Security Engineer
24 hours ago
It's fun to work in a company where people truly BELIEVE in what they're doing
Job Description
Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software architecture and should be able to perform manual security code review. They need to be able to integrate security in the software development process with defense-in-depth strategies such as automated testing in CI/CD pipeline. A Product Security Engineer preferably needs to have a software development background and should have practical programming knowledge.
They will work very closely with our Software Engineering Team to implement Secure SDLC in Traveloka. They will also need to have proficiency in handling multiple projects based on different frameworks and groups.
Requirements
*Responsibilities*
- Carry out manual and automated review of source code to identify security vulnerabilities and risks
- Implement automated security testing tools (SAST, DAST, IAST) and their deployment within continuous integration systems
- Implement hardening and secure framework such as RASP, WAF, safe library, and security decorator functions
- Perform vulnerability assessment & penetration testing on web API, front-end service, internal RPC, and mobile application
- Attend design reviews and actively lead the discussions from a security standpoint
- Analyze possible security incident related to application security such as payment abuse or sensitive data exposure via web API
- Ensure that product security requirements are identified early on and are being baked into all projects
- Provide effective recommendations or patches to mitigate security vulnerabilities
- Develop in-house tools to integrate with SDLC and to track and derive security metrics
Qualifications
*Skills & Experience*
- Academic background in Computer Science or equivalent
- Relevant professional experience or extensive experience in security activities (e.g. CTF, bug bounty, security research, publications, blog)
- Practical knowledge of modern software development such as microservices, application containerization, REST architecture, object oriented programming, stateless/stateful authentication, and cloud platform
- Working knowledge of one or more of these programming languages: Java, JavaScript, Kotlin, C#, Objective-C, Swift
- Experience in security code review, vulnerability assessment, and penetration testing.
- Knowledge of common vulnerabilities such as OWASP Top 10 and CWE including business logic issue (e.g. IDOR)
Core skill set in two or more of the following areas:
JavaScript framework (e.g. React)
- Java framework (e.g. Spring)
- Android / iOS platform
- DevOps
- AWS
- Automation tool development
- Dynamic debugging
- Unit testing
- Algorithm & data structure
If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us
-
Lead Security Engineer
3 days ago
Greater Bengaluru Area, India KGEN Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCompany DescriptionVeriFi. That's what KGeN is building.The world's largest Verified Distribution Protocol—built on real users, built to accelerate your business's growth.Since its founding by global leaders in the consumer and gaming industries, KGeN has grown to become the dominant leader in the Global South. Today, we serve 38.9M+ consumers and boast...
-
Senior Security Engineer
7 days ago
Greater Bengaluru Area, India KGEN Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCompany DescriptionVeriFi. That's what KGeN is building.The world's largest Verified Distribution Protocol—built on real users, built to accelerate your business's growth.Since its founding by global leaders in the consumer and gaming industries, KGeN has grown to become the dominant leader in the Global South. Today, we serve 38.9M+ consumers and boast...
-
Security Engineer II
1 day ago
Bengaluru, Karnataka, India Safe Security Full time ₹ 6,00,000 - ₹ 18,00,000 per yearAt SAFE Security, our mission is bold and ambitious:We Will Build CyberAGI— a super-specialized system of intelligence that autonomously predicts, detects, and remediates threats. This isn't just a vision—it's the future we're building every day, with the best minds in AI, cybersecurity, and risk. At SAFE, we empower individuals and teams with the...
-
Lead Security Engineer, Bangalore
3 days ago
Greater Bengaluru Area, India Crossbow Cybersecurity Full time ₹ 15,00,000 - ₹ 25,00,000 per yearCompany DescriptionCrossbow is a leading cyber security consulting company that offers advisory services on compliance best practices for BFSI, Retail, and IT/ITES sectors.We help organizations achieve compliance with global information security standards such as PCI-DSS, GDPR, ISO 27001,ISO 22301, ISO 27701,ISO 27019,ISO 27018 and RBI SAR.Our strength lies...
-
Information Security Engineer
7 days ago
Greater Bengaluru Area, India Zzazz Full time ₹ 6,00,000 - ₹ 18,00,000 per yearPosition OverviewThe Senior Information Security Manager is responsible for designing, implementing, and overseeing the organization's information security strategy, ensuring that our systems, data, and assets remain protected against evolving cyber threats. This role requires a deep understanding of security frameworks, risk management, compliance...
-
AI Security Engineer
1 week ago
Greater Delhi Area, India Tumeryk Full time ₹ 9,00,000 - ₹ 12,00,000 per yearCompany DescriptionTumeryk is a security and governance platform tailored for Agentic AI infrastructure. We assist enterprises in discovering, securing, and governing AI agentic applications, chatbots, and large language models across their cloud and internal environments. Our offerings include AI Trust Score Guardrails for enforcing real-time controls, AI...
-
Offensive Security Engineer
1 day ago
Greater Delhi Area, India Tide Full time ₹ 10,000 - ₹ 60,000 per yearAbout TideAt Tide we help SMEs save time (and money) in the running of their businesses by not only offering business accounts and related banking services, but also a comprehensive set of highly usable and connected administrative solutions from invoicing to accounting.Tide is transforming the small business banking market with over 1.6 million globally...
-
Cloud Security Engineer
2 weeks ago
Greater Chennai Area, India Veltris Full time ₹ 9,00,000 - ₹ 12,00,000 per yearWhat You Will DoImplement cloud-based defense-in-depth controls for Cloud environments.Improve the cloud security posture by configuring guardrails like AWS Config, Guard Duty, Inspector, Security Hub, Security Control Policies, etc.,Develop cloud-based programs to detect possible vulnerabilities and risksDesign and Manage identity and access management and...
-
Cyber Security Engineer
3 weeks ago
Greater Hyderabad Area, India Insight Global Full timeTitle: Senior Cyber Security Engineer Location: Hyderabad, India, Hybrid 2 days a week Duration: Permanent Engagement Compensation: Pay Rate: Maximum of ₹46.92 LPA or$52,800 Must-Have Experience: Hands-on experience with Proofpoint email security Solid understanding and practical exposure to PKI infrastructure Familiarity with Cloudflare DNS , Web...
-
Service Engineer
1 week ago
Greater Chennai Area, India PETRA SAFETY AND SECURITY SOLUTIONS PRIVATE LIMITED Full time ₹ 6,00,000 - ₹ 12,00,000 per yearCompany DescriptionPETRA SAFETY AND SECURITY SOLUTIONS PRIVATE LIMITED is a safety and security solutions provider based in Chennai, Tamil Nadu, India. The company is dedicated to delivering advanced safety and security solutions to its clients. Located in the Greater Chennai Area, PETRA SAFETY AND SECURITY SOLUTIONS PRIVATE LIMITED focuses on ensuring the...