
Lead Security Engineer
15 hours ago
Who We Are
At interface.ai, we’re redefining the future of banking with AI. Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.
Our mission:
To make banking effortless, intelligent, and profitable—enhancing user experience while boosting revenue and efficiency for financial institutions.
We’re not just another AI company. Our proprietary AI, built 100% in-house, is designed for zero-shot learning, achieving 90%+ accuracy on Day 1. With a world-class team from Microsoft, ISB, and IIMs, and a 1,800% growth rate in the last year, we’re shaping the future of AI in financial services.
Join us to build something transformative.
Careers - https://interface.ai/open-positions
LinkedIn - https://www.linkedin.com/company/interface-ai/
Role – Lead Security Engineer
About the Role
We are seeking a Lead Security Engineer to own and scale our Application and Cloud Security programs. You will be responsible for designing and enforcing security best practices across our codebase, cloud infrastructure, development lifecycle, and production environments.
This role will partner closely with engineering, product, and compliance teams to embed security into every stage of our build, deploy, and delivery processes. You are expected to drive a shift-left security culture, where secure design, secure development, and proactive detection are core to how we build and operate.
Key Responsibilities
Application Security
- Perform security assessments across our application stack, including threat modeling, code reviews, dynamic scanning, and penetration testing.
- Build and maintain secure SDLC practices, including integration of security checks into CI/CD pipelines.
- Guide teams in secure design patterns, including secure authentication, input validation, access control, session management, and secure storage.
- Continuously monitor and remediate vulnerabilities in source code and dependencies (SCA, SAST, DAST).
- Partner with engineering teams to define and enforce coding standards aligned with OWASP and CWE guidelines.
Cloud & Infrastructure Security
- Design and maintain secure configurations for AWS environments, including networking, identity management (IAM), encryption, and logging.
- Implement and manage security services such as GuardDuty, Inspector, Security Hub, and other cloud-native tools.
- Define and enforce infrastructure-as-code (IaC) security controls using tools such as Terraform, CloudFormation, or policy-as-code frameworks (e.g., OPA, Sentinel).
- Lead efforts in runtime protection, including workload scanning, intrusion detection, and anomaly alerting.
- Ensure centralized, secure log collection, monitoring, and alerting across all infrastructure components.
Security Architecture & Best Practices
- Champion a shift-left approach to security—collaborating with developers early in the SDLC and providing actionable feedback during design, build, and review phases.
- Collaborate with product managers and infrastructure leads to ensure security is embedded into architectural decisions, particularly for high-risk features or regulated workflows.
- Define and promote secure defaults, least-privilege access, and zero-trust architectural principles.
- Ensure strong key management and encryption standards are applied across data at rest, in transit, and in use.
Governance, Risk & Compliance
- Support compliance initiatives by building and documenting enforceable security controls.
- Work with auditors and risk teams to demonstrate maturity of security processes and ongoing improvements.
- Establish internal security policies, operational procedures, and regular audit activities.
What We Expect
- Lead the adoption of security by design across engineering functions.
- Embed continuous security testing into our CI/CD pipelines.
- Maintain a developer-centric approach to security—minimizing friction while enforcing strong protections.
- Build scalable policies and automation for secrets management, code signing, and environment hardening.
- Keep pace with evolving security threats, technologies, and tools, proactively updating controls and detection mechanisms.
- Represent security posture to executive and customer stakeholders with clarity and confidence.
What You Bring
Required
- 6+ years of experience in security engineering with a primary focus on application and cloud security
- Proficiency with programming languages like, Java, Python, JavaScript and web technologies (e.g., HTML, CSS, SQL).
- In-depth knowledge of application security vulnerabilities, threat modeling, and SDLC integrations
- Deep familiarity with Cloud security architecture and services (AWS - IAM, VPC, KMS, GuardDuty, CloudTrail, etc.)
- Experience with DevSecOps tools and practices, including SAST, DAST, container scanning, and infrastructure scanning
- Hands-on experience in implementing industry best practices in access control, encryption, and security observability
- Excellent communication skills, with the ability to collaborate across engineering, product, and compliance teams
- Bachelor's degree in Computer Science, Information Security, or a related field.
Preferred
- Experience in high-compliance industries such as financial services, healthcare, or government
- Familiarity with policy-as-code, secrets management tools, and container security
- Certifications such as OSCP, AWS Security Specialty, or CISSP
Why Join Us?
- Remote-first culture – Work from anywhere, with top-tier colleagues.
- Security is not a checkbox—it is fundamental to our success and product trust.
- You will be empowered to define best-in-class standards that scale across financial AI products, and dynamic customer environments.
- You will work in an organization that values speed and security, backed by a world-class engineering team and product-first culture.
- Be at the forefront of AI innovation – Build game-changing products that shape the financial industry.
- High ownership, high impact – Your work will define the future of banking.
- Comprehensive Benefits – We take care of our people.
Ready to lead with impact? Apply now.
-
Lead Security Engineer
16 hours ago
bangalore, India Arcana Full timeAs our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden infrastructure end-to-end. While your primary focus will be on our GCP resources, you'll also partner with teams across networking, applications, and compliance...
-
Lead Security Engineer
1 day ago
Bangalore, India Arcana Full timeAbout Arcana Arcana is on a mission to revolutionize the investing landscape, empowering the world's top institutions to make high-stakes decisions with confidence. Our cutting-edge software and data platform processes millions of data points every minute, delivering lightning-fast computations and insights with unmatched precision. Built to tackle...
-
Lead Security Engineer
8 hours ago
Bangalore, India Arcana Full timeAbout Arcana Arcana is on a mission to revolutionize the investing landscape, empowering the world's top institutions to make high-stakes decisions with confidence. Our cutting-edge software and data platform processes millions of data points every minute, delivering lightning-fast computations and insights with unmatched precision. Built to tackle...
-
Lead Security Engineer
15 hours ago
bangalore, India Arcana Full timeAbout ArcanaArcana is on a mission to revolutionize the investing landscape, empowering the world's top institutions to make high-stakes decisions with confidence. Our cutting-edge software and data platform processes millions of data points every minute, delivering lightning-fast computations and insights with unmatched precision. Built to tackle the most...
-
Senior Compliance Engineer
1 day ago
Bangalore, India Skyhigh Security Full timeAbout Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them...
-
Senior Compliance Engineer
8 hours ago
Bangalore, India Skyhigh Security Full timeAbout Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them...
-
Senior Compliance Engineer
14 hours ago
bangalore, India Skyhigh Security Full timeAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them with a...
-
Senior Compliance Engineer
1 day ago
Bangalore, India Skyhigh Security Full timeAbout Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. Since 2011, organizations have trusted us to provide them with a complete, market-leading security platform built on a modern cloud stack....
-
Lead - Cloud Security Engineer
11 hours ago
Bangalore, Karnataka, India Freshworks Full timeCompany Description Organizations everywhere struggle under the crushing costs and complexities of solutions that promise to simplify their lives To create a better experience for their customers and employees To help them grow Software is a choice that can make or break a business Create better or worse experiences Propel or throttle growth ...
-
Security Engineer
1 day ago
Bangalore, India redBus Full timeWe are looking for a Security Engineer to join our cybersecurity team and strengthen redBus defence against evolving cyber threats. This role involves monitoring, analysing, and responding to security incidents while continuously improving our security framework. The ideal candidate will have 7–10 years of experience in Security Operations, with deep...