Senior Product Security Engineer, India Payments Security

2 days ago


Bengaluru, Karnataka, India Amazon Full time

DESCRIPTIONAmazon is seeking qualified Application Security AppSec Engineers to join our innovative high energy Amazon Payments India Security team and work within the Consumer Stores Security organization Amazon Payments processes millions of transactions every day across numerous countries and payment methods Paramount to our success is ensuring that our customer data is secure As an application security engineer within India Payments Security you will partner with engineering teams in a consulting facility throughout the Software Development Life Cycle SDLC to ensure that applications are designed and built securely You will identify potential vulnerabilities in the applications and enable developers to understand and remediate such identified vulnerabilities Key job responsibilities - Perform security reviews including secure design and architecture threat modeling threat assessments secure code reviews security testing and security certifications - Identify security gaps in applications services and products including internally developed as well as third party solutions - Determine findings criticality taking into account the relevant business technical and threat environment - Produce reports that describes the work perform for a variety of audiences including technical and non-technical stakeholders - Design develop deploy and maintain security automation secure-by-default solutions and other solutions that will enable developer and security engineering productivity using scripting or programming languages - Develop a broad and deep technical understanding of the services architectures and products pertaining to Amazon s payment ecosystem - Contribute to the long-term and short-term security strategy to ensure that applications are designed and built securely - Influence decision-makers and stakeholders to achieve a consistently high security bar - Create relevant documentation security guidance and metrics to report to your stakeholders and business leaders and deliver these in a clear concise manner - Deliver practical security solutions providing a customer-centric experience - Build security utilities and tools that enable security operations at high speed and wide scale Develop detections and alerts to identify potential incidents - Analyze logging and alerting infrastructure to ensure appropriate coverage and response capability - Evaluate impact of current security trends advisories publications and academic research Coordinate responses as necessary across affected teams - Communicate effectively at multiple levels of sensitivity to multiple audiences - Recognize adopt and instill best security engineering practices throughout the organization - Participate in security escalations support including on-call rotation About the team Diverse Experiences Amazon Security values diverse experiences Even if you do not meet all of the qualifications and skills listed in the job description we encourage candidates to apply If your career is just starting hasn t followed a traditional path or includes alternative experiences don t let it stop you from applying Why Amazon Security At Amazon security is central to maintaining customer trust and delivering delightful customer experiences Our organization is responsible for creating and maintaining a high bar for security across all of Amazon s products and services We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud devices retail entertainment healthcare operations and physical stores Work Life Balance We value work-life harmony Achieving success at work should never come at the expense of sacrifices at home which is why flexible work hours and arrangements are part of our culture When we feel supported in the workplace and at home there s nothing we can t achieve Inclusive Team Culture In Amazon Security it s in our nature to learn and be curious Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas perspectives and voices Mentorship and Career growth We re continuously raising our performance bar as we strive to become Earth s Best Employer That s why you ll find endless knowledge-sharing training and other career-advancing resources here to help you develop into a better-rounded professional BASIC QUALIFICATIONS- BS in Computer Science Information Security or equivalent professional experience - 8 years of experience in application security product security or systems security and 5 years writing production-level code in at least one scripting or compiled language such as Java Python JavaScript Go Ruby C or C C - Proven experience in threat modeling code reviews security testing vulnerability detection attacker exploit techniques and methods for their remediation and 5 years of experience securing cloud services such as AWS Azure and Google Cloud - A strong understanding of technologies processing payments processing and financial services PREFERRED QUALIFICATIONS- Master s degree in Computer Science Information Security Computer Engineering or equivalent and relevant industry certifications from SANS GIAC CISSP OSCP etc - In-depth technical understanding of OWASP Top 10 and SANS 25 vulnerability identification and remediation and experience with securing financial and payment processing systems evaluating from Layer 3 to Layer 7 and with end-to-end security ownership - Experience driving multiple technically complex security initiatives while remaining effective at providing security guidance to stakeholders



  • Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,25,000 - US$ 1,75,000 per year

    Job Title:Senior Security EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...

  • Elytra Security

    5 days ago


    Bengaluru, Karnataka, India Elytra Security Private limited Full time

    Job Description: Senior Manager - Sales Location: Bangalore, India (Hybrid)Employment Type: Full-timeDepartment: Sales & Business DevelopmentReports To: Director - Sales & PartnershipsAbout Elytra SecurityElytra Security is a Bangalore-based cybersecurity firm building next-generation security and compliance solutions for enterprises, BFSI, healthcare,...


  • Bengaluru, Karnataka, India Razorpay Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    NewSenior Security Engineer -RBI regulationBangaloreRazorpay was founded by Shashank Kumar and Harshil Mathur in 2014. Razorpay is building a new-age digital banking hub (Neobank) for businesses in India with the mission is to enable frictionless banking and payments experiences for businesses of all shapes and sizes. What started as a B2B payments company...

  • Security Engineer-2

    4 weeks ago


    Bengaluru, Karnataka, India Cashfree Payments Full time

    Job DescriptionResponsibilities:- Examine the products in detail to discover vulnerabilities and collaborate with the other security engineers to practically demonstrate the exploitability and risk factors.- Be on the forefront of emerging vulnerabilities/threats that could affect Cashfree products through independent research and study.- Engage with the...


  • Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 5,00,000 - ₹ 8,00,000 per year

    About the team:The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate...


  • Bengaluru, Karnataka, India Elytra Security Private limited Full time

    Job Description - Senior Sales ExecutiveLocation: Bangalore, India (Hybrid)Employment Type: Full-timeDepartment: Sales & Business DevelopmentReports To: Director - Sales & PartnershipsAbout Elytra SecurityElytra Security is a Bangalore-based cybersecurity firm building next-generation security and compliance solutions for enterprises, BFSI, healthcare,...


  • Bengaluru, Karnataka, India Razorpay Software Private Limited Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    Razorpay was founded by Shashank Kumar and Harshil Mathur in 2014. Razorpay is building a new-age digital banking hub (Neobank) for businesses in India with the mission is to enable frictionless banking and payments experiences for businesses of all shapes and sizes. What started as a B2B payments company is processing billions of dollars of payments for...


  • Bengaluru, Karnataka, India Slice Full time

    About the roleAs a Senior Product Security Engineer at slice, you'll contribute technically to advance the Cyber Security program at slice and help the company in making the application and the infrastructure secure as per the industry standards. You will anticipate and identify risks and share any issues with senior members of the team. The ideal candidate...

  • Metron Security

    3 days ago


    Bengaluru, Karnataka, India Metron Security Private Limited Full time

    We are looking for passionate developers with 2-5 years of experience in software development to join the Metron Security team as a Software Engineer.Metron Security provides automation and integration services to leading cybersecurity companies. Our engineering team works on leading security platforms, including Splunk, IBMs QRadar, ServiceNow, Crowdstrike,...


  • Bengaluru, Karnataka, India Rippling Full time

    About RipplingRippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take...