Tech Stack
Job Description, Responsibilities & Requirements
About the Position
Checkmarx is the enterprise application security leader and the host of Checkmarx One™ - the industry-leading cloud-native AppSec platform that helps enterprises build #DevSecTrust. We are honored to serve more than 1,800 customers, which includes 40 percent of all Fortune 100 companies including Siemens, Airbus, SalesForce, Stellantis, Adidas, Wal-Mart, and Sanofi.
We are looking for an Application Security Analyst to join our team in Pune, India. The role involves performing in-depth analysis of open-source packages, analyzing source code across multiple programming languages, and collaborating with the SCS research team and other security teams in the group.
Responsibilities
- Perform in-depth analysis of open-source packages to identify malicious behavior
- Analyze source code across multiple programming languages
- Investigate obfuscation, suspicious execution flows, and hidden payloads
- Evaluate and validate detections from security tools
- Develop scripts and internal tools (primarily in Python) to support analysis
- Collaborate with the SCS research team and other security teams in the group
Requirements
- 2–3 years of professional experience in malicious code analysis or security research
- Strong understanding of malicious code patterns and supply-chain attack techniques
- Experience using Python for analysis or automation
- Familiarity with both interpreted and compiled languages
- Ability to independently learn new technologies
- High attention to detail
- Fluent English
Advantage
- Reverse engineering
We Offer
- Opportunity to work with a leading application security platform
- Collaborate with a global team of experts
- Professional growth and development opportunities
About the Company
Checkmarx is the leader in application security and ensures that enterprises worldwide can secure their application development from code to cloud. Our consolidated platform and services address the needs of enterprises by improving security and reducing TCO, while simultaneously building trust between AppSec, developers, and CISOs. At Checkmarx, we believe it’s not just about finding risk, but remediating it across the entire application footprint and software supply chain with one seamless process for all relevant stakeholders.