Senior Product Security Engineer

3 days ago


bangalore, India Pocket FM Full time

Sr. Product Security EngineerLocation: BengaluruExperience: 5+ yearsAbout Pocket FMPocket FM, founded in 2018, is India’s leading audio storytelling platform, transforming the way millions consume stories. Offering high-quality serialized content across genres such as Romance, Drama, Thriller, Fantasy, Sci-Fi, and Mythology in eight languages, Pocket FM has built a strong global presence with over 200 million listeners worldwide. With users spending an average of 120 minutes daily on the platform, it has emerged as one of the fastest-growing audio platforms, rapidly expanding its reach across the US, Europe, LATAM, and Southeast Asia.Role OverviewAs a key member in product security, you will play a pivotal role in championing security throughout the entire product development lifecycle. You will collaborate with engineering, product management, and other stakeholders to identify and mitigate security risks, ensuring our products are built with security and compliance in mind.ResponsibilitiesLead and participate in security assessments, threat modeling, and penetration testing activities for new and existing products.Define and implement a comprehensive product security strategy, aligning it with business objectives and industry best practices.Develop and maintain secure coding practices and security engineering standards for the development team.Automate repetitive processes and write internal tools to boost productivity and visibilityFoster a culture of security awareness within product teams and educate them on security best practices.Collaborate with product managers to integrate security considerations into the product development lifecycle.Stay up-to-date on the latest security threats and vulnerabilities and proactively address them.Manage and prioritize product security vulnerabilities, working with engineering teams to implement effective remediation plans.Develop and maintain security documentation, including threat models,security requirements, and incident response plans.Track and report on product security metrics and communicate the security posture of products to stakeholders.May participate in security incident response activities and provide guidance on mitigation strategies.RequirementsMinimum 5+ years of experience in product security or a related field.Proven experience in security assessments, threat modeling, code reviews, and penetration testing methodologies.Hands-on experience on security of content and PII will be an added advantage. In-depth understanding of secure coding practices and secure software development life cycle (SDLC) principles.Scripting experience in Bash, Python, etc.Experience in AWS/GCP infrastructure security will be an added advantageExcellent communication, collaboration, and interpersonal skills with the ability to effectively influence cross-functional teams.Strong analytical and problem-solving skills.Ability to prioritize tasks and manage multiple projects simultaneously.A passion for building secure products and fostering a security-conscious culture.Experience with common security tools and frameworks (e.g., OWASP, CWE) a plus.Certifications in security (e.g., OSCP) is a plus.You can get more updates, insights and everything behind the scenes at Pocket FM here - Pocket FM



  • bangalore, India Eventus Security Full time

    Job Summary We are seeking an experienced Level 2 Technical Support Engineer to provide 24/7 support for cybersecurity products across multiple platforms. This is a product-based role (NOT SOC Analyst) focused on troubleshooting, configuration, and operational support for endpoint, email, and network security solutions , including EDR/XDR technologies from...

  • Security Engineer

    1 week ago


    bangalore, India Altered Security Full time

    We are looking for Security Engineers with following qualities to join our team at Altered Security: Passionate about information security. Ability to solve challenges. Interest in new attack vectors and creating challenges. Demonstrated experience in Windows and Active Directory security. If you hold CRTP certification, it is a plus. Who should apply: Very...


  • bangalore, India Astra Security Full time

    About Astra: Astra is a cybersecurity SaaS company that makes otherwise chaotic pentests a breeze with its one-of-a-kind AI-led offensive Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 15,000+ security tests. CTOs and CISOs love Astra because it helps them to achieve continuous security at scale,...


  • Bangalore, Karnataka, India Rippling Full time

    Rippling gives businesses one place to run HR IT and Finance It brings together all of the workforce systems that are normally scattered across a company like payroll expenses benefits and computers For the first time ever you can manage and automate every part of the employee lifecycle in a single system Take onboarding for example With Rippling you can...


  • bangalore, India Razorpay Full time

    Title: Senior Product Security Security Engineer The Role: Razorpay is looking for a Senior Application Security Engineer with solid experience in AppSec fundamentals—secure code review, vulnerability discovery, API security, and practical pentesting skills. The ideal candidate should also be able to perform basic threat modeling for new features and...


  • bangalore, India Aviatrix Full time

    Job Title: Staff Engineer – Product Security Location: Bangalore, India Who We Are: For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security. Where current cybersecurity approaches focus on securing entry points to a trusted space, Aviatrix Cloud Native Security Fabric (CNSF) delivers runtime...


  • bangalore, India Aviatrix Full time

    Job Title: Staff Engineer – Product Security Location: Bangalore, India Who We Are: For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security. Where current cybersecurity approaches focus on securing entry points to a trusted space, Aviatrix Cloud Native Security Fabric (CNSF) delivers runtime...


  • bangalore, India Aviatrix Full time

    Job Title: Staff Engineer – Product Security Location: Bangalore, India Who We Are: For enterprises struggling to secure cloud workloads, Aviatrix offers a single solution for pervasive cloud security. Where current cybersecurity approaches focus on securing entry points to a trusted space, Aviatrix Cloud Native Security Fabric (CNSF) delivers runtime...


  • bangalore, India Insight Global Full time

    About the Role Insight Global is seeking a Product Security Engineer to join a leading global enterprise software company known for its cloud-based solutions that help businesses manage customer relationships, data and operations. In this role, you will guide our security initiatives across product design, development, and deployment. You’ll work closely...


  • bangalore, India Razorpay Full time

    Title: Senior Product Security Security EngineerThe Role:Razorpay is looking for a Senior Application Security Engineer with solid experience in AppSec fundamentals—secure code review, vulnerability discovery, API security, and practical pentesting skills. The ideal candidate should also be able to perform basic threat modeling for new features and...