Role Summary: As an Application Security Engineer at JioStar, you will play a critical role in safeguarding our products and user data. You’ll work at the intersection of engineering and security—integrating best practices across the development lifecycle, identifying vulnerabilities in web and mobile platforms, and proactively addressing risks from design to deployment. This role is ideal for someone who is passionate about secure coding, threat modeling, and driving a security-first mindset across teams. You will have the opportunity to work on cutting-edge technologies, influence product decisions, and continuously evolve JioStar’s security posture in a fast-paced, high-impact environment.
Key Responsibilities
Perform security testing of web, Android, and iOS applications to identify and mitigate vulnerabilitiesCollaborate closely with product and engineering teams from feature design through implementation, integrating secure SDLC practicesDevelop creative and practical attack scenarios to uncover potential threatsDefine the threat landscape from product ideation to architecture and implementation, ensuring security is embedded throughoutProactively identify platform-wide vulnerabilities and provide actionable remediation guidanceTake ownership of tasks and deliver them within defined timelines with minimal supervisionContinuously learn and build expertise across multiple security domains, including cloud, application, and operating system securityStay up to date with evolving technologies, platforms, and frameworks, and adapt security approaches accordinglyDrive innovation to accelerate vulnerability detection and integrate security early in the development lifecycleChampion a security-first culture across JioStar by influencing engineering practices and decision-makingIdentify key problem areas and implement solutions that significantly strengthen JioStar’s overall security posture
Skills & Attributes for success:
In-depth knowledge of security vulnerabilities not just limited to OWASP Top 10Experience in doing security assessments on web applications, Android and iOS mobile applications in microservice architectureExperience in using the security tools to carry out the manual as well as automated security assessmentsExperience working with common product flows like payment gateway integration, authentication etc.Knowledge of how applications get built which may help in multiple scenarios to break the very things.Knowledge and understanding of Python, Java, PHP, C, C++, SQL, Javascript, Ruby, NodeJS, Go etc. is a huge plusPassion for security, and a practical and balanced approach to security issuesAbility to visualize the root cause of the behavior of the applications or systems setupCuriosity in knowing how things work in different conditionsIndependent, self-motivated and comfortable working in a fast-paced environment with teams ranging from product to engineering teamsContributions to the security community is a huge plusLazy, so that could make machines work for him/her [automation]
Perched firmly at the nucleus of spellbinding content and innovative technology, JioStar is a leading global media & entertainment company that is reimagining the way audiences consume entertainment and sports. Its television network and streaming service together reach more than 750 million viewers every week, igniting the dreams and aspirations of hundreds of million people across geographies.
JioStar is an equal opportunity employer. The company values diversity and its mission is to create a workplace where everyone can bring their authentic selves to work. The company ensures that the work environment is free from any discrimination against persons with disabilities, gender, gender identity and any other characteristics or status that is legally protected