Product Security Engineer

23 hours ago


bangalore, India techolution Full time

We are seeking a Product Security Engineer (White-Hat / Offensive Focus) with hands-on experience in offensive security and defensive engineering. The ideal candidate has worked on product-based platforms, secured systems during early-stage (0–1) development, and supported secure scaling to production and revenue-generating environments.This role requires a strong attacker mindset combined with the ability to design, implement, and operate security controls across applications, cloud infrastructure, and CI/CD pipelines.Title :Product Security Engineer Location: Hyderabad What You'll Do:Own product security across the entire lifecycle, from design and development to production and scale.Perform continuous penetration testing and ethical hacking on the product, including web applications, APIs, and cloud infrastructure.Identify, exploit, and validate real attack paths affecting product features, authentication flows, and business logic.Design and review IAM architecture for the product, ensuring least-privilege access while avoiding operational bottlenecks caused by poor IAM design.Secure GenAI / LLM-based product capabilities, including protection against prompt injection, data leakage, model misuse, and unauthorized access.Conduct threat modeling and security reviews for new product features and architectural changes.Build early incident detection and response capabilities to get first visibility when something goes wrong in production.Operate and improve SIEM/SOAR workflows, alerting, and investigations for the product environment.Perform forensic analysis and root-cause investigations across cloud environments (AWS, GCP, Azure).Partner closely with product engineering teams to ensure vulnerabilities are fixed permanently, not just reported.What You Bring:experience in product security, combining white-hat hacking and security engineering.Strong hands-on experience with pentesting, exploit validation, and vulnerability research on live products.Deep understanding of application, API, and cloud security in product environments.Proven expertise in IAM design, threat modeling, incident response, and security monitoring.Solid knowledge of standard vulnerabilities and security frameworks (OWASP Top 10, MITRE ATT&CK, NIST).Experience working with SIEM/SOAR and security telemetry in production systems.Scripting experience in Python or Bash.Preferred Skills:Experience securing SaaS or platform products, not consulting or service engagements.Exposure to DevSecOps and CI/CD security integration in product teams.Bug bounty or responsible disclosure experience.Security certifications (OSCP, OSWE, CEH) are a plus but not mandatory.If you're ready to make an impact and help build an elite tech team, apply now About Techolution:Techolution is a leading innovation AI Product development company on track to become one of the most admired brands in the world for "innovation done right". Our purpose is to harness our expertise in novel technologies to deliver more profits for our enterprise clients while helping them deliver a better human experience for the communities they serve. With that, we are now fully committed to helping our clients build the enterprise of tomorrow by making the leap from Lab Grade AI to Real World AI.In 2019, we won the prestigious Inc. 500 Fastest-Growing Companies in America award, only 4 years after its formation. In 2022, Techolution was honored with the "Best-in-Business" title by Inc. for "Innovation Done Right". Most recently, we received the "AIConics" trophy for being the Top AI Solution Provider of the Year at the AI Summit in New York.Let's give you more insightsSome videos you wanna watchLife at TecholutionGoogleNext 2023Ai4 - Artificial Intelligence Conferences 2023WaWa - Solving Food Wastage Saving lives - Brooklyn HospitalInnovation Done Right on Google CloudTecholution featured on Worldwide Business with KathyIrelandTecholution presented by ION World's GreatestVisit us @www.techolution.com : To know more about our revolutionary core practices and getting to know in detail about how we enrich the human experience with technology.



  • bangalore, India Eventus Security Full time

    Job Summary We are seeking an experienced Level 2 Technical Support Engineer to provide 24/7 support for cybersecurity products across multiple platforms. This is a product-based role (NOT SOC Analyst) focused on troubleshooting, configuration, and operational support for endpoint, email, and network security solutions , including EDR/XDR technologies from...

  • Security Engineer

    1 week ago


    bangalore, India Altered Security Full time

    We are looking for Security Engineers with following qualities to join our team at Altered Security: Passionate about information security. Ability to solve challenges. Interest in new attack vectors and creating challenges. Demonstrated experience in Windows and Active Directory security. If you hold CRTP certification, it is a plus. Who should apply: Very...


  • bangalore, India Astra Security Full time

    About Astra: Astra is a cybersecurity SaaS company that makes otherwise chaotic pentests a breeze with its one-of-a-kind AI-led offensive Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 15,000+ security tests. CTOs and CISOs love Astra because it helps them to achieve continuous security at scale,...


  • bangalore, India Insight Global Full time

    About the Role Insight Global is seeking a Product Security Engineer to join a leading global enterprise software company known for its cloud-based solutions that help businesses manage customer relationships, data and operations. In this role, you will guide our security initiatives across product design, development, and deployment. You’ll work closely...


  • bangalore, India Astra Security Full time

    About Astra: Astra is a cyber security SaaS company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from DevOps to...


  • bangalore, India Astra Security Full time

    About Astra: Astra is a cyber security SaaS company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from DevOps to...


  • bangalore, India Astra Security Full time

    About Astra: Astra is a cyber security SaaS company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from DevOps to...


  • bangalore, India Astra Security Full time

    About Astra: Astra is a cyber security SaaS company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from DevOps to...


  • bangalore, India Pocket FM Full time

    Sr. Product Security EngineerLocation: BengaluruExperience: 5+ yearsAbout Pocket FMPocket FM, founded in 2018, is India’s leading audio storytelling platform, transforming the way millions consume stories. Offering high-quality serialized content across genres such as Romance, Drama, Thriller, Fantasy, Sci-Fi, and Mythology in eight languages, Pocket FM...


  • bangalore, India Aviatrix Full time

    Job Title: Staff Engineer – Product Security Location: Bangalore, India Who We Are: For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security. Where current cybersecurity approaches focus on securing entry points to a trusted space, Aviatrix Cloud Native Security Fabric (CNSF) delivers runtime...