Harness - Staff Product Security Engineer - DAST/SAST

2 weeks ago


Bangalore, India Harness.io Full time

As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate.

You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering teams to Get Ship Done.

You will be responsible for cross-team projects with Engineering and Product, and will sharpen new skills as we continue to scale.

In this role, you will :

- Design and develop product security APIs, tools and utilities for internal and external stakeholders.

- Conduct threat modeling and secure design review of applications backend services and business integrations.

- Good understanding of cyber security frameworks like OWASP, SANS, NIST, CIS, etc.

- Perform advanced penetration tests and simulate adversarial attacks against Harness modules APIs, and codebase using industry standard frameworks.

- Participate in the creation, review and implementation of technical security across global Engineering teams.

- Consult and advise with developers and Product Managers to analyze and implement security standards, methods, vulnerability remediation, and security architecture.

- Assess risks and trade-offs, and propose solutions for product security features such as authentication and authorization.

- Lead manual and automated code review and testing efforts to discover vulnerabilities, weaknesses, and anti-patterns in the Harness platform.

- Implement and own operation of security tooling, including but not limited to SAST, DAST, and SCA.

- Use the Harness platform to integrate security processes like vulnerability management into the SDLC.

About You :

- You have a BS in Computer Science or a related degree.

- You have at least 7 years of relevant industry experience as a software engineer with a strong security focus.

- Experienced with DevSecOps.

- Ability to describe Secure SDLC best practices and software supply chain risks.

- Experience with any of the Public/Private cloud environments (K8s, AWS, GCP, Azure, etc.).

- You have expert professional knowledge of enterprise applications, API development, and modern software delivery processes.

- You have previous experience in a cloud-native environment.

- You are proficient with Java or any similar language and object-oriented programming methodology.

(ref:hirist.tech)

  • bangalore, India Harness.io Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering...


  • Bangalore, Karnataka, India Harness.io Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with...


  • bangalore, India Harness Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering...


  • bangalore, India Jobs for Humanity Full time

    Job Description Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0%As the world works and lives faster, FIS is leading the way. Our fintech solutions touch nearly every market, company and person on the planet. Our teams are inclusive and...


  • bangalore, India FIS Full time

    Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0% As the world works and lives faster, FIS is leading the way. Our fintech solutions touch nearly every market, company and person on the planet. Our teams are inclusive and...


  • Bangalore/Anywhere in India/Multiple Locations, IN Zyoin group Full time

    Responsibilities : - Work closely with the engineering team to address technical and product-related queries from both customers and L1/L2 teams.- Replicate issues in test environments to diagnose and resolve.- Utilize SQL skills to extract data relevant to customer queries or issues.- Use REST APIs to diagnose and resolve integration or data flow...


  • Bangalore,Anywhere in India,Multiple Locations Zyoin group Full time

    Responsibilities : - Work closely with the engineering team to address technical and product-related queries from both customers and L1/L2 teams.- Replicate issues in test environments to diagnose and resolve.- Utilize SQL skills to extract data relevant to customer queries or issues.- Use REST APIs to diagnose and resolve integration or data flow...


  • Anywhere in India,Multiple Locations,Any Location,Bangalore Zyoin Full time

    Company - Software Development5 Days workingWFH / Remote WorkingJob Description : - Work closely with the engineering team to address technical and product-related queries from both customers and L1/L2 teams. - Replicate issues in test environments to diagnose and resolve.- Utilize SQL skills to extract data relevant to customer queries or issues.- Use REST...


  • Bangalore Metropolitan Area, India Harness Full time

    Harness is a high-growth startup that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers’ pace of innovation while improving the developer experience. We offer solutions for every step of the...


  • bangalore, India Synopsys Inc Full time

    At Synopsys, we pride ourselves for building products and delivering services that help our customers keep their applications safe and secure. Our people do this so well, we have been named the AppSec leader for seven years in a row by Gartner.We are looking for an experienced staff software engineer who will join forces with the development team for our...


  • bangalore, India People Tech Group Inc Full time

    Principal Cyber Security EngineerQualifications and Skills· Bachelor's degree in Computer Science, Computer Engineering, a related field or equivalent demonstrated experience and knowledge· Minimum 4+ years of experience in software development or related fields.· A minimum 2 years technical experience working with cyber security design/development for...


  • bangalore, India People Tech Group Inc Full time

    Principal Cyber Security Engineer Qualifications and Skills · Bachelor's degree in Computer Science, Computer Engineering, a related field or equivalent demonstrated experience and knowledge · Minimum 4+ years of experience in software development or related fields. · A minimum 2 years technical experience working with cyber security...


  • bangalore, India Trellix Full time

    About the Role: Collaborate with development teams to integrate security practices into the Software Development Life Cycle (SDLC). Provide guidance and assistance in implementing secure coding practices and principles. Conduct security code reviews and provide feedback to development teams. Utilize SAST tools to analyze source code...


  • Bangalore, India Harness.io Full time

    Harness is a high-growth startup that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers' pace of innovation while improving the developer experience. We offer solutions for every step of the...


  • bangalore, India Harness.io Full time

    Harness is a high-growth startup that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers' pace of innovation while improving the developer experience. We offer solutions for every step of the...


  • Bangalore, Karnataka, India Harness.io Full time

    Harness is a high-growth startup that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers' pace of innovation while improving the developer experience. We offer solutions for every step of the...


  • Bangalore, India THOUGHTSPOT INDIA PRIVATE LIMITED Full time

    Responsibilities: Define and execute the security posture for ThoughtSpot services running across multiple cloud and hybrid environments. Provide technical leadership, mentor team members, and lead initiatives across the R/D org across geographies. Experiment and drive technology decisions across multi-cloud environments - AWS, GCP, and private cloud....


  • Bangalore, Karnataka, India THOUGHTSPOT INDIA PRIVATE LIMITED Full time

    Responsibilities: Define and execute the security posture for ThoughtSpot services running across multiple cloud and hybrid environments.Provide technical leadership, mentor team members, and lead initiatives across the R/D org across geographies.Experiment and drive technology decisions across multi-cloud environments - AWS, GCP, and private cloud.Architect...


  • Bangalore, Karnataka, India THOUGHTSPOT INDIA PRIVATE LIMITED Full time

    Responsibilities : - Define and execute the security posture for thoughtspot services running across multiple cloud and hybrid environments. - Provide technical leadership, mentor team members, and lead initiatives across the r, and d org across geographies.- Experiment and drive technology decisions across multi-cloud environments - aws, gcp, and private...


  • Bangalore, India THOUGHTSPOT INDIA PRIVATE LIMITED Full time

    Responsibilities : - Define and execute the security posture for thoughtspot services running across multiple cloud and hybrid environments. - Provide technical leadership, mentor team members, and lead initiatives across the r, and d org across geographies.- Experiment and drive technology decisions across multi-cloud environments - aws, gcp, and private...