Information Security Specialist (Application Security II)
Itron
Itron is innovating new ways for utilities and cities to manage energy and water. We create a more resourceful world to protect essential resources for today and tomorrow. Join us.
Title : Information Security Specialist (Application Security II).
Location : Pune, India.
Itron's Resiliency Solutions business helps make communities more adaptive and sustainable. We do this by pairing external data with artificial intelligence to identify areas of high risk and prevent catastrophic loss for utilities and critical infrastructure owners across the country. We are a team of close-knit engineers, subject matter experts, and business leaders who obsess over problem-solving, new technologies, and making a positive impact in our communities.
Job Summary
We are seeking an Application Security Engineer-II to help embed security within Company's software development lifecycle and scale our product security practices.
What You'll Do
Design and implement security tooling and automation in CI/CD pipelines (SAST, secrets scanning, dependency checks, IaC scanning) to integrate security at build-time.
Conduct security assessments of web apps, APIs, cloud-native services, and internal tooling using manual and automated approaches.
Lead and facilitate threat modeling for critical features and systems, and drive mitigation strategies with engineering teams.
Collaborate on application security design, providing guidance on authentication, authorization, encryption, input validation, error handling, and data protection.
Evaluate the security maturity of products, identify gaps, and partner with engineering to close them.
Partner with InfoSec to support customer security questionnaires, audits, and external security posture communications.
Promote secure coding practices and define reusable secure patterns, golden paths, and developer guides.
Support and enable Security Champions across squads through mentorship, training, and playbooks.
Work with CloudOps on runtime guardrails, including secrets management, identity controls, and logging practices.
Assist in security incident investigations related to application-layer vulnerabilities and support remediation planning.
Deliver security awareness sessions and workshops to uplift team security knowledge.
Stay up to date on security trends, tools, and best practices, and share knowledge with engineering teams.
Who You Are
6+ years experience in application security or DevSecOps roles.
Solid understanding of web application security (e.g., OWASP Top 10, ASVS) and common vulnerabilities
Hands-on experience with security tooling in CI/CD pipelines (e.g., SAST, SCA, secrets scanning, IaC scanning).
Experience in secure architecture, threat modeling, and design reviews.
Proficiency with a modern programming language (Python, TypeScript, JavaScript, or similar).
Strong communication skills, able to collaborate effectively across engineering, CloudOps, and InfoSec teams.
Bonus: Experience supporting data security initiatives or customer security assessments.
Bonus: Familiarity with cloud-native environments (AWS, GCP, Azure)
Itron is committed to building an inclusive and diverse workforce and providing an authentic workplace experience for all employees. If you are excited about this role but your past experiences don't perfectly align with every requirement, we encourage you to apply anyway. In the end, you may be just who we are looking for!
The successful candidate's starting wage will be determined based on permissible, non-discriminatory factors such as skills and experience.
Itron is proud to be an Equal Opportunity Employer. If you require an accommodation to apply, please contact a recruiting representative at 1-800-635-5461 or email Accessibility@itron.com.
Itron is transforming how the world manages energy, water and city services. Our trusted intelligent infrastructure solutions help utilities and cities improve efficiency, build resilience and deliver safe, reliable and affordable service. With edge intelligence, we connect people, data insights and devices so communities can better manage the essential resources they rely on to live. Join us as we create a more resourceful world: www.itron.com