Senior Security Engineer

1 month ago


india Karya Consultants Private Limited Full time

Basic Qualifications:


  • B.Tech. in Computer Science, Electrical, or Computer Engineering, or equivalent work experience as a software engineering or security practitioner.
  • 5+ years of relevant engineering or security assessment experience, experience in application security.
  • Possess a broad knowledge of attack vectors, exploits and mitigations that work at scale or may be linked together for chained attacks.
  • Experience with Java, Go, Python or Node.js (bonus points for more than one).
  • Experience with assessing with Cloud-native services, service meshes, and K netes-platform based micro-services.
  • Be able to apply unconventional thinking and problem-solve on the boundary of your knowledge base, learning new technologies or languages as needed to complete pen-test tasks.
  • Be able to think both offensively (like a hacker) and defensively (evaluating product security and design


Responsibilities Security Assessments:


  • Examine the products in detail to discover vulnerabilities and collaborate with the other security engineers to practically demonstrate the exploitability and risk factors.
  • Be on the forefront of emerging vulnerabilities/threats which could affect products through independent research and study.
  • Engage with the developers in developing workarounds/mitigation plan and ensure they are implemented per policy.
  • Threat Modelling: Engage with the development teams to conduct secure design reviews/threat modeling exercise to enumerate threats and mitigation strategies.
  • Enable the developers with knowledge of threat modeling by conducting focused workshops.
  • Secure Coding: Priorities critical defects and ensure these are identified and mitigated during the sprint.
  • Integration and automation of SAST in the DevOps pipeline.
  • Build secure coding principles and propagate across the development community.
  • Be the to-go person for developers in solving critical issues relating to secure product development.
  • Build and enhance secure coding / security assessments training contents for developers and QA team.
  • Deliver training programs at various levels in the organizations.
  • Conduct workshops / security tech-talks to disseminate security knowledge and awareness. Qualifications.
  • Good knowledge in multiple classes of vulnerabilities that includes cross-site scripting, SQL Injection, CSRF, cryptographic related weakness, and code injection.
  • Good knowledge in any programming / scripting languages such as Java, Ruby, and Python.
  • Good knowledge relating to services / technology relating to cloud.
  • Ability to automate security testing and improve productivity in security assessments.
  • Ability to communicate and interpret security vulnerabilities to various audience such as development and management teams.

What the Candidate Will Do

  • You have great interpersonal skills, deep technical ability, and a history of successful execution in the assessments industry. If you enjoy discussing anything from procedural linking tables in kernels to remote code execution in JVMs, then we want you on the team.
  • Familiarity with industry-standard threat modeling, risk modeling and vulnerability classification.
  • Experience with pre-assessment architectural and API analysis to scope and prepare white-box and grey-box assessments.
  • Experience working with in-house engineering organizations, S-SDLC/CICD software lifecycle and QA processes


Interested candidates please share their resume directly here ,com



  • india TAC Security Full time

    Job Title: Senior Security Engineer - VAPT Location: Pune, India Company Description TAC Security is a global leader in vulnerability management that specializes in protecting Fortune 500 companies, leading enterprises, and governments worldwide. With its AI-based Vulnerability Management Platform ESOF (Enterprise Security in One Framework), TAC Security...


  • India sar hr Full time

    Job Description : 6 years years of experience in security engineering, security operations, or systems engineering with cyber security engineering responsibilities. Bachelor's degree in computer science, or related technology degree. Lead the design, implementation, and ongoing maintenance of our vulnerability management program, encompassing...


  • india Cynosure Corporate Solutions Full time

    Senior Cloud Security Engineer Chennai, India Experience: 8+ years   Your Role and Responsibilities   Work with the infrastructure team and provide expert advice on securing our use of Azure cloud and AWS services, Kubernetes and containers in particular, provide guidance and a level of oversight for Azure and AWS network security and Key Vault ...


  • india 3M Consultancy Full time

    Job Description This is a remote position. Job Title: Senior Security Engineer. Location: Washington, DC (Remote) Duration: Full-Time. Role Specific Duties:         Provide network IDS monitoring, cyber threat intelligence, security log analysis and forensics, and web application security scanning and analysis.         Protect users by...


  • india Apollo Full time

    Your Role & Mission The  Senior Application Security Engineer will work with product and engineering to create a secure SDLC, design security features and implement tools, education and processes to reduce risk of security issues in the tech stack. Responsibilities Select or build tooling to help developers build secure code Provide...


  • India Apollo Full time

    Your Role & Mission The Senior Application Security Engineer will work with product and engineering to create a secure SDLC, design security features and implement tools, education and processes to reduce risk of security issues in the tech stack. Responsibilities Select or build tooling to help developers build secure code Provide overall...


