Jobs / Software Development Engineer (SDE) / IBM Hiring Technical Consultant - Application Security in Bangalore | Hybrid
IBM logo

IBM

IBM Hiring Technical Consultant - Application Security in Bangalore | Hybrid

location_on Bangalore | Hybrid
work 6 - 8 years Experience
payments Competitive Salary (Not disclosed)
schedule Full Time

Role Overview

Job Overview

IBM is hiring a Technical Consultant-Application Security for its IBM Consulting team in Bangalore, Karnataka. This is a full-time professional opportunity for an experienced application security specialist who can help enterprise clients identify security risks, strengthen application protection, and integrate security practices throughout the software development lifecycle. The role follows a hybrid work arrangement and may involve travel of up to 20% or approximately one day per week.

The position focuses on application security across design, development, deployment, modernization, and cloud transformation activities. You will work with clients to understand application vulnerabilities, assess security risks, create practical mitigation plans, and introduce security guardrails across multicloud environments. The role is well suited to professionals who enjoy solving security problems, working with development teams, and applying secure engineering principles to complex enterprise applications.


Key Responsibilities

  • Integrate application security controls into software development activities covering design, build, and deployment stages.
  • Analyze application vulnerabilities, with particular attention to high-risk findings that may affect business-critical systems.
  • Assess security findings and develop practical mitigation strategies to reduce application risk.
  • Help clients understand application security weaknesses and recommend appropriate technical improvements.
  • Apply threat modelling practices to identify potential attack paths and security concerns during application development.
  • Support Secure SDLC practices so security becomes part of the engineering lifecycle rather than a separate final-stage activity.
  • Contribute to DevSecOps initiatives by embedding security considerations into development and delivery processes.
  • Establish security guardrails for application modernization programs running across multicloud environments.
  • Support secure architecture and modernization initiatives while considering application risks and operational requirements.
  • Work with stakeholders to minimize false positives and improve the quality of vulnerability management activities.
  • Collaborate with application, engineering, architecture, and client teams to understand security requirements and deliver appropriate solutions.
  • Contribute to security testing and continuous improvement of application security practices.


Required Skills

Candidates should have practical exposure to application security and understand how security controls can be incorporated across the Software or Application Development Lifecycle. Experience with vulnerability management techniques is important, including the ability to analyze security findings, prioritize high-risk vulnerabilities, and develop mitigation plans.

A solid understanding of application security domains such as Threat Modelling, Secure SDLC, DevSecOps, and Application Security Testing is expected. Candidates should also understand how application security requirements change when applications are modernized or deployed across multiple cloud environments.

The role requires analytical thinking and the ability to turn security findings into clear technical actions. Strong problem-solving skills are useful when investigating vulnerabilities, evaluating risks, and working with technical teams to determine suitable remediation approaches.


Preferred Skills

Experience implementing security guardrails during application modernization projects in multicloud environments is preferred. Candidates with experience designing or supporting secure application architectures will have an advantage.

Advanced exposure to threat modelling tools and techniques is also valuable. Professionals who have helped identify potential threats during application design and development, assessed the resulting risks, and supported mitigation planning will be well aligned with the position.

Knowledge of secure application development practices across design, build, testing, and deployment phases is desirable. Experience working with enterprise clients or consulting teams can also be useful because the role involves understanding client security challenges and helping organizations adopt practical security improvements.


Education

A Bachelor's degree is required for this position, while a Master's degree is preferred. The role is designed for professionals with a technical background who have developed practical expertise in application security, vulnerability management, secure software development, or related consulting activities.


Experience

IBM specifies 6 to 8 years of experience for this opportunity. Candidates should have relevant professional experience in application security and should be comfortable working with security vulnerabilities, risk mitigation, secure development practices, threat modelling, and multicloud security considerations.


Required Technologies

  • Application Security
  • Vulnerability Management
  • Threat Modelling
  • Secure SDLC
  • DevSecOps
  • Application Security Testing
  • Multicloud Security
  • Application Modernization
  • Security Guardrails
  • Secure Architecture
  • Software Development Lifecycle
  • Risk Mitigation
  • Hybrid Cloud
  • IBM Cloud
  • Red Hat
  • Cloud Security
  • Security Controls


Soft Skills

Successful candidates should communicate technical security topics clearly to both technical and business stakeholders. Consulting roles also require active collaboration, structured problem solving, ownership, and the ability to understand client priorities before recommending solutions. Curiosity and continuous learning are important because application security practices evolve alongside cloud platforms, development methods, and emerging technologies.

The ability to analyze complex security issues, explain risk in practical terms, work across teams, and contribute to long-term client relationships will be valuable in this position.


Benefits of Working in this Role

This role provides an opportunity to work on application security challenges across enterprise environments and gain exposure to modern hybrid cloud, AI, multicloud, application modernization, and secure development initiatives. Professionals can strengthen their consulting, security architecture, vulnerability management, and client engagement capabilities while working with IBM Consulting teams and technology partners.


Work Mode

The position follows a hybrid work arrangement. The job details indicate travel requirements of up to 20% or approximately one day a week. The listed shift is general daytime.


Location

The job is based in Bangalore, Karnataka, India.


Who Should Apply

This opportunity is suitable for experienced Application Security Engineers, Security Consultants, Application Security Consultants, DevSecOps professionals, Vulnerability Management specialists, and security-focused software professionals with 6 to 8 years of relevant experience.

Candidates should consider applying if they have hands-on exposure to secure software development, application vulnerability analysis, threat modelling, security testing, multicloud security, application modernization, or DevSecOps practices. Professionals who enjoy working directly with clients and translating security requirements into actionable technical improvements may be particularly well suited to the role.


Career Growth

The position can help experienced security professionals expand their careers across application security consulting, secure architecture, DevSecOps, cloud security, vulnerability management, and enterprise security transformation. Working on client modernization initiatives can also provide broader exposure to multicloud environments and secure software engineering practices.


Application Advice

Before applying, tailor your resume to clearly demonstrate 6 to 8 years of relevant application security experience. Highlight specific experience with vulnerability analysis, threat modelling, Secure SDLC, DevSecOps, application security testing, and multicloud security. If you have supported application modernization or designed security guardrails for cloud-based environments, make those contributions easy to identify.

Use measurable examples where possible, such as the scale of applications assessed, types of vulnerabilities addressed, improvements in security processes, or successful mitigation initiatives. Clearly describe your role in security architecture, client engagement, risk assessment, and remediation planning. Avoid adding technologies or certifications that you have not actually used.

Technical Ecosystem

Eligibility Criteria

school

Education

Bachelor's degree is required. A Master's degree is preferred.

work_history

Experience

6 - 8 years

Top Picks for You

smart_toy

SoftoBot

Beta

Your job search assistant

Ask about roles, locations, remote work, or fresher jobs.