Senior Security Engineer

4 weeks ago


Bengaluru, Karnataka, India KreditBee Full time
Job Description

We are seeking a highly skilled Senior Security Engineer to join our team at KreditBee. As a key member of our security team, you will be responsible for ensuring the security of our broad range of environments, endpoints, and technologies.

Key Responsibilities:
  • Review and assess the company and third-party partners on overall security posture.
  • Oversee vulnerability scanning, testing, and validation and make tool/solution recommendations to the security team.
  • Guide and perform security activities including penetration testing and vulnerability analysis, audits and assessments, code review, static and dynamic testing, and ethical hacking.
  • Implementing code review processes and tooling and being a trusted advisor to the Engineering teams on secure coding practices.
  • Work closely with engineers to provide expert advice on secure SDLC (automated and manual code-review), Layer 7 security best practices, and ensuring the remediation of vulnerabilities.
  • Protect the company and its customers by identifying threats to user experience and user data while proposing mitigations and defenses.
  • Strong collaboration with Engineering, CloudOps and DevOps teams is essential.
  • Provide guidance on hardening end-points, containers, APIs, applications, operating systems (e.g., Linux) and AWS cloud environments.
  • Manage and review perimeter defenses, such as firewalls, WAF-s, and IDPS.
  • Participate as a key hands-on member in cybersecurity incident response and recovery activities.
  • Maintain knowledge and skills to keep up with the rapidly changing threat landscape.
  • Work collaboratively with internal and external departments, vendors, and other key stakeholders.
  • Be the SME for Application security process
  • Build the Security team
  • Manage work efforts end-to-end of the team
Requirements:
  • Ability to work with security tooling to find vulnerabilities in the code base and dependencies. Ability to work with Sonarcloud, dependabot or other vulnerability tools.
  • Ability to find out how to fix problems and provide support for engineers/developers on the team
  • Have an offensive mindset
  • Deep understanding of security fundamentals, including operating systems, networking, virtualization, identity and access management, and security countermeasures.
  • Strong understanding of Application Security testing, Oauth frameworks, OWASP top 10, and Penetration Testing.
  • Perform iterative threat and vulnerability assessments and pen tests for re-assessing throughout a products' lifetime.
  • In-depth knowledge of web technologies, protocols, web services, and interfaces required
  • Knowledge of penetration testing techniques, application security vulnerabilities, OWASP Top 10, SANS 25, CWE, etc. required
  • Deep understanding of security vulnerabilities and mitigations.
  • Familiarity using AWS Cloud Services (EC2, DynamoDB, API Gateway, RDS, Lambda, CloudFront, CloudFormation, CloudWatch, Route 53, etc.), micro services programming (AWS Lambda, Docker, etc.)
  • Deep understanding of OWASP Top 10 and CWE 25; with proven track record and experience in implementing and integrating remediation strategies
  • Excellent understanding of Cyber Security Operations and Incident Response processes.
  • Knowledge of TCP/IP network fundamentals
  • Knowledge of PCI/DSS and its technical controls
  • Experience with Firewall, IDS/IPS, WAF (Web Application Firewall) preferred
  • Strong working knowledge of Linux Operating Systems
  • Good working knowledge of Windows Operating Systems
  • Scripting skills (e.g., Perl, Python,Go, shell scripting).
  • Deep understanding of API security and its security posture
  • Knowledge of threat modeling or other risk identification techniques.
  • Solid understanding of the secure Software Development Lifecycle (sSDLC) best practices to include, but not limited to in IT and IT security testing methods and metrics, penetration testing, threat hunting, system security monitoring, incident response, technical policy monitoring, familiarity with Enterprise Risk Management, and internal/external audit principles and practices.
  • Experience with fuzzing, static and dynamic code analysis.
  • Ability to write fully functional exploits for common vulnerabilities such as simple stack overflow, cross-site scripting, or SQL injection.
  • Skills: Python, Shell Scripting, SSDLC, PERL, LINUX OS, API Security, TCP/IP Networking


  • Bengaluru, Karnataka, India RSA Security Full time

    Job OverviewAs a Senior Cloud Security Expert at RSA Security, you will play a pivotal role in shaping the architecture and technology strategy for our hybrid cloud and on-premise products. You will leverage your extensive experience in microservices design and backend services to drive innovation, lead complex projects, and mentor junior engineers.About the...

  • RSA Security Engineer

    4 weeks ago


    Bengaluru, Karnataka, India RSA Security Full time

    Job Title: RSA Security Engineer - Application Security ExpertJob Summary: We are seeking a highly skilled Application Security Engineer to join our team at RSA Security. As an Application Security Engineer, you will be responsible for designing and implementing secure software development lifecycle (SDLC) processes, identifying and mitigating security...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: Principal Security EngineerRSA Security is looking for a highly skilled Principal Security Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for designing, developing, and maintaining our flagship product, NetWitness, in the SIEM domain.ResponsibilitiesDesign, develop, and maintain features for a...


  • Bengaluru, Karnataka, India Kredivo Holdings Full time

    Job Title: Senior Security EngineerJob Summary:We are seeking a highly skilled Senior Security Engineer to join our dynamic team in Bangalore. As a key member of our Group Information Security team, you will play a pivotal role in proactively monitoring our systems and data, and responding to cyber threats.Responsibilities:Manage and optimize open-source...


