
Product Security Engineer
24 hours ago
Job DescriptionProduct Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software architecture and should be able to perform manual security code review. They need to be able to integrate security in the software development process with defense-in-depth strategies such as automated testing in CI/CD pipeline. A Product Security Engineer preferably needs to have a software development background and should have practical programming knowledge.They will work very closely with our Software Engineering Team to implement Secure SDLC in Traveloka. They will also need to have proficiency in handling multiple projects based on different frameworks and groups.ResponsibilitiesCarry out manual and automated review of source code to identify security vulnerabilities and risksImplement automated security testing tools (SAST, DAST, IAST) and their deployment within continuous integration systemsImplement hardening and secure framework such as RASP, WAF, safe library, and security decorator functionsPerform vulnerability assessment & penetration testing on web API, front-end service, internal RPC, and mobile applicationAttend design reviews and actively lead the discussions from a security standpointAnalyze possible security incident related to application security such as payment abuse or sensitive data exposure via web APIEnsure that product security requirements are identified early on and are being baked into all projectsProvide effective recommendations or patches to mitigate security vulnerabilitiesDevelop in-house tools to integrate with SDLC and to track and derive security metricsSkills & ExperienceAcademic background in Computer Science or equivalentRelevant professional experience or extensive experience in security activities (e.g. CTF, bug bounty, security research, publications, blog)Practical knowledge of modern software development such as microservices, application containerization, REST architecture, object oriented programming, stateless/stateful authentication, and cloud platformWorking knowledge of one or more of these programming languages: Java, JavaScript, Kotlin, C#, Objective-C, SwiftExperience in security code review, vulnerability assessment, and penetration testing.Knowledge of common vulnerabilities such as OWASP Top 10 and CWE including business logic issue (e.g. IDOR)Core skill set in two or more of the following areas:JavaScript framework (e.g. React)Java framework (e.g. Spring)Android / iOS platformDevOpsAWSAutomation tool developmentDynamic debuggingUnit testingAlgorithm & data structureIf you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us
-
Product Security Engineer
2 days ago
Bangalore, India Traveloka Full timeJob Description Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software...
-
Product security engineer
2 weeks ago
Bangalore, India Traveloka Full timeJob Description Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software...
-
Product security engineer
2 days ago
Bangalore, India Traveloka Full timeJob Description Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software...
-
Product Security Engineer
3 weeks ago
Bangalore, India Traveloka Full timeJob Description Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software...
-
Technical product manager
2 weeks ago
Bangalore, India Astra Security Full timeAbout Astra: Astra is a cyber security Saa S company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from Dev...
-
Technical product manager
2 days ago
Bangalore, India Astra Security Full timeAbout Astra: Astra is a cyber security Saa S company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from Dev Ops to...
-
Technical Product Manager
2 weeks ago
Bangalore, India Astra Security Full timeAbout Astra: Astra is a cyber security SaaS company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from...
-
Technical Product Manager
2 weeks ago
Bangalore, India Astra Security Full timeAbout Astra: Astra is a cyber security SaaS company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from...
-
Technical Product Manager
2 weeks ago
bangalore, India Astra Security Full timeAbout Astra: Astra is a cyber security SaaS company that makes otherwise chaotic pentests a breeze with its one of a kind Pentest Platform. Astra's continuous vulnerability scanner emulates hacker behavior to scan applications for 9300+ security tests. CTOs & CISOs love Astra because it helps them fix vulnerabilities in record time and move from DevOps to...
-
Staff Engineer
1 week ago
Bangalore, India Aviatrix Full timeStaff Engineer – Product Security Location: For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security. Where current cybersecurity approaches focus on securing entry points to a trusted space, Aviatrix Cloud Native Security Fabric (CNSF) delivers runtime security and enforcement within the cloud...