Taro Logo

Application Security Engineer I/II

Next-Gen Banking Tech company empowering banks and fintechs to launch banking products with cloud-native processing platform.
Security
Mid-Level Software Engineer
In-Person
1,000 - 5,000 Employees
2+ years of experience
Finance · Enterprise SaaS

Description For Application Security Engineer I/II

Zeta, a $1.5B valued Next-Gen Banking Tech company, is seeking an Application Security Engineer to join their Risk & Compliance Team. This role focuses on securing mobile & web applications along with APIs through penetration testing, code reviews, and security assessments. The position offers an opportunity to work with a rapidly growing company that has issued 20M+ cards globally and serves major banks and fintechs.

The ideal candidate will be responsible for implementing security measures across Zeta's product suite, conducting vulnerability assessments, performing threat modeling, and guiding developers in secure coding practices. They will work with cutting-edge technologies and frameworks while ensuring compliance with international security standards.

This role provides an excellent opportunity for security professionals to impact the financial technology sector, working with a company that has a strong engineering focus (70% R&D roles) and global presence across US, EMEA, and Asia. The position offers hands-on experience with modern cloud-native technologies and the chance to shape the security posture of a leading fintech platform.

The role requires a blend of technical expertise in application security, strong communication skills, and the ability to work with various stakeholders. You'll be part of a team that's transforming banking technology while ensuring the highest security standards in a rapidly evolving financial services landscape.

Last updated 17 days ago

Responsibilities For Application Security Engineer I/II

  • Guide technology organization's security and privacy initiatives through design reviews and threat modeling
  • Ensure applications are secured and hardened
  • Define scope and ensure continuous adherence to project phases
  • Create visibility and adoption of projects for internal customers
  • Act as security engineering expert and technical champion
  • Assess gaps and tools to improve application security
  • Liaise with external and internal stakeholders
  • Mentor developers and QA
  • Evaluate bugs reported through Bug Bounty program
  • Run security posture of various applications
  • Perform quarterly VA/PT for mobile/web applications
  • Ensure secure configuration of Web/Mobile application, DB, and Data

Requirements For Application Security Engineer I/II

Java
Python
Ruby
PostgreSQL
MySQL
Kubernetes
  • 2+ years experience in developing large scale internet or SaaS applications
  • 2-3 years experience as Web/Mobile Application Security engineer
  • BE/B.Tech, M.Tech or ME in Computer Science from Tier-1 college
  • Hands-on VA/PT experience in Web, Mobile, API & Network
  • Understanding of OWASP Top 10
  • Experience with security tools like Burpsuite, AppScan, OWASP ZAP
  • Knowledge of Cryptography, PKI systems, TLS
  • Understanding of AuthN/AuthZ frameworks
  • Experience with Static Analysis and Code reviews
  • Expertise in mobile application reverse engineering
  • Shell scripting skills in Python or Ruby
  • Knowledge of security standards (PCI DSS, UIDAI, GDPR, NIST)
  • Understanding of Java Frameworks, CI/CD, Jenkins
  • Experience with AWS/Azure cloud infrastructure
  • OSCP certification preferred

Interested in this job?

Jobs Related To Zeta Application Security Engineer I/II

Software Engineer

Software Engineer position at Coinbase focusing on security platform engineering, building and maintaining critical security infrastructure using Golang with 3+ years experience required.

System Security Engineer

System Security Engineer role at Loft Orbital, focusing on infrastructure security for space technology, combining DevSecOps practices with satellite operations.

Security Engineer, Incident Response, Security Incident Response Team (SIRT)

Security Engineer position at Amazon's SIRT team in Dublin, focusing on incident response, threat analysis, and security engineering for Amazon's global infrastructure.

Software Development Engineer, SDE-Identity and Access Management-Security, Identity Security & Abuse Prevention

Software Development Engineer position at Amazon focusing on Identity and Access Management Security, building authentication and authorization services.

Threat Detection Security Engineer, Amazon Stores Security

Security engineering role focused on threat detection and response at Amazon, combining security expertise with automation to protect customer data at scale.