Checkmarx logo

Application Security Analyst

Checkmarx

Pune, Maharashtra, IndiaFull-timeNo compensation foundPosted 2mo agoVerified open 3 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Pune, Maharashtra, India
Schedule
Full-time
Work Authorization
Not specified

Job overview

Checkmarx is hiring an Application Security Analyst. Checkmarx, a leader in application security, is seeking an Application Security Analyst to join their team in Pune, India. This role involves in-depth analysis of open-source packages for malicious behavior, source code analysis across various programming languages, and investigation of obfuscation and hidden payloads. The analyst will also evaluate security tool detections and develop scripts to support analysis, collaborating with research and security teams.

Key focus areas include Perform in-depth analysis of open-source packages to identify malicious behavior, Analyze source code across multiple programming languages, and Investigate obfuscation, suspicious execution flows, and hidden payloads.

Successful candidates bring 2-3 Years Professional Experience In Malicious Code Analysis Or Security Research. Important skills include Malicious Code Analysis, Security Research, Malicious Code Patterns, Supply-Chain Attack Techniques, Python, and Interpreted Languages. Preferred (not required): Reverse Engineering.

Skills & qualifications

RequiredNice to have

Skills

Malicious Code AnalysisSecurity ResearchMalicious Code PatternsSupply-Chain Attack TechniquesPythonInterpreted LanguagesCompiled LanguagesLearn New TechnologiesAttention to DetailFluent EnglishReverse Engineering

Qualifications

2-3 Years Professional Experience in Malicious Code Analysis or Security Research

Full job description

Application Security Analyst

  • Product
  • India - Pune
  • Experienced
  • Full time
  • ID: P2154 Description Who are we?

 Checkmarx is the leader in application security and ensures that enterprises worldwide can secure their application development from code to cloud. Our consolidated platform and services address the needs of enterprises by improving security and reducing TCO, while simultaneously building trust between AppSec, developers, and CISOs. At Checkmarx, we believe it’s not just about finding risk, but remediating it across the entire application footprint and software supply chain with one seamless process for all relevant stakeholders.

We are honored to serve more than 1,800 customers, which includes 40 percent of all Fortune 100 companies including Siemens, Airbus, SalesForce, Stellantis, Adidas, Wal-Mart and Sanofi.

What you’ll do

  • Perform in-depth analysis of open-source packages to identify malicious behavior
  • Analyze source code across multiple programming languages
  • Investigate obfuscation, suspicious execution flows, and hidden payloads
  • Evaluate and validate detections from security tools
  • Develop scripts and internal tools (primarily in Python) to support analysis
  • Collaborate with the SCS research team and other security teams in the group

Requirements What we’re looking for

  • 2–3 years of professional experience in malicious code analysis or security research

  • Strong understanding of malicious code patterns and supply-chain attack techniques

  • Experience using Python for analysis or automation

  • Familiarity with both interpreted and compiled languages

  • Ability to independently learn new technologies

  • High attention to detail

  • Fluent English Advantage:

  • Reverse engineering

You've read the whole posting — now see how you match it.