 
						Security engineer
3 weeks ago
Signzy is a digital trust system. We provide identification, background checks, forgery detection and contract management systems which enable contracting in a trustable, safe, legal, and convenient manner. Our biometric user authentication system and blockchain-based digital trail ensure non-repudiation. This increases compliance and enforceability in the court of law. We consist of a tech-savvy team and are backed by investors who are enthusiastic about creating solutions with technology. Working at Signzy ● At Signzy we breathe software and exploit the latest technologies to create the most amazing products. We comprise a tech-savvy team and are backed by investors who are enthusiastic about creating solutions using technology. ● Signzy is looking for an Security Engineer. If you think you have what it takes to get the job done, this is an invitation to be a part of the future JD for Security Engineer-1 Role Responsibilities: Application Security Perform secure code reviews , threat modeling, and static/dynamic application security testing (SAST/DAST). Integrate and maintain automated scanning tools (e.g., Semgrep, Snyk, Trivy, Gitleaks) in CI/CD pipelines. Collaborate with developers to remediate vulnerabilities and embed security in SDLC. Guide on secure architecture patterns (authentication, authorization, data encryption, API security, mobile app protections like SSL pinning and m TLS). Infrastructure & Cloud Security Harden cloud infrastructure (AWS/GCP/Azure), including IAM, VPC design, encryption, and network segmentation. Implement infrastructure-as-code security checks for Terraform, Helm, and Kubernetes deployments. Conduct internal and external penetration tests , configuration reviews, and vulnerability management for servers, containers, and endpoints. Support continuous monitoring (WAF, SIEM, EDR/MDM) and incident response Security Assessments & Compliance Lead periodic security assessments : vulnerability assessments, penetration testing, firewall rule reviews, user-access audits, and network segmentation reviews. Document findings, track remediation, and provide risk-based recommendations. Assist with evidence gathering for ISO 27001, SOC 2, PCI-DSS, GDPR, and internal security audits. Continuous Improvement Research emerging threats (e.g., supply-chain attacks, npm/package ecosystem risks) and recommend mitigations. Contribute to security runbooks, policies, and developer awareness sessions. Qualification Must Have 2–4 years of experience in application or infrastructure security engineering. Strong understanding of web/mobile security, OWASP Top 10, cloud security fundamentals, and Linux/Unix systems. Hands-on experience with CI/CD pipelines and common security tools (SAST, DAST, container scanners, SIEM/EDR). Hands-on with SAST/DAST tools (e.g., Burp Suite, OWASP ZAP, Semgrep, Fortify) Knowledge of network & OS hardening (Linux, cloud workloads). Experience with internal and external penetration testing methodologies. Familiarity with common tools: Nmap, Metasploit etc., Hands on experience with Mobile application security testing (Android and i OS) Familiarity with threat modeling frameworks (STRIDE, MITRE ATT&CK) and SBOM management. Scripting or programming skills (Python, Go, Bash) for automation and custom tooling. Should have fundamental knowledge of cloud environments Security-first mindset with curiosity and analytical thinking. Ability to review firewall rules, ACLs, and security groups for least-privilege. Understanding of network segmentation and zero-trust principles. Ability to translate complex vulnerabilities into actionable, developer-friendly guidance. Collaborative approach to working with engineering, Dev Ops, and compliance teams. Strong reporting & documentation skills (writing assessment reports). Knowledge of security standards (ISO 27001, NIST 800-53, CIS Benchmarks). Good to Have Container & K8s Security : Familiarity with Trivy, Falco, Kubescape, Kyverno. Ia C Security : Experience with Terraform/Cloud Formation scanning (Checkov, Tfsec). Dev Sec Ops Integration: Embedding security tests into CI/CD (Git Lab, Git Hub Actions, Jenkins). Advanced API Security : Hands-on with API gateways (Kong, Apigee, AWS API Gateway) and WAF tuning. Cloud-Native Security : Experience with Guard Duty, Security Hub, AWS Config, GCP SCC. Emerging Areas : AI/ML model security. Certifications (good-to-have, not must) : OSCP or Cloud Security certs (AWS Security Specialty).
- 
					  Network Security Engineer2 weeks ago 
 bangalore, India Microminder Cyber Security Full timeRole Overview We are looking for a Network Security Engineer with experience in deploying and managing open-source network security platforms. The role involves setting up visibility sensors, handling network traffic capture, and building log pipelines that integrate into SIEM environments. The ideal candidate has worked with packet capture tools, IDS/IPS,... 
- 
					  Engineering Manager4 weeks ago 
 Bangalore, India Skyhigh Security Full timeAbout Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them... 
- 
					  Solutions Engineer5 days ago 
 bangalore, India Eventus Security Full timeJob Title: Solution Engineer Experience: 5yrs+ Location: Sanpada, Navi Mumbai Roles & Responsibilities: • Deploy the solution for the newly acquired customers as per the defined scope of work. Act as a single point of contact for all deployment-related activities. • Providing product demonstrations and showing the value add of Eventus Security’s as and... 
- 
					  Solutions Engineer5 days ago 
 bangalore, India Eventus Security Full timeJob Title: Solution EngineerExperience: 5yrs+Location: Sanpada, Navi Mumbai Roles & Responsibilities: • Deploy the solution for the newly acquired customers as per the defined scope of work. Act as a single point of contact for all deployment-related activities. • Providing product demonstrations and showing the value add of Eventus Security’s as and... 
- 
					  Senior devops engineer3 weeks ago 
 Bangalore, India Skyhigh Security Full timeSkyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them with a... 
- 
					  Cyber security/ product security engineer3 weeks ago 
 Bangalore, India Traveloka Full timeJob Description Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software... 
- 
					  Security Engineer7 days ago 
 bangalore, India Infogain Full timeTitle: Security Engineer (6+ Years)Job Description:Use CrowdStrike reports to evaluate all security vulnerabilities on both Windows and Linux systems.Analyze the requirements to remediate the security vulnerabilities.Create processes that will remediate the vulnerabilities.Work with the Managed Services team and the BUs to schedule the remediations in within... 
- 
					  Security engineer4 weeks ago 
 Bangalore, India Kapiva Full timeAbout Kapiva Kapiva (Series-C funded) is on a journey of transformation — from being one of India’s leading modern Ayurvedic nutrition brands to becoming a health-tech company that leverages technology to drive better health outcomes for millions of people across India and internationally. We believe the next wave of innovation in health will be driven... 
- 
					  Security Engineer4 weeks ago 
 Bangalore, India Infotree Global Solutions Full timeLooking for someone having expeirnece in Cisoc Meraki, Cisco ASA, without this skill, noone will be considered. Job Description Security Engineer Job Description: Looking for a Skilled Security Engineer with CCNP Security certification and substantial experience in Security Operations Center (SOC) environments. The ideal candidate will be... 
- 
					  Security Engineer1 week ago 
 bangalore, India redBus Full timeWe are looking for a Security Engineer to join our cybersecurity team and strengthen redBus defence against evolving cyber threats. This role involves monitoring, analysing, and responding to security incidents while continuously improving our security framework. The ideal candidate will have 7–10 years of experience in Security Operations, with deep...