Responsibilities Will Be
Job Responsibilities
  • You will build, maintain, and continuously improve an automated security pipeline framework integrated into our CI/CD environments.
  • You will lead development of Infrastructure-as-Code and Policy-as-Code for application security enforcement and consistency across environments.
  • You will evaluate and integrate security tools (SAST, DAST, SCA, CSPM, EDR) and AI-based solutions into engineering workflows and CI/CD pipelines.
  • You will provide applicable guidance and mentorship to development and Avalara Security engineering teams on secure development best practices.
  • Investigate, prototype, and apply AI/ML-based solutions for application behavior analysis, anomaly detection, and threat hunting.
  • Promote security by design across the organization, and help foster a security-first culture.
  • Contribute to the continuous refinement of the SDLC to ensure security is smooth, consistent, and measurable.

What Youll Need to be Successful
Required Qualifications
  • 8+ years of experience in application security, secure software development , or security engineering.
  • Strong programming proficiency in Python and GoLang (hands-on).
  • Experience with secure SDLC practices and CI/CD pipeline integration.
  • Strong hands-on experience with Kubernetes , container security, and cloud infrastructure security preferably AWS and GCP .
  • Experience with Infrastructure-as-Code (IaC) tools like Terraform or CloudFormation.
  • Working knowledge of cryptographic protocols and standards: TLS, OAuth, SAML, JWT , etc.
  • Familiarity with Git , modern source control practices, and agile development methodologies.
  • Experience working with a broad range of security tools , including:
    • Tenable , Wiz (Cloud Security Posture Management)
    • Checkmarx , Mend (SAST, SCA)
    • Acunetix , Burp Suite (DAST)
    • CrowdStrike (EDR/XDR)
  • Bachelors Degree in Computer Science, Engineering, or a related field.
  • Proven experience contributing to security automation efforts within a security organization like Avalara Security .
  • Experience with AI/ML tools and frameworks applied to application security or behavior analytics.
  • Security certifications such as OSWE, CSSLP, AWS Security Specialty, or Kubernetes Security Specialist.
  • Passion for enabling developer-friendly security solutions and maximum automation.

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: Engineering - Software & QA
Role Category: DevOps
Role: Site Reliability Engineer
Employement Type: Full time

Contact Details:

Company: Avalara India
Location(s): Kolkata

+ View Contactajax loader


Keyskills:   Computer science Automation Prototype GIT Application security SAML SDLC Analytics infrastructure security Python

 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Devsecops Engineer

  • Quest Diagnostics
  • 7 - 11 years
  • Hyderabad
  • 22 hours ago
₹ Not Disclosed

Devops Site Reliability Engineer

  • Lotusflare
  • 4 - 8 years
  • Pune
  • 22 hours ago
₹ Not Disclosed

DevOps Engineer

  • InfoVision Inc
  • 5 - 7 years
  • Pune
  • 23 hours ago
₹ Not Disclosed

Devops Site Reliability Engineer

  • Lotusflare
  • 4 - 8 years
  • Pune
  • 23 hours ago
₹ Not Disclosed

Avalara India

We are Quest Global. We€™re in the business of engineering, but what we€™re really building is a brighter future. It€™s not just what we do, but why we do it that makes us different. We believe engineering has the unique opportunity to solve the problems of today ...