Product Security Specialist

5 days ago


India Insight Global Full time

JOB DESCRIPTION We are hiring Product Security Specialists to strengthen our product security capability across penetration testing, AI security, MCP security, mobile app security, web application security, support secure Product development and CIAM. You will drive immediate pen test needs, support global DAS pen test initiatives, help operationalize AI / MCP security controls, Mobile security and implement CIAM security best practices. This is a hands-on role that balances technical testing, engineering collaboration, and program-level activities. Key responsibilities • Conduct and coordinate technical penetration tests (black-box, grey-box, white-box) against web, API, cloud, and mobile applications; produce high-quality findings and remediation guidance. • Lead/participate in Global DAS pentest initiatives and manage external pentest vendors when required. • Lead/Design and implement mobile application security assessments (iOS/Android) including static (SAST), dynamic (DAST), and binary analysis. • Develop and operationalize AI/ML security assessments and controls: model threat modeling, data poisoning/evasion testing, privacy and model governance checks, secure deployment patterns, and monitoring strategies. • Design, assess, and harden CIAM implementations: threat modeling and security assessments for OAuth2/OIDC flows, token handling, session management, secure authorization patterns, and integration with providers such as Okta and Auth0. • Support the ISO27001 ISMS platform implementation: mapping controls, configuring workflows, populating evidence, and integrating security tools into the platform. • Provide audit support for internal and external audits (ISO27001, SOC2, etc.), including evidence collection, control testing, and remediation tracking. • Triage, validate, and prioritize security issues with product and engineering teams; provide clear remediation action plans and risk-based prioritization. • Create repeatable testing playbooks, threat models, secure design checklists, and automated test harnesses. • Mentor security champions and evangelize product security best practices across engineering/product teams. • Keep current with emerging threats, tools, and industry standards in mobile, cloud, and AI security. REQUIRED SKILLS AND EXPERIENCE • 10+ years (Specialist) of hands-on product security experience including penetration testing and app security. • Mobile Security: 4–5 years of hands-on experience with mobile app security (iOS/Android), including static/dynamic analysis and binary assessment. • AI/ML Security: 3–4 years of practical experience in AI/ML security, including threat modeling, adversarial testing, secure deployment, and MLOps security. • IT Access Management & Implementation: Proven experience with CIAM, identity protocols (OAuth 2.0, OpenID Connect), token lifecycle, PKI setup, and session management. • Okta: Experience integrating and securing Okta or similar identity providers (configuration hardening, SSO flows, rule-based policies). • Hands-On Engineering: Strong technical skills in penetration testing, vulnerability assessment, and remediation guidance. NICE TO HAVE SKILLS AND EXPERIENCE • Certifications: OSCP, OSWE, OSEP, GWAPT, CISSP, CEH, CREST, or relevant mobile/AI security certifications. • DevOps & Cloud: Experience with DevOps practices, cloud platforms (AWS/Azure/GCP), container orchestration, and security automation (CI/CD, IaC scanning, SCA/SAST pipelines). • Audit & Compliance: Experience supporting ISO27001, SOC2, or similar audit frameworks and ISMS platforms.



  • Bengaluru, India Insight Global Full time

    Job Description We're Hiring: Product Security Specialist Join our global team to lead penetration testing, secure AI/ML and mobile apps, and strengthen CIAM implementations. This hands-on role blends technical testing, engineering collaboration, and program-level impact. Key responsibilities: Lead and execute web, API, cloud, and mobile app pentests Secure...

  • Specialist I

    2 weeks ago


    Bengaluru, India Respironics Inc Full time

    Job Description Job Title Specialist I - Product Security Job Description Job Title: Specialist I - Product Security Your Role: . Perform Ethical hacking and penetration testing on hardware components, embedded systems, and interfaces (e.g., JTAG, UART, SPI, I2C). . Performs Ethical Hacking into products/solutions. . Analyze and test wireless communication...


  • India Symosis Security Full time

    Location : Remote (India) Type : Full-Time Symosis Security About Symosis Security Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise with practical execution—supporting clients across threat modeling,...


  • Jodhpur, India MAJISA LIME PRODUCT Full time

    Job Description Company Description Majisa Lime Products is a leading lime production company based in Jodhpur, Rajasthan. Specializing in the quarrying and production of lime and limestone-based products, including quick lime, hydrated lime, and limestone, the company has established a strong presence in various industries. With over twenty years in...


  • India Symosis Security Full time

    Location : Remote (India) Type : Full-Time Company : Symosis Security About Symosis Security Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise with practical execution—supporting clients across threat modeling,...


  • India Symosis Security Full time

    Location : Remote (India) Type : Full-Time Company : Symosis Security About Symosis Security Symosis is a cybersecurity consulting firm purpose-built for the AI-native, cloud-first era. We help public-sector and enterprise clients mature their security operations through managed services, offensive testing, governance, and automation. We’re expanding our...


  • India Symosis Security Full time

    Location: Remote (India) Type: Full-Time Company: Symosis Security About Symosis Security Symosis is a cybersecurity consulting firm purpose-built for the AI-native, cloud-first era. We help public-sector and enterprise clients mature their security operations through managed services, offensive testing, governance, and automation. We're expanding our MSSP...


  • india Tata Consultancy Services Full time

    Job Title: Cyber Security & Infrastructure Specialists – Multiple Roles Experience: 6 to 15+ Years Locations: Mumbai, Chennai, Bangalore, Hyderabad Employment Type: Full-timeWe are hiring experienced professionals across various domains in Cyber Security, Identity & Access Management (IAM), Cloud Security, and Infrastructure Architecture. This is an...


  • India Symosis Security Full time

    Location: Remote (India)Type: Full-TimeCompany: Symosis SecurityAbout Symosis SecuritySymosis is a cybersecurity consulting firm purpose-built for the AI-native, cloud-first era. We help public-sector and enterprise clients mature their security operations through managed services, offensive testing, governance, and automation. We’re expanding our MSSP...


  • India Allianz Full time

    Allianz is seeking a Cyber Security Specialist to join the Security Operations team The specialist will serve on the front lines of Allianz s Security team and will lead and support security investigations across the company s global infrastructure as well as respond to escalations from different entities The specialist will leverage an armory of tools to...