Security Research Engineer
1 day ago
Harness is a high-growth company that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers' pace of innovation while improving the developer experience. We offer solutions for every step of the software delivery lifecycle to build, test, secure, deploy and manage reliability, feature flags and cloud costs. The Harness Software Delivery Platform includes modules for CI, CD, Cloud Cost Management, Feature Flags, Service Reliability Management, Security Testing Orchestration, Chaos Engineering, Software Engineering Insights and continues to expand at an incredibly fast pace. Harness is led by technologist and entrepreneur Jyoti Bansal, who founded AppDynamics and sold it to Cisco for $3.7B. We're backed with $425M in venture financing from top-tier VC and strategic firms, including J.P. Morgan, Capital One Ventures, Citi Ventures, ServiceNow, Splunk Ventures, Norwest Venture Partners, Adage Capital Partners, Balyasny Asset Management, Gaingels, Harmonic Growth Partners, Menlo Ventures, IVP, Unusual Ventures, GV (formerly Google Ventures), Alkeon Capital, Battery Ventures, Sorenson Capital, Thomvest Ventures and Silicon Valley Bank.Key ResponsibilitiesContribute to research on modern attack vectors across source code, dependencies, build systems, and CI/CD pipelines.Assist in developing scanning and detection techniques for SAST, SCA, and DAST to identify security flaws early in the development process.Perform hands-on assessments of web applications, APIs, and build pipelines under guidance to uncover design flaws, misconfigurations, and dependency risks.Study software supply chain threats and contribute to identifying and mitigating risks across open-source ecosystems.Perform hands-on assessments of code, applications, APIs, and build pipelines under guidance to uncover design flaws, misconfigurations, and security risks.Help build and test prototype tools that automate vulnerability detection and developer workflow integration.Collaborate with research, product, and engineering teams to validate findings and implement security improvements in developer environments.Stay current with new vulnerabilities, frameworks, and DevSecOps practices to identify emerging threats relevant to modern software delivery.Document findings and share insights through internal reports, knowledge bases, or external blog drafts.Required Skills & ExperienceBachelor's degree in Computer Science, Cybersecurity, or a related field (or equivalent practical experience).1 - 4 years of experience application security or security researchFoundational understanding of Shift-Left Security concepts such as SAST, SCA, and DAST.Understanding of CI/CD pipelines, build systems, and developer workflows.Interest in AI and LLM models, and curiosity about how they impact software security (e.g., insecure code generation, data leakage, dependency risks).Familiarity with dependency management ecosystems (npm, PyPI, Maven, Go modules) and basic knowledge of software supply chain risks.Passion for research, security, and continuous learning, with a never-give-up attitude.Knowledge of OWASP Top 10, API Top 10, LLM Top 10, CI/CD Top 10.Strong analytical mindset with curiosity for exploring how attackers exploit weaknesses in code and pipelines.Proficiency in Java and Python for prototyping and automating rule validation workflows.Excellent communication, documentation, and cross-functional collaboration skills.Nice to HaveContributions to open-source security projects, especially those related to the OWASP Top 10 or OWASP API Top 10.Experience developing custom WAF/WAAP rule engines, threat classifiers, or signal correlation pipelines.Background in API security, runtime protection, or detection engineering at scale.Authored publications, technical blogs, or delivered conference talks. Harness in the news:Harness AI Tackles Software Development's Real BottleneckAfter 'Vibe Coding' Comes 'Vibe Testing' (Almost)Startup Within a Startup: Empowering Intrapreneurs for Scalable Innovation - Jyoti Bansal (Harness)Jyoti Bansal, Harness | theCUBEd AwardsEight years after selling AppDynamics to Cisco, Jyoti Bansal is pursuing an unusual mergerHarness snags , as it goes all in on feature flags and experimentsExclusive: Jyoti Bansal-led Harness has raised $150 million in debt financingAll qualified applicants will receive consideration for employment without regard to race, color, religion, sex or national origin.Note on Fraudulent Recruiting/OffersWe have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers. Please note, we do not ask for sensitive or financial information via chat, text, or social media, and any email communications will come from the domain Additionally, Harness will never ask for any payment, fee to be paid, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Harness, please do not provide any personal or financial information and contact us immediately at You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission's website ), or you can contact your local law enforcement agency.
-
Security Researcher
2 weeks ago
Bangalore Division, India Vehere Full timeJob Summary: We are seeking a seasoned Security Researcher with deep expertise in malware analysis, reverse engineering, and cloud threat research. The ideal candidate will have extensive hands-on experience analyzing advanced malware, uncovering TTPs (Techniques, Tactics, and Procedures) used by threat actors, and aligning their findings with the MITRE...
-
Senior Security Engineer – Cloud, AI
5 days ago
bangalore, India Symosis Security Full timeLocation: Remote (India)Type: Full-TimeCompany: Symosis SecurityAbout Symosis SecuritySymosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise with practical execution—supporting clients across threat modeling,...
-
Senior Security Engineer
5 days ago
bangalore, India Symosis Security Full timeLocation : Remote (India) Type : Full-Time Company : Symosis Security About Symosis Security Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise with practical execution—supporting clients across threat modeling,...
-
Senior Security Engineer – AI, Cloud
7 days ago
bangalore, India Symosis Security Full timeLocation: Remote (India)Type: Full-TimeCompany: Symosis SecurityAbout Symosis SecuritySymosis is a cybersecurity consulting firm purpose-built for the AI-native, cloud-first era. We help public-sector and enterprise clients mature their security operations through managed services, offensive testing, governance, and automation. We’re expanding our MSSP...
-
Security Researcher
2 weeks ago
Bangalore, Karnataka, India Trellix Full timeJob Title Security Researcher About Trellix Trellix the trusted CISO ally is redefining the future of cybersecurity and soulful work Our comprehensive GenAI-powered platform helps organizations confronted by today s most advanced threats gain confidence in the protection and resilience of their operations Along with an extensive partner ecosystem we...
-
Senior Security Researcher
3 days ago
Bangalore, IND, India Zscaler Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout ZscalerServing thousands of enterprise customers around the world including 45% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world's largest security cloud, Zscaler accelerates digital...
-
Senior Security Researcher
13 hours ago
Bangalore, IND, India Zscaler Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout ZscalerZscaler accelerates digital transformation so our customers can be more agile, efficient, resilient, and secure. Our cloud native Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.Here, impact in your role matters more than title...
-
Security Researcher – Telecom
1 day ago
bangalore, India Sec1 Full timeSec1 is an AI-driven cybersecurity company specialising in application and cloud security, vulnerability analytics and predictive threat intelligence. We partner with global enterprises to secure their software supply chains, network infrastructure and telecom ecosystems through data-driven vulnerability research and intelligent automation.Role OverviewWe...
-
Senior Staff Security Researcher
6 days ago
Bangalore, IND, India Zscaler Softech Full time ₹ 12,00,000 - ₹ 24,00,000 per yearSenior Staff Security Researcher- Mac/IOS, Reverse Engineering About Zscaler Serving thousands of enterprise customers around the world including 45% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the...
-
Information Technology Support Engineer
2 weeks ago
bangalore, India MS CLINICAL RESEARCH Full timePosition: Software Engineer/ IT Support Engineer – Clinical ResearchDepartment: IT / Research TechnologyLocation: Indiranagar, BangaloreEmployment Type: Full-time/ ConsultantExperience: 2-4 yearsJob SummaryWe are seeking a Software Engineer / IT Support Engineer to support technology systems used in clinical research and pharmacovigilance operations. The...