> Markdown version of [/jobs/ext/1256579-app-sec-sast-engineer](https://www.wearedevelopers.com/jobs/ext/1256579-app-sec-sast-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # App Sec SAST Engineer - **Company:** Wipro Limited - **Location:** Princeton, NJ, United States - **Experience:** Expert - **Salary:** $60,000.0 - $135,000.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), .NET Framework, Data Analysis, Software System Penetration Testing, C++ (Programming Language), Cyber Security, Disaster Recovery, Distributed Systems, Intrusion Detection and Prevention, Python (Programming Language), Open Source Intelligence, Open Web Application Security, Fortify (Software), Phishing, Secure Coding, Veracode, Backend, Static Application Security Testing, Vulnerability Analysis - **Published:** July 13, 2026 - **Apply:** https://www.careerjet.com/job/usb55675cd97d7ff667dcd3a6932b5e5b6/eaa ## About the Role * MUST have good experience in Java/ .Net and secure code review. * Apply security best practices while designing and proposing solutions to enterprise customers. * Solid competencies in information security processes, framework, and technologies, such as: Application Vulnerability Assessment, Penetration Testing, Ethical Hacking, OWASP Top 10, NIST, OSSTMM, OSINT etc. * Good understanding of supported frameworks and cleansers functions * Good understanding on core security mechanisms, crypto libraries, and server-side security * Ability to understand vulnerabilities, interact and explain security risks/ impact to teams. * Document vulnerabilities and collaborate with application team to help provide detail remediation along with code snippet. * Experience in tools lie Fortify, Veracode * Adopt risk-based approach to translate technology risk into actual business impacts and prioritized actions. * Ability to listen and articulate ideas verbally and in written formats to a broad range of audiences; ability to ask probing questions and deliver presentations that have impact. * Any security / technology related (Java/ .Net/ Python) certifications are a plus. * Exposure to banking/ financial services domain is a plus., Minimum qualifications: Bachelor's degree or equivalent practical experience. 5 years of experience developing C++ backend infrastructure components within distributed systems. … + 24 days ago ## Description We use cookies to offer you the best possible website experience. Your cookie preferences will be stored in your browser's local storage. This includes cookies necessary for the website's operation. Additionally, you can freely decide and change any time whether you accept cookies or choose to opt out of cookies to improve website's performance, as well as cookies used to display content tailored to your interests. Your experience of the site and the services we are able to offer may be impacted if you do not accept all cookies. Modify Cookie Preferences Accept All Cookies Search Jobs, * This role is responsible for providing strong security and remediation services to meet project requirements., Monitoring and Incident Detection-Analyse attack trends and correlate logs across systems to identify advance threats. Enhance monitoring processes and implement improvements for faster detection, to ensure compliance with security frameworks and regulatory standards. Incident Handling and Analysis-Perform root cause analysis, create incident response plans and implement disaster recovery measures to minimize business disruption Threat Assessment and Analytics-Undertake forensic analysis using advanced analytics tools and implement mitigation measures to align with compliance requirements. Stakeholder Coordination and Audit Assistance-"Liaise with cross functional teams, external vendors and auditors to ensure compliance with security frameworks. Maintain audit documentation and ensure its accuracy while implementing processes that support audit readiness and continuous compliance." Training and Awareness-Assist in creating and delivering cybersecurity awareness sessions, including guidance on phishing and malicious emails. ## Related Videos - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Developing the Backend with Stefan Lingler, CTO at Shpock](https://www.wearedevelopers.com/videos/100360-developing-the-backend-with-stefan-lingler-cto-at-shpock) - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) ## Related Articles - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)