  • Bengaluru, Karnataka, India Procore Technologies Full time

    Job Title: Senior Security EngineerJob Summary:We're seeking a highly skilled Senior Security Engineer to join our Cybersecurity department at Procore Technologies. As a key member of our team, you'll be responsible for ensuring the security infrastructure of our systems is maintained at the highest level of protection and efficiency.Key...


  • Bengaluru, Karnataka, India KreditBee Full time

    Job Title: Senior Security EngineerWe are seeking a highly skilled Senior Security Engineer to join our team at KreditBee. As a Senior Security Engineer, you will be responsible for ensuring the security of our broad range of environments, endpoints, and technologies. You will work closely with our engineering teams to provide expert advice on secure...


  • Bengaluru, Karnataka, India Oleria Security Full time

    About Oleria Security:Oleria Security provides adaptive and autonomous identity security solutions that help organizations accelerate at the pace of change, trusting that their data is protected. Our solutions enable organizations to have comprehensive visibility into their access posture and autonomously identify and mitigate access risks before they can be...


  • Bengaluru, Karnataka, India Oleria Security Full time

    About Oleria SecurityOleria provides cutting-edge identity security solutions that empower organizations to accelerate innovation and trust their data protection. Our comprehensive visibility into access posture enables autonomous identification and mitigation of risks before they can be exploited.Founded by seasoned cybersecurity veterans with decades of...


  • Bengaluru, Karnataka, India Motorola Solutions Full time

    Job Title: Senior Security EngineerMotorola Solutions is seeking a highly skilled Senior Security Engineer to join our team. As a key member of our Unified Communications group, you will be responsible for developing, deploying, and managing cybersecurity components that protect our SaaS Infrastructure running in Datacenter, Azure, and...


  • Bengaluru, Karnataka, India Aryaka Full time

    Job Title: Senior Network Security EngineerAbout the Role:We are seeking a highly skilled Senior Network Security Engineer to join our team at Aryaka. As a Senior Network Security Engineer, you will be responsible for conducting thorough security assessments of SASE products to identify vulnerabilities, weaknesses, and misconfigurations.Key...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: Senior Cloud ArchitectAt RSA Security, we are seeking a highly skilled Senior Cloud Architect to join our team. As a Senior Cloud Architect, you will play a pivotal role in shaping the architecture and technology strategy for our hybrid cloud and on-premise products.Key Responsibilities:Coding (30-40%): Engage in hands-on coding to address complex...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: Senior Cloud ArchitectJob Summary:We are seeking a highly skilled Senior Cloud Architect to join our team at RSA Security. As a Senior Cloud Architect, you will play a pivotal role in shaping the architecture and technology strategy for our hybrid cloud and on-premise products.Key Responsibilities:Coding (30-40%): Engage in hands-on coding to...


  • Bengaluru, Karnataka, India RSA Security Full time

    **Software Development Expertise**RSA Security is seeking a highly skilled Senior C++ Software Engineer to join our team. As a key member of our software development team, you will be responsible for designing, developing, and maintaining efficient C++ code.**Key Responsibilities**• Design and develop high-quality, reusable, and reliable C++ code.•...


  • Bengaluru, Karnataka, India Oleria Security Full time

    About Oleria Security:Oleria Security provides adaptive and autonomous identity security solutions that help organizations accelerate at the pace of change, trusting that their data is protected. Our comprehensive visibility into access posture and autonomous identification of access risks before they can be exploited enable organizations to pursue their...


  • Bengaluru, Karnataka, India RSA Security Full time

    About the Role:RSA Security seeks an experienced Senior Software Architect to lead the development of our platform infrastructure. As a key member of the Platform Engineering team, you will be responsible for designing and implementing scalable, reliable, and high-performance solutions that meet the needs of our product and its future growth.Key...


  • Bengaluru, Karnataka, India Flexera Software India LLP Full time

    Flexera is a pioneer in Hybrid ITAM and FinOps, providing award-winning, data-oriented SaaS solutions for technology value optimization (TVO). As a Senior Security Operations Engineer, you will be part of a team that helps customers save billions of dollars in wasted technology spend. Your role will involve detecting and responding to security incidents,...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Job Title: Data and Security SpecialistOverview:Andromeda Security is an early stage, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. You will have the opportunity to grow with the company and help secure enterprises from cloud security breaches. Job Responsibilities:We're looking for dreamers, coders, and hackers...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job SummaryAs a Senior Software Engineer at RSA Security, you will be responsible for designing, developing, and maintaining efficient, reusable, and reliable C++ code. You will work closely with the team to define and design new features, participate in code reviews, and investigate and debug complex issues. Additionally, you will work with product...


  • Bengaluru, Karnataka, India Zynga Full time

    Job Summary: We're seeking a Senior Security Engineer to join our team. As a key member, you'll assess and improve the security of our gaming applications. Your expertise will help ensure the integrity of our systems and protect player data.


  • Bengaluru, Karnataka, India RSA Security Full time

    Job SummaryThe Senior Cloud Architect will play a pivotal role in shaping the architecture and technology strategy for our hybrid cloud and on-premise products. As a key member of our team, you will leverage your extensive experience in microservices design and backend services to drive innovation, lead complex projects, and mentor junior engineers.Key...