Current jobs related to Senior Security Engineer - Bengaluru, Karnataka - Apna


  • Bengaluru, Karnataka, India Skyhigh Security Full time US$ 55,000 - US$ 1,10,000 per year

    Job Title:Senior DevOps Engineer - Maven | Python | Build Release Engineering | 5 to 8 yAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness...


  • Bengaluru, Karnataka, India Rubrik Security Cloud Full time

    About the Team & RoleThe Platform Security Engineering team is responsible for building innovative security features and frameworks for large scale data management products. We are looking for talented software engineers who are passionate about security, bring fresh ideas to the team and keep themselves updated with the leading industry principles and...


  • Bengaluru, Karnataka, India Procore Technologies Full time

    Job Description We're looking for a Senior Security Engineer to join Procore's Security Engineering team. In this role, you'll be a senior member of the team, responsible for building and running the foundational security controls that protect our platform, data, and users. Your primary goal is to build and maintain a secure, scalable, and resilient cloud...


  • Bengaluru, Karnataka, India 42Gears Mobility Systems Pvt Ltd Full time

    Bengaluru, India Full TimeRelevant Experience: 5 years of experienceWe are looking for an experienced candidate for the position of Senior Security Engineer who is responsible for performing comprehensive security assessments of thick-client applications and source code analysis across 42Gears products and related infrastructure. We are seeking a...


  • Bengaluru, Karnataka, India Procore Technologies Full time

    Job Description We're looking for a Senior Security Engineer to join Procore's Security Engineering team. In this role, you'll be a senior member of the team, responsible for building and running the foundational security controls that protect our platform, data, and users. Your primary goal is to build and maintain a secure, scalable, and resilient cloud...


  • Bengaluru, Karnataka, India Skyhigh Security Full time

    Job Title:Senior Software Development Engineer - C | Linux Kernel | Networking | 5-8yAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness...


  • Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    As a Senior Software Engineer (SSE) in the Continuous Product Development (CPD) team, you will play a key role in leading team(s) towards owning the roadmap, providing long-term stability, and providing delight to our enterprise customers. You will work closely with leadership and multiple stakeholders from other engineering teams, the Product and Support...


  • Bengaluru, Karnataka, India ZoomInfo Technologies Full time

    The Senior Security Engineer will be part of the Security department, reporting directly to the Director of Security Engineering. This is a crucial role which leads the company to higher cyber security maturity by translating the business needs and security requirements into cross-company initiatives.   What you'll do:Implement, operationalize, document...

  • Engineering Intern

    20 hours ago


    Bengaluru, Karnataka, India Skyhigh Security Full time

    Job Title:Engineering InternAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have trusted us...


  • Bengaluru, Karnataka, India Zamp Full time

    About Zamp:Mission -Zamp is not a company, we're a humanity catalyst. We're on a mission to enable people to move at the speed of thought.This decade, we're focused on building digital employees for the future of work, unlocking human creativity at a scale the world has never seen. We work with 50+ top global organizations and banks (including DoorDash,...

Senior Security Engineer

2 weeks ago


Bengaluru, Karnataka, India Apna Full time ₹ 12,00,000 - ₹ 36,00,000 per year
Job Title: Senior Security Engineer (Sr.SE )Location: Bengaluru
Employment Type: Full-time
Team: Security Engineering Role Overview

As a Senior Security Engineer, you will play a key role in strengthening the company's overall security posture across our AI platforms, microservices, data pipelines and mobile/web products. You will design, build and automate scalable security controls that integrate seamlessly into our CI/CD pipelines and cloud infrastructure.

This role demands a hands-on breaker-builder who can balance deep technical expertise with practical risk management, while collaborating with AI, product, and DevOps teams.

Key Responsibilities

Key Responsibilities

1. Security Engineering & Automation

  • Design and implement security automation frameworks for threat detection, remediation and compliance validation across cloud and application layers.
  • Develop tools and scripts to enhance security visibility in AI model pipelines, APIs and data integrations.
  • Integrate security controls into CI/CD workflows (SAST, DAST, SCA, IaC scanning).
  • Worked on XDR/SIEM for automated detection and response.

2. Application & API Security

  • Perform secure code reviews and threat modeling for AI microservices, REST APIs and agent frameworks.
  • Collaborate with developers to remediate vulnerabilities and enforce secure SDLC practices.
  • Lead periodic VAPT (Vulnerability Assessment & Penetration Testing) for web, mobile apps, Agentic AI platform and connected services. 
  • Identified and mitigated vulnerabilities such as OTP bypass, data leaks in public GCS buckets and source code exposure.

3. Cloud & Infrastructure Security

  • Secure multi-cloud (GCP/AWS) environments using native and third-party tools.
  • Build and maintain IaC security baselines and automated configuration drift detection.
  • Configure and manage WAF for custom DDoS and bot protection.
  • Manage secrets, IAM and container security best practices across production workloads.
  • Fix misconfigurations, default credentials, and public exposures across systems like Grafana, Zookeeper, and Prometheus.

4. AI & Data Security

  • Continuously monitor for compromised datasets, credentials, and model theft attempts in deep/dark web spaces.
  • Implement data protection mechanisms for AI training pipelines, model storage and inference endpoints.
  • Evaluate and mitigate prompt injection, model leakage and data exfiltration risks in AI agents.

5. Monitoring & Incident Response

  • Collaborate with internal teams to improve threat detection, alert triage and response automation.
  • Monitor dark web and forums like Telegram/Russian marketplaces for leaked data, compromised credentials, and fake breach claims.
  • Build dashboards and reports for proactive risk visibility.

6. Security Awareness & Leadership

  • Conduct internal security training and phishing simulations.
  • Mentor interns and engineers on VAPT, incident response, and secure coding.
  • Advocate for organization-wide adoption of DMARC, SPF, and DKIM for email protection.

7. Compliance & Governance

  • Conduct internal security training and phishing simulations.
  • Contribute to ISO 27001, SOC 2, GDPR and HIPAA security controls implementation.
  • Document policies, run internal audits and support external assessments.
  • Manage security communications with third-party vendors (Google Security, VisitHealth, PingSafe, etc.) and ethical disclosures.
Key Requirements
  • Experience: 5-6 years in application, cloud or product security engineering.
  • Strong programming/scripting in Python, Go or (for automation).
  • Deep understanding of web and mobile security, OWASP Top 10, and secure SDLC practices.
  • Hands-on experience with:
    • Cloud security (IAM, key management, configuration monitoring, threat detection and security monitoring using tools like CSPM, CASB, SIEM, etc.)
    • IaC tools (Terraform, CloudFormation)
    • CI/CD tools (GitHub Actions, Jenkins, GitLab CI)
    • Strong understanding of containers (Docker, Kubernetes, EKS/GKE)
  • Familiar with AI model security and data privacy principles (preferred).
  • Knowledge of compliance frameworks like ISO 27001, SOC2, NIST or GDPR.
  • Certifications (Good to have): OSCP, GCP/AWS Security Specialty, CEH, CISSP or CKS.
Soft Skills
  • Strong analytical and problem-solving mindset.
  • Excellent cross-functional collaboration.
  • Passion for innovation, automation and continuous learning.