Harness - Staff Product Security Engineer - DAST/SAST

2 weeks ago


Bengaluru, India Harness.io Full time

As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate.

You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering teams to Get Ship Done.

You will be responsible for cross-team projects with Engineering and Product, and will sharpen new skills as we continue to scale.

In this role, you will :

- Design and develop product security APIs, tools and utilities for internal and external stakeholders.

- Conduct threat modeling and secure design review of applications backend services and business integrations.

- Good understanding of cyber security frameworks like OWASP, SANS, NIST, CIS, etc.

- Perform advanced penetration tests and simulate adversarial attacks against Harness modules APIs, and codebase using industry standard frameworks.

- Participate in the creation, review and implementation of technical security across global Engineering teams.

- Consult and advise with developers and Product Managers to analyze and implement security standards, methods, vulnerability remediation, and security architecture.

- Assess risks and trade-offs, and propose solutions for product security features such as authentication and authorization.

- Lead manual and automated code review and testing efforts to discover vulnerabilities, weaknesses, and anti-patterns in the Harness platform.

- Implement and own operation of security tooling, including but not limited to SAST, DAST, and SCA.

- Use the Harness platform to integrate security processes like vulnerability management into the SDLC.

About You :

- You have a BS in Computer Science or a related degree.

- You have at least 7 years of relevant industry experience as a software engineer with a strong security focus.

- Experienced with DevSecOps.

- Ability to describe Secure SDLC best practices and software supply chain risks.

- Experience with any of the Public/Private cloud environments (K8s, AWS, GCP, Azure, etc.).

- You have expert professional knowledge of enterprise applications, API development, and modern software delivery processes.

- You have previous experience in a cloud-native environment.

- You are proficient with Java or any similar language and object-oriented programming methodology.

(ref:hirist.tech)

  • Bengaluru, India Harness Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering...


  • Bengaluru, India Harness Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering...


  • Bengaluru, India Harness Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering...


  • Bengaluru, India Harness Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering...

  • App Security Sast

    4 weeks ago


    Bengaluru, India RARR Technologies Pvt Ltd Full time

    For LTIMINDTREE - 5 - 8 Years- Full Time- BANGALORE/BENGALURU**Job Skills**: SAST DAST APPLICATION SECURITY TESTER Position: Application Security - Security Tester - P2 - Expert in Dynamic Application Security Scan/Analysis (DAST) - Expert in Static Application Security Scan/Analysis (source code review) (SAST) - Knowledge of Software Composition Analysis...


  • Bengaluru, India RARR Technologies Full time

    **Job Details - Web Application Testing (SAST and DAST)**: **Job ID**: - RARR Job 3383**Job Title**: - Web Application Testing (SAST and DAST)**Job Type**: - Permanent**Job Location**: - Bangalore**Total Experience**: - 5 - 8 Years**Skills**: - Vulnerability Management, Web Application Testing, Itsm, Bug Fixing**Posted - **09/06/2023 **Job...


  • Bengaluru, India Jobs for Humanity Full time

    Job DescriptionPosition Type :Full timeType Of Hire :Experienced (relevant combo of work and education)Education Desired :Bachelor of Computer ScienceTravel Percentage :0% As the world works and lives faster, FIS is leading the way. Our fintech solutions touch nearly every market, company and person on the planet. Our teams are inclusive and diverse. Our...


  • Bengaluru, India FIS Full time

    Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0% As the world works and lives faster, FIS is leading the way. Our fintech solutions touch nearly every market, company and person on the planet. Our teams are inclusive and...

  • IT Security Analyst II

    24 hours ago


    Bengaluru, India Jobs for Humanity Full time

    Job Description Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0%As the world works and lives faster, FIS is leading the way. Our fintech solutions touch nearly every market, company and person on the planet. Our teams are inclusive and diverse....


  • Bengaluru, India Zyoin group Full time

    Responsibilities : - Work closely with the engineering team to address technical and product-related queries from both customers and L1/L2 teams.- Replicate issues in test environments to diagnose and resolve.- Utilize SQL skills to extract data relevant to customer queries or issues.- Use REST APIs to diagnose and resolve integration or data flow...


  • Bengaluru, India LeadSquared Full time

    Key Responsibilities:- Application security assessments- Secure Code Review- Cloud security assessments- Vulnerability management- Security Training and Awareness- Automation and engineeringRequirements- 3 to 5 years' experience in Product Security, desirable to have 1+ years of software development experience.- Experience in testing several complex web...


  • Bengaluru, India LeadSquared Full time

    Key Responsibilities:Application security assessmentsSecure Code ReviewCloud security assessmentsVulnerability managementSecurity Training and AwarenessAutomation and engineeringRequirements3 to 5 years' experience in Product Security, desirable to have 1+ years of software development experience.Experience in testing several complex web applications by...


  • Bengaluru, India Harness Full time

    Harness is a high-growth startup that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers’ pace of innovation while improving the developer experience. We offer solutions for every step of the...


  • Bengaluru, India LeadSquared Full time

    Key Responsibilities:Application security assessmentsSecure Code ReviewCloud security assessmentsVulnerability managementSecurity Training and AwarenessAutomation and engineeringRequirements3 to 5 years' experience in Product Security, desirable to have 1+ years of software development experience.Experience in testing several complex web applications by...


  • Bengaluru, India LeadSquared Full time

    Key Responsibilities: Application security assessments Secure Code Review Cloud security assessments Vulnerability management Security Training and Awareness Automation and engineering Requirements 3 to 5 years' experience in Product Security, desirable to have 1+ years of software development experience. Experience in testing several complex web...


  • Bengaluru, India LeadSquared Full time

    Key Responsibilities:Application security assessmentsSecure Code ReviewCloud security assessmentsVulnerability managementSecurity Training and AwarenessAutomation and engineeringRequirements3 to 5 years' experience in Product Security, desirable to have 1+ years of software development experience.Experience in testing several complex web applications by...


  • Bengaluru, India Harness Full time

    Harness is a high-growth company that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers’ pace of innovation while improving the developer experience. We offer solutions for every step of the...


  • Bengaluru, India RARR Technologies Pvt Ltd Full time

    For LTIMINDTREE - 5 - 8 Years- Full Time- BANGALORE/BENGALURU**Job Skills**: VULNERABILITY MANAGEMENT BUG FIXING ITSM WEB APPLICATION TESTING Web Application Testing (SAST and DAST) and PT + VM Governance - "Digital Security Coordinator - Good understanding of vulnerability management, etc. - Very strong experienced on communication, follow-up and...


  • Bengaluru, India Harness Full time

    Harness is a high-growth company that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers’ pace of innovation while improving the developer experience. We offer solutions for every step of the...


  • Bengaluru, India Harness Full time

    Harness is a high-growth company that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers’ pace of innovation while improving the developer experience. We offer solutions for every step of the...