  • india Security Lit Full time

    Job Description: Join the forefront of cybersecurity innovation at Security Lit! We're on the hunt for a dynamic Application Security (AppSec) Manager Lead to steer our Information Security Team. This pivotal role focuses on Vulnerability Assessment and Penetration Testing within the BFSI sector. You’ll be leading a spirited team spread across the UK,...


  • India STAFIDE Full time

    Job Description Over ons: Stafide is de primaire plek voor technisch talentadvies en biedt uitgebreide werkmogelijkheden door heel Europa. Onze missie is duidelijk: moeiteloos werkzoekenden met werkgevers verbinden, met focus op de snelle veranderingen van technologie. Met onze onvergelijkbare expertise en standvaste toewijding, zijn we gespecialiseerd in...


  • india NXP Semiconductors Full time

    Role Summary: The Senior Network Security Engineer will be responsible for designing, implementing, and maintaining our network security infrastructure. This role will focus on Palo Alto Networks technology to ensure the highest levels of security and performance for our organization's network. The ideal candidate will possess extensive experience in...


  • india sar hr Full time

    Job Description : - 4 - 6 years years of experience in security engineering, security operations, or systems engineering with cyber security engineering responsibilities.- Bachelor's degree in computer science, or related technology degree.- Lead the design, implementation, and ongoing maintenance of our vulnerability management program, encompassing...


  • India Pluralsight Full time

    Job Description: The Senior Product Security Engineers work together with engineering teams to build secure products.They are also responsible forleading Secure Software Development Lifecycle (Secure-SDL) initiatives that can improve the security posture of our platform. Duties/responsibilities Support and enable engineering teams in building secure...


  • India UpTech Solutions PTE Limited Full time

    Position Name: Senior Network Security engineerClient: Boston Consulting Group (BCG)What You’ll Do:We are seeking a strong candidate to fill the IT Network Security Engineer position in the Secure Networking squad at BCG. You will be working in a Security Engineering, Architecture, and Automation capacity across BCG’s global network to drive and support...


  • India UpTech Solutions PTE Limited Full time

    Position Name: Senior Network Security engineer Client: Boston Consulting Group (BCG) What You’ll Do: We are seeking a strong candidate to fill the IT Network Security Engineer position in the Secure Networking squad at BCG. You will be working in a Security Engineering, Architecture, and Automation capacity across BCG’s global network to drive and...


  • india Pluralsight Full time

    Job Description: The Senior Product Security Engineers work together with engineering teams to build secure products.They are also responsible forleading Secure Software Development Lifecycle (Secure-SDL) initiatives that can improve the security posture of our platform.  Duties/responsibilities Support and enable engineering teams in building secure...


  • india Bread Financial Full time

    JOB DESCRIPTION Every career journey is personal. That's why we empower you with the tools and support to create your own success story. Be challenged. Be heard. Be valued. Be you ... be here. Job Summary The Senior Cloud Security Engineer is responsible for coding, configuring and administering cloud information security...


  • India Genpact Full time

    Senior Principal Consultant - Network Security Engineer Location: Hyderabad Experience: 10+ Years 30 days joiners preferred. Responsibilities As a Network Security Engineer, candidate will be responsible for the below. · Designing & Implementation of network security and automation solutions as well as help with operational tasks where necessary. ·...


  • India Teladoc Health Full time

    Sr Cloud Security Engineer Responsibilities: Design, deploy and manage security solutions to protect Teladoc's Cloud assets, Saa S applications.Present solution designs, architecture diagrams, and implementation plans to senior leaders and cross-functional teams and gain stakeholder buy-in through effective communication, relationship building, and...


  • india Chronos Consulting Full time

    Job Description Our client is a world-renowned US startup in the field of automation. This California unicorn is still a private enterprise experiencing hypergrowth. They are looking for an exceptional Senior Security Engineer to join their team as they build their defensive security capabilities. This is a full-time, permanent role. Hybrid or...


  • india Chronos Consulting Full time

    Job Description Our client is a world-renowned US startup in the field of automation. This California unicorn is still a private enterprise experiencing hypergrowth. They are looking for an exceptional Senior Security Engineer to join their team as they build their defensive security capabilities. This is a full-time, permanent role. Hybrid or...


  • India Chronos Consulting Full time

    Job Description Our client is a world-renowned US startup in the field of automation. This California unicorn is still a private enterprise experiencing hypergrowth. They are looking for an exceptional Senior Security Engineer to join their team as they build their defensive security capabilities. This is a full-time, permanent role. Hybrid or Remote. ...