Security Engineer

5 days ago


Bengaluru, Karnataka, India Signzy Full time ₹ 8,00,000 - ₹ 12,00,000 per year

Signzy is a digital trust system. We provide identification, background checks, forgery detection

and contract management systems which enable contracting in a trustable, safe, legal, and

convenient manner. Our biometric user authentication system and blockchain-based digital trail

ensure non-repudiation. This increases compliance and enforceability in the court of law. We

consist of a tech-savvy team and are backed by investors who are enthusiastic about creating

solutions with technology.

Working at Signzy

● At Signzy we breathe software and exploit the latest technologies to create the most

amazing products. We comprise a tech-savvy team and are backed by investors who are

enthusiastic about creating solutions using technology.

● Signzy is looking for an Security Engineer . If you think you have what it

takes to get the job done, this is an invitation to be a part of the future

JD for Security Engineer-1 Role

Responsibilities:

Application Security

  • Perform
    secure code reviews
    , threat modeling, and static/dynamic application security testing (SAST/DAST).
  • Integrate and maintain automated scanning tools (e.g., Semgrep, Snyk, Trivy, Gitleaks) in CI/CD pipelines.
  • Collaborate with developers to remediate vulnerabilities and embed security in SDLC.
  • Guide on secure architecture patterns (authentication, authorization, data encryption, API security, mobile app protections like SSL pinning and mTLS).

Infrastructure & Cloud Security

  • Harden cloud infrastructure (AWS/GCP/Azure), including IAM, VPC design, encryption, and network segmentation.
  • Implement infrastructure-as-code security checks for Terraform, Helm, and Kubernetes deployments.
  • Conduct
    internal and external penetration tests
    , configuration reviews, and vulnerability management for servers, containers, and endpoints.
  • Support continuous monitoring (WAF, SIEM, EDR/MDM) and incident response

Security Assessments & Compliance

  • Lead
    periodic security assessments
    : vulnerability assessments, penetration testing, firewall rule reviews, user-access audits, and network segmentation reviews.
  • Document findings, track remediation, and provide risk-based recommendations.
  • Assist with evidence gathering for ISO 27001, SOC 2, PCI-DSS, GDPR, and internal security audits.

Continuous Improvement

  • Research emerging threats (e.g., supply-chain attacks, npm/package ecosystem risks) and recommend mitigations.
  • Contribute to security runbooks, policies, and developer awareness sessions.

Qualification

Must Have

  • 2–4 years
    of experience in application or infrastructure security engineering.
  • Strong understanding of web/mobile security, OWASP Top 10, cloud security fundamentals, and Linux/Unix systems.
  • Hands-on experience with CI/CD pipelines and common security tools (SAST, DAST, container scanners, SIEM/EDR).
  • Hands-on with
    SAST/DAST tools
    (e.g., Burp Suite, OWASP ZAP, Semgrep, Fortify)
  • Knowledge of
    network & OS hardening
    (Linux, cloud workloads).
  • Experience with
    internal and external penetration testing
    methodologies.
  • Familiarity with common tools: Nmap, Metasploit etc.,
  • Hands on experience with Mobile application security testing [Android and iOS]
  • Familiarity with threat modeling frameworks (STRIDE, MITRE ATT&CK) and SBOM management.
  • Scripting or programming skills (Python, Go, Bash) for automation and custom tooling.
  • Should have fundamental knowledge of cloud environments
  • Security-first mindset with curiosity and analytical thinking.
  • Ability to review
    firewall rules, ACLs, and security groups
    for least-privilege.
  • Understanding of
    network segmentation
    and zero-trust principles.
  • Ability to translate complex vulnerabilities into actionable, developer-friendly guidance.
  • Collaborative approach to working with engineering, DevOps, and compliance teams.
  • Strong reporting & documentation skills (writing assessment reports).
  • Knowledge of security standards (ISO 27001, NIST 800-53, CIS Benchmarks).

Good to Have

  • Container & K8s Security
    : Familiarity with Trivy, Falco, Kubescape, Kyverno.
  • IaC Security
    : Experience with Terraform/CloudFormation scanning (Checkov, Tfsec).
  • DevSecOps Integration:
    Embedding security tests into CI/CD (GitLab, GitHub Actions, Jenkins).
  • Advanced API Security
    : Hands-on with API gateways (Kong, Apigee, AWS API Gateway) and WAF tuning.
  • Cloud-Native Security
    : Experience with GuardDuty, Security Hub, AWS Config, GCP SCC.
  • Emerging Areas
    : AI/ML model security.
  • Certifications
    (good-to-have, not must)
    : OSCP or Cloud Security certs (AWS Security Specialty).

  • Sales Engineer

    4 days ago


    Bengaluru, Karnataka, India Orca Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Location: India Big Ideas. Real People.At Orca, in the right environment and with the right team, talent has no boundaries. This team spirit, together with our drive to always aim high, has quickly earned us unicorn status and turned us into a global cloud security innovation leader. So if you're ready to join an amazing team of people who inspire each...


  • Bengaluru, Karnataka, India Skyhigh Security Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Job Title:Manager, Engineering - Data Engineering | Big Data | People ManagementAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and...

  • Principal Engineer

    1 day ago


    Bengaluru, Karnataka, India Safe Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    At SAFE Security, our mission is bold and ambitious:We Will Build CyberAGI— a super-specialized system of intelligence that autonomously predicts, detects, and remediates threats. This isn't just a vision—it's the future we're building every day, with the best minds in AI, cybersecurity, and risk. At SAFE, we empower individuals and teams with the...

  • Frontend Engineer

    7 days ago


    Bengaluru, Karnataka, India Oleria Security Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    About Oleria:Oleria provides adaptive and autonomous identity security solutions that help organizations accelerate at the pace of change, trusting that their data is protected. Oleria enables organizations to have comprehensive visibility into their access posture and autonomously identifies and mitigates access risks before they can be exploited. Founded...

  • Principal Engineer

    2 weeks ago


    Bengaluru, Karnataka, India Safe Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    At SAFE Security, our mission is bold and ambitious: We Will Build CyberAGI — a super-specialized system of intelligence that autonomously predicts, detects, and remediates threats. This isn't just a vision—it's the future we're building every day, with the best minds in AI, cybersecurity, and risk. At SAFE, we empower individuals and teams with the...

  • Principal Engineer

    1 day ago


    Bengaluru, Karnataka, India Safe Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    At SAFE Security, our mission is bold and ambitious: We Will Build CyberAGI — a super-specialized system of intelligence that autonomously predicts, detects, and remediates threats. This isn't just a vision—it's the future we're building every day, with the best minds in AI, cybersecurity, and risk. At SAFE, we empower individuals and teams with the...


  • Bengaluru, Karnataka, India Skyhigh Security Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Job Title:Staff Software Engineer QualityAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations...


  • Bengaluru, Karnataka, India Skyhigh Security Full time ₹ 1 - ₹ 2 per year

    Job Title:Software Development EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...

  • Security Engineer

    2 weeks ago


    Bengaluru, Karnataka, India Kapiva Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    About KapivaKapiva (Series-C funded) is on a journey of transformation — from being one of India's leading modern Ayurvedic nutrition brands to becoming a health-tech company that leverages technology to drive better health outcomes for millions of people across India and internationally.We believe the next wave of innovation in health will be driven by...


  • Bengaluru, Karnataka, India Skyhigh Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title:Staff DevOps EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have trusted...