Staff Product Security Engineer

1 week ago


Bengaluru, Karnataka, India Harness Full time


As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate.

You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering teams to Get Ship Done.

You will be responsible for cross-team projects with Engineering and Product, and will sharpen new skills as we continue to scale.


In this role, you will :

  • Design and develop product security APIs, tools and utilities for internal and external stakeholders.
  • Conduct threat modeling and secure design review of applications backend services and business integrations.
Good understanding of cyber security frameworks like OWASP, SANS, NIST, CIS, etc.

  • Perform advanced penetration tests and simulate adversarial attacks against Harness modules APIs, and codebase using industry standard frameworks.
  • Participate in the creation, review and implementation of technical security across global Engineering teams.
  • Consult and advise with developers and Product Managers to analyze and implement security standards, methods, vulnerability remediation, and security architecture.
  • Assess risks and tradeoffs, and propose solutions for product security features such as authentication and authorization.
  • Lead manual and automated code review and testing efforts to discover vulnerabilities, weaknesses, and antipatterns in the Harness platform.
  • Implement and own operation of security tooling, including but not limited to SAST, DAST, and SCA.
  • Use the Harness platform to integrate security processes like vulnerability management into the SDLC.

About You :

  • You have a BS in Computer Science or a related degree.
  • You have at least 7 years of relevant industry experience as a software engineer with a strong security focus.
  • Experienced with DevSecOps.
  • Ability to describe Secure SDLC best practices and software supply chain risks.
  • Experience with any of the Public/Private cloud environments (K8s, AWS, GCP, Azure, etc.).
  • You have expert professional knowledge of enterprise applications, API development, and modern software delivery processes.
  • You have previous experience in a cloudnative environment.
  • You are proficient with Java or any similar language and objectoriented programming methodology.
)

  • Bengaluru, Karnataka, India Insight Global Full time

    Our client searching for a Staff Information Security Engineer in India. This position is hybrid friendly (WFH several days a week). We're looking for problem solvers, innovators, and dreamers who are searching for anything but business as usual. Like us, you're a high performer who's an expert at your craft, constantly challenging the status quo. You value...


  • Bengaluru, Karnataka, India Rippling Full time

    About RipplingRippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take...


  • Bengaluru, Karnataka, India Rippling Full time

    About Rippling Rippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform. By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take...


  • Bengaluru, Karnataka, India RSA Security Full time

    Responsibilities Work on any number of security and identity related areas and products Build systems for detecting anomalous activities within the product Develops and administers software engineering procedures and training for vulnerability scans and static code analysis Analyse vulnerability report of various SCA and SAST scan tools like, Black Duck,...


  • Bengaluru, Karnataka, India Guidewire Full time

    Responsibilities:Proactively partner with teams across the organization (infrastructure, application engineering, data analytics, etc.) to define, promote and implement security best practices that improve the security posture of our infrastructure.Working closely with business units, product teams, DevOps engineers and/or SRE's to embed security...


  • Bengaluru, Karnataka, India Menlo Security Full time

    Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense.Menlo is well-funded for growth and our investors...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Member of Technical Staff - Distributed SystemsWe are a stealth startup, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. Over the last year we have grown quite rapidly and built a solid team the Bay Area and Bangalore. We are continuing to expand the core engineering team that will build the foundation of this...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Member of Technical Staff - Distributed Systems We are a stealth startup, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. Over the last year we have grown quite rapidly and built a solid team the Bay Area and Bangalore. We are continuing to expand the core engineering team that will build the foundation of this...


  • Bengaluru, Karnataka, India netskope software pvt Full time

    Apply for Sr. Staff Engineer, Web Security, Career Progress Consultants in Bengaluru/ Bangalore for Year of Experience on


  • Bengaluru, Karnataka, India netskope software pvt Full time

    Apply for Sr. Staff Engineer, Web Security, Career Progress Consultants in Bengaluru/ Bangalore for Year of Experience on


  • Bengaluru, Karnataka, India RSA Security Full time

    The RSA NetWitness Platform provides pervasive visibility across a modern IT infrastructure, enabling better and faster detection of security incidents, with full automation and orchestration capabilities to investigate and respond efficiently. RSA NetWitness Platform takes security "beyond SIEM," extending the traditional log-centric, compliance-focused...


  • Bengaluru, Karnataka, India Insight Global Full time

    Position Overview:As an Application Security Engineer, you will drive the security of our entire product suite. You will have the opportunity to partner with multiple product teams to champion secure coding practices and secure-by-design development principles.RESPONSIBILITIES:Support application security reviews and threat modelingPerform application...


  • Bengaluru, Karnataka, India Optiv Security Inc. Full time

    We're looking for knowledge-seeking candidates who will be eager to dive into new things in a fast-paced and ever-changing environment. This role is fitting for those looking to trailblaze their career in network security.Operating as the first impression for Optiv clients in many cases, engineers deliver both third-party Authorized Support and Technology...


  • Bengaluru, Karnataka, India Optiv Security Inc. Full time

    We're looking for knowledge-seeking candidates who will be eager to dive into new things in a fast-paced and ever-changing environment. This role is fitting for those looking to trailblaze their career in network security.Operating as the first impression for Optiv clients in many cases, engineers deliver both third-party Authorized Support and Technology...

  • Product Designer

    1 week ago


    Bengaluru, Karnataka, India Andromeda Security Full time

    Product Designer Summary: Andromeda Security is a leading Silicon Valley VC-funded multinational startup dedicated to tackling complex challenges in cloud security. Our mission is to empower businesses by managing cloud credentials effectively and preventing security breaches. We pride ourselves on fostering a culture of trust, excellence, humility, grit,...

  • Product Designer

    1 week ago


    Bengaluru, Karnataka, India Andromeda Security Full time

    Product DesignerSummary:Andromeda Security is a leading Silicon Valley VC-funded multinational startup dedicated to tackling complex challenges in cloud security. Our mission is to empower businesses by managing cloud credentials effectively and preventing security breaches. We pride ourselves on fostering a culture of trust, excellence, humility, grit, and...


  • Bengaluru, Karnataka, India Insight Global Full time

    Position Overview:As an Application Security Engineer, you will drive the security of our entire product suite. You will have the opportunity to partner with multiple product teams to champion secure coding practices and secure-by-design development principles.RESPONSIBILITIES:Support application security reviews and threat modelingPerform application...


  • Bengaluru, Karnataka, India HeadPro Consulting LLP Full time

    Job Title : Senior Staff Info security cloud engineerLocation : BangaloreExp : YearsBudget :LPAMandatory skills :Need someone who have good experience in implementing & supporting information security enterprise level cloud based tools. Candidate should have worked with cloud computing infrastructure architecture.Candidate should have good experience in...


  • Bengaluru, Karnataka, India Euromonitor Full time

    Euromonitor International is the world leader in strategic and tactical business research and analysis. A recognised innovator, consistently out-performing our peers –we now have 15 offices in 14 countries with around 1,200 staff and a further 800 + contributing analysts in over 80 countries around the world. We have come a long way from our beginnings in...


  • Bengaluru, Karnataka, India Fluence Full time

    About Fluence:Fluence Energy, Inc (Nasdaq:FLNC) is a global market leader in energy storage products and services, and optimization software for renewables and storage. With a presence in over 47 markets globally, Fluence provides an ecosystem of offerings to drive the clean energy transition, including modular, scalable energy storage products,...