Lead Product Security Engineer

2 weeks ago


Bengaluru India ASAPP Full time

Job Description

At ASAPP, our mission is simple: deliver the best AI-powered customer experiencefaster than anyone else. To achieve that, we're guided by principles that shape how we think, build, and execute. We value customer obsession, purposeful speed, ownership, and a relentless focus on outcomes. We work in tight, skilled teams, prioritize clarity over complexity, and continuously evolve through curiosity, data, and craftsmanship.

We're seeking technologists and problem solvers who thrive in fast-paced environments, love collaborating with great talent, and approach every day like it's Day 1. We're a globally diverse team with hubs in New York City, Mountain View, Latin America, and Indiaembracing both hybrid and remote work to bring the best minds together, wherever they are. If you're driven by continuous learning, rapid pivots, and the challenges of building in a high-growth startup, we'd love to talk. This is more than a jobit's a journey.

ASAPP is seeking a full-time Product Security Engineer to test and enhance the security of our complex, distributed, cloud-native microservices products. You will collaborate with fellow security engineers and the engineering organization at large, focusing on securing our applications and cloud infrastructure using advanced cloud-native and custom solutions. Your primary goal will be to fortify our application security across the product lifecycle, ensuring robust protection for our innovative AI-driven solutions.

As a member of our growing security team, you will have oversight and responsibility for application security testing, threat modeling, and architecture. You will play a pivotal role in building and optimizing our cloud security infrastructure and implementing a variety of application detection and response tools. By leveraging ASAPP's people and technology, you will ensure maximum security and contribute actively to system design reviews, fostering a strong security culture throughout our organization.

What You'll Do

- Embedded with Product Engineering, Product Managers, and Architects to ensure alignment and effective collaboration with a goal: Secure ASAPP products and underlying infrastructure
- Gain domain expertise: Deep understanding of ASAPP product portfolio and can represent them from security perspective
- Understand customer data flows and data protection requirements
- Ensure adherence to security best practices for custom software, open-source software (OSS), and APIs.
- Ensure security across the entire SDLC process, including CI/CD tooling automation, container security, vulnerability management, design reviews, and internal application-pentest for new services and enhancements
- Threat modeling product design along with product engineering team
- Collaborate with key lines of business and engineering teams
- Act as a Security Champion
- Participate in the security incident detection and response process

What you'll need

- 5+ years of experience in securing applications on cloud-native environments and distributed systems, identifying and implementing security controls
- Background in offensive security, security testing, and security architecture
- Deep understanding of cloud-based (AWS and GCP mainly) infrastructure and security technologies
- Familiar with container ecosystems (docker, k8s, helm), and security best practices
- Proficient in at least one high-level programming language (Python, Goland)
- Experience designing and documenting security solutions architecture
- Strong interpersonal, verbal and writing communication skills as well as a strong sense of ownership and accountability

What We'd Like To See

- B.S. in Computer Science or related field - or equivalent experience
- Experience implementing security (GHAS, etc) into CI/CD tools such as Codefresh, ArgoCD, GitlabCI among others
- Deep understanding of cloud-native solutions, including IaC (Terraform), concepts and good practices
- Experience running end to end vulnerability management across applications and cloud infrastructure
- Familiar with encryption and secrets management technologies (Hashicorp Vault, AWS KMS, symmetric and asymmetric encryption)

Benefits

- Competitive compensation
- Stock options
- Prudent Insurance
- Onsite lunch & dinner
- Connectivity (mobile phone & internet) stipend
- Wellness perks
- Mac equipment
- Learning & development stipend
- Parental leave, including 6 weeks paternity leave

ASAPP is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, disability, age, or veteran status. If you have a disability and need assistance with our employment application process, please email us at [Confidential Information] to obtain assistance.



  • Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,25,000 - US$ 1,75,000 per year

    Job Title:Senior Security EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...

  • Security Engineer

    3 weeks ago


    india Altered Security Full time

    We are looking for talentedSecurity Engineersto join our team!Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information security training, cyber ranges, online labs and security assessments. We have trained more than 40000+...


  • Bengaluru, India AMD Full time

    Job Description WHAT YOU DO AT AMD CHANGES EVERYTHING At AMD, our mission is to build great products that accelerate next-generation computing experiences - from AI and data centers, to PCs, gaming and embedded systems. Grounded in a culture of innovation and collaboration, we believe real progress comes from bold ideas, human ingenuity and a shared passion...

  • Security Engineer

    3 days ago


    india Altered Security Full time

    We are looking for Security Engineers with following qualities to join our team at Altered Security:- Passionate about information security. - Ability to solve challenges. - Interest in new attack vectors and creating challenges. - Demonstrated experience in Windows and Active Directory security. - If you hold CRTP certification, it is a plus.Who should...

  • Security Engineer

    7 days ago


    india Altered Security Full time

    We are looking forSecurity Engineerswith following qualities to join our team at Altered Security:Passionate about information security. Ability to solve challenges. Interest in new attack vectors and creating challenges. Demonstrated experience in Windows and Active Directory security. If you hold CRTP certification, it is a plus.Who should apply:Very good...


  • Bengaluru, India Cloud Software Group Full time

    About This TeamYOU as a Lead Product Security Engineer will have the opportunity to collaborate with the brightest engineering minds and work on innovative product security areas.Job DescriptionYou are/have worked on Threat Modelling, Source Code Review, Penetration Testing and performing security analysis on existing or new products. Provide security...


  • Bengaluru, Karnataka, India Cloud Software Group Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    About This TeamYOU as a Lead Product Security Engineer will have the opportunity to collaborate with the brightest engineering minds and work on innovative product security areas.Job DescriptionYou are/have worked on Threat Modelling, Source Code Review, Penetration Testing and performing security analysis on existing or new products. Provide security...


  • India Interface.ai Full time

    Who We Are At interface.ai, we’re redefining the future of banking with AI. Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions. Our mission : To make banking effortless, intelligent, and profitable—enhancing...


  • India interface.ai Full time

    Who We Are At interface.ai, we’re redefining the future of banking with AI. Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions. Our mission: To make banking effortless, intelligent, and profitable—enhancing...


  • India Interface.ai Full time

    Who We AreAt interface.ai, we’re redefining the future of banking with AI. Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.Our mission:To make banking effortless, intelligent, and profitable—enhancing user...