Staff Security Engineer

1 day ago


Bengaluru, Karnataka, India Ethos Life Full time ₹ 15,00,000 - ₹ 20,00,000 per year

About the Role:

We're looking for a Senior Security Engineer with deep technical expertise in application security, penetration testing, and offensive security practices. You will lead efforts to proactively identify and exploit vulnerabilities across our products and infrastructure, working alongside engineering and security teams to design robust defences and build security into everything we deploy.

This is a hands-on technical role with significant influence over the security posture of the company, from code to cloud.

Duties and Responsibilities: Application Security
  • Perform code reviews, threat modelling, and architecture assessments across internal and customer-facing applications.
  • Guide engineering teams on secure design patterns, libraries, and development practices.
  • Integrate and maintain security tooling (SAST, DAST, SCA) into CI/CD pipelines.
  • Collaborate with product and engineering teams to remediate identified vulnerabilities and design secure solutions.

Penetration Testing

  • Conduct manual and automated penetration tests against Ethos Web Application, APIs, infrastructure, and cloud environments.
  • Simulate attacker behaviors to assess technical weaknesses and business risks.
  • Create detailed, developer-friendly reports with risk ratings and actionable remediation guidance.
  • Re-test findings and validate security fixes in collaboration with product owners.

Offensive Security

  • Plan and execute red team operations, simulating advanced persistent threat (APT) scenarios.
  • Develop custom tools, scripts, and exploits to test detection and response capabilities.
  • Collaborate to improve detection, logging, and incident response based on attack insights.
  • Contribute to the development of offensive security playbooks and adversary emulation plans.

Other Responsibilities

  • Mentor junior team members and evangelize security best practices across the company.
  • Participate in investigations, threat hunting, and incident response activities; build playbooks for specific incident response scenarios
  • Communicate risks to engineering staff through training and technical demonstration of vulnerabilities and secure design patterns
  • Support security audits, compliance efforts, and executive briefings with technical depth.
Qualifications and Skills: Required:
  • 5 years of experience in security engineering, penetration testing, or offensive security.
  • Strong understanding of secure coding principles, web security vulnerabilities (e.g., OWASP Top 10), and remediation techniques.
  • Proficiency in threat modeling, design reviews and security testing of various types of applications, technologies and platforms
  • Proficient in scripting and development (e.g., Python, Bash, Go, JavaScript).
  • Skilled in using tools such as Burp Suite, Metasploit, Nmap, Cobalt Strike, or custom tooling.
  • Experience with AWS cloud platform and containerized environments (Docker, Kubernetes).
  • Strong written and verbal communication skills for technical and non-technical audiences.

Preferred:
  • Certifications like OSCP, OSWE, OSEP, GXPN, or equivalent.
  • Experience with threat modeling methodologies (e.g., STRIDE, PASTA).
  • Familiarity with MITRE ATT&CK, adversary emulation, and purple teaming.
  • Contributions to security research, open-source tools, or bug bounty platforms.

  • Staff Engineer

    3 days ago


    Bengaluru, Karnataka, India Rubrik Security Cloud Full time US$ 1,50,000 - US$ 2,00,000 per year

    Staff Engineer, Rubrik Security AppsBangalore, IndiaAbout Team:The Rubrik Security Apps team helps customers secure their data on the cloud, SaaS and on-prem. Data is growing at an ever growing pace and so are the risks with cyber attacks targeted towards cloud data. We make it easy for businesses to protect, search, analyze all of their data simply and...

  • Staff Engineer

    4 days ago


    Bengaluru, Karnataka, India Safe Security Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    At SAFE Security, our vision is to be the Champions of a Safer Digital Future and the Catalysts of Change. We believe in empowering individuals and teams with the freedom and responsibility to align their goals, ensuring we all move forward together We operate with radical transparency, autonomy, and accountability—there's no room for brilliant jerks. We...


  • Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,25,000 - US$ 1,75,000 per year

    Job Title:Senior Security EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...


  • Bengaluru, Karnataka, India Ethos Life Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    About EthosEthos was built to make it faster and easier to get life insurance for the next million families. Our approach blends industry expertise, technology, and the human touch to find you the right policy to protect your loved ones. We leverage deep technology and data science to streamline the life insurance process, making it more accessible and...


  • Bengaluru, Karnataka, India Ethos Life Full time US$ 1,20,000 - US$ 2,00,000 per year

    About EthosEthos was built to make it faster and easier to get life insurance for the next million families. Our approach blends industry expertise, technology, and the human touch to find you the right policy to protect your loved ones.We leverage deep technology and data science to streamline the life insurance process, making it more accessible and...


  • Bengaluru, Karnataka, India Palo Alto Networks Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    We are looking for a dynamic and highly technical Network Security engineer to join our fast-paced, high-growth organization. This role requires expertise in Network Security products and services. The ideal candidate will drive the architecture, implementation and support of network security solutions. This individual will collaborate closely with...


  • Bengaluru, Karnataka, India Greenlight Full time US$ 1,50,000 - US$ 2,00,000 per year

    Greenlightis the leading family fintech company on a mission to help parents raise financially smart kids. We proudly serve more than 6 million parents and kids with our award-winning banking app for families. With Greenlight, parents can automate allowance, manage chores, set flexible spend controls, and invest for their family's future. Kids and teens...


  • Bengaluru, Karnataka, India Revenera Full time

    Revenera helps product executives build better products accelerate time to value and monetize what matters Reveneras leading solutions help software and technology companies drive top line revenue with modern software monetization understand usage and compliance with software usage analytics empower the use of open source with software composition...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Distributed Systems Development Engineer  Summary:  We are a stealth startup, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. You will have the opportunity to grow with the company and help secure enterprises from cloud security breaches.  Job Description:  Looking for dreamers, coders, hackers who want to...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Distributed Systems Development Engineer  Summary:  We are a stealth startup, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. You will have the opportunity to grow with the company and help secure enterprises from cloud security breaches.  Job Description:  Looking for dreamers, coders, hackers who want to...