Information Security Specialist (Application Security II)
Itron, Inc.
Global tech provider of smart meters, IoT networks, software and analytics for utilities and cities
Embed security in CI/CD, assess apps, guide secure design, and mentor teams.
9 days ago ago
Intermediate (4-7 years)
Full Time
Pune, Maharashtra, India
Office Full-Time
Company Size
5,788 Employees
Service Specialisms
Implementation
Project Management
Consulting
Installation
Technical Support
Managed Services
Network Implementation
Metering Solutions
Sector Specialisms
Utilities
Energy
Water Resources
Industrial
Infrastructure
Government
Role
Description
secrets management
ci/cd security
threat modeling
security assessments
secure coding
incident investigation
Work with CloudOps on runtime guardrails, including secrets management, identity controls, and logging practices.
Partner with InfoSec to support customer security questionnaires, audits, and external security posture communications.
Support and enable Security Champions across squads through mentorship, training, and playbooks.
Evaluate the security maturity of products, identify gaps, and partner with engineering to close them.
Deliver security awareness sessions and workshops to uplift team security knowledge.
Stay up to date on security trends, tools, and best practices, and share knowledge with engineering teams.
Assist in security incident investigations related to application-layer vulnerabilities and support remediation planning.
Promote secure coding practices and define reusable secure patterns, golden paths, and developer guides.
Lead and facilitate threat modeling for critical features and systems, and drive mitigation strategies with engineering teams.
Conduct security assessments of web apps, APIs, cloud-native services, and internal tooling using manual and automated approaches.
Design and implement security tooling and automation in CI/CD pipelines (SAST, secrets scanning, dependency checks, IaC scanning) to integrate security at build-time.
Collaborate on application security design, providing guidance on authentication, authorization, encryption, input validation, error handling, and data protection.
Requirements
owasp
devsecops
ci/cd
cloudnative
python
communication
Solid understanding of web application security (e.g., OWASP Top 10, ASVS) and common vulnerabilities
Bonus: Experience supporting data security initiatives or customer security assessments.
6+ years experience in application security or DevSecOps roles.
Hands-on experience with security tooling in CI/CD pipelines (e.g., SAST, SCA, secrets scanning, IaC scanning).
Strong communication skills, able to collaborate effectively across engineering, CloudOps, and InfoSec teams.
Experience in secure architecture, threat modeling, and design reviews.
Bonus: Familiarity with cloud-native environments (AWS, GCP, Azure)
Proficiency with a modern programming language (Python, TypeScript, JavaScript, or similar).
Benefits
Information not given or found
Training + Development
Information not given or found
Interview process
Information not given or found
Visa Sponsorship
Information not given or found
Security clearance
Information not given or found
Company
Overview
$2.4B Revenue
Annual Revenue Figure
The company generates over $2.4 billion in annual revenue, supported by its core segments: Device Solutions, Networked Solutions, and Outcomes services.
+100 Countries
Global Customer Base
The company serves customers in over 100 countries, highlighting its widespread reach and international impact.
270M+ Endpoints
Communicating Endpoints
With over 270 million connected devices, the company enables smart infrastructure solutions across cities and utilities worldwide.
2018 Expansion
Key Acquisition Milestone
The acquisition of Silver Spring Networks in 2018 significantly expanded the company's IoT and smart-grid capabilities.
Began as a measurement-device provider and evolved into a smart-infrastructure innovator.
Delivers smart meters, communications networks, software, and analytics for energy and water utilities.
Typical projects include deploying AMI networks, grid-edge intelligence, distributed energy resource management, and smart streetlights.
Provides acoustic sensors for highway projects and smart-streetlight moisture monitoring in major cities.
Culture + Values
Always see the glass as half full.
Get started and figure it out as we go.
Team above self. Everyone needs guidance.
Take chances to try hard.
Not learning if not failing.
Environment + Sustainability
50% reduction
Carbon Emissions
Achieved a 50% reduction in owned Scope 1 and 2 carbon emissions ahead of schedule, demonstrating strong progress toward sustainability goals.
100% ISO 14001
Certification
Ensured all manufacturing facilities meet ISO 14001 environmental management standards, reflecting a commitment to global best practices.
7.5 Mt avoided
GHG Emissions
Enabled customers to avoid 7.5 million metric tons of GHG emissions, highlighting the company's broader environmental impact through technology solutions.
100% Double Materiality
Assessment
Completed a comprehensive enterprise-wide assessment to align environmental, social, and governance (ESG) priorities with business strategy.
Committed to carbon‑neutral operations by 2035 and net‑zero emissions by 2050.
Reduced Scope 1 and 2 emissions by over 50% since 2019.
Enabled customers via AMI/AMI/DR solutions to avoid at least 6.8 Mt (GHG) in 2023 and 7.5 Mt in 2024.
88% of manufacturing sites ISO 14001 certified by end‑2023; 100% by 2024.
Inclusion & Diversity
Ranked 2025
Recognition for Inclusion
Recognized as one of America’s Greatest Workplaces for Inclusion by Newsweek in 2025.
Ranked 2025
Recognition for Women
Recognized as one of America’s Greatest Workplaces for Women by Newsweek in 2025.
Ranked 2024
Best Companies
Recognized as one of the Best Companies to Work For by U.S. News in 2024.
Ranked 2025
Best Midsize Employers
Recognized as one of America’s Best Midsize Employers by Forbes in 2025.
Inclusion & Diversity strategy anchored on five dimensions: Supplier, Workplace, Workforce, Community, Marketplace.
I&D Business Council led by business leaders setting goals and integrating best practices.
Global inclusive learning programs via virtual courses for workplace inclusion.
Inclusive recruiting leveraging referral programs and development opportunities.
Employee Resource Group (iBelong) empowering employees to build inclusive communities.