Lead Security Engineer

6 months ago


Bengaluru, India Flipkart Full time

About the team:

The Security Standards team is a part of the central Information security function which is primarily responsible for security standards, secure configuration reviews, architecture reviews, validating efficacy and efficiency of the existing security controls, threat modeling, assessment of the various security controls / technologies based on the gaps identified, security metrics, analytics, automation etc. This team owns the IT Security, Security controls and reviews them on a regular basis to ensure IT/Security controls are working as designed, and all features/capabilities of IT and Security products are being used to the maximum.

The InfoSec Security Standards team is primarily responsible for defining new and reviewing existing hardening standards, and carrying out secure configuration review assessments for Flipkart and Group. This function is also responsible for reviewing and approving technical security exceptions against the defined security standards.

About the role:

Flipkart is seeking a skilled, technocrat, motivated, strong security mindset and collaborative Lead, Security Engineer in the Security Standards team. You will serve as an expert, lead and be a mentor to the Security Standards team members. You will be a strong communicator and influencer, demonstrating curiosity to learn and understand the business.

What you’ll do:

Specializes in Security Standards Development, meticulously crafting security standards and protocols to fortify digital infrastructures. Conducts comprehensive Security Standards Assessments, scrutinizing systems for gaps and vulnerabilities Develop standards in accordance with industry recognised standards like CIS (Center for Internet Security), standards implementation and interpretation across FK Group. Security review of the architecture for the new projects and existing infrastructure setup. Expert in Security Configuration Reviews, ensuring optimal secure configurations and settings to mitigate risks. Ensure efficacy of security controls deployed. Work with the technical operations team to understand security controls / tech deployed and come up with recommendations to address gaps and also take full advantage of the deployed technologies. Conduct threat modeling based on well known standards / frameworks such as STRIDE, PASTA etc. Identifying and defining the requirements of the overall security of the information processing systems. Identify security gaps, exposures and develop mitigation plans Build and execute on organizations roadmaps Automation & Scripting as required. Defining and maintaining security procedures, standards,guidelines and procedures as required. Executes proactive measures to safeguard against emerging threats and collaborates cross-functionally to maintain cutting-edge security protocols.

What you’ll need:

Bachelor’s degree(B.E/B.Tech or M.S/M.Tech) in Information Technology or other related fields. At least 8-11 years of working experience in domains related to Information security and with a very strong security mindset. Implementation experience in Security technologies (at least 2+ years) such as Next Gen Firewall / IDS/ IPS / NAC / Email Security/CASB / EDR / WAF / AV / DLP / ATP / PIM / PAM / DAM / SIEM etc. In-depth understanding of networking concepts, protocols and in-depth knowledge of infrastructure, identity and endpoint security technology such as AD, Azure AD, Next Gen Firewall, IDS, IPD, AV, EDR, CASB, WAF, NAC, Wi-fi security, DLP, ATP, SIEM, Proxy etc. Proficiency in CIS (Center for Internet Security) standards implementation and interpretation. Very good understanding of Operating systems (Windows, MAC, Linux) & VDI etc. Knowledge and understanding of security standards, security configuration reviews, secure architecture and cloud security. Good understanding of security frameworks, standards such as ISO 27001, NIST, CIS etc. Experience in security architecture reviews and driving cross-functional programs. Strong skills in security principles such as least privilege access, defense in depth, preventative vs detective controls, network security, cloud security, application security, endpoint security, data protection, and incident response. Solid understanding of operational and organizational structures Possess of information security certifications such as CEH / ISO 27001 / TOGAF etc. Excellent problem solving, interpersonal,communication and presentation skills. Able to work independently and efficiently, as well as with others, to meet deadlines in a fast-paced environment.

  • Bengaluru, Karnataka, India Oleria Security Full time

    About Oleria SecurityOleria Security is a leading cybersecurity startup revolutionizing access control solutions for enterprise cloud applications. With over $43M in funding, we're on a mission to reduce the opportunity and scope of data breaches.Our VisionWe envision a world where identity-based attacks are a thing of the past. Our cutting-edge technology...


  • Bengaluru, Karnataka, India Swiggy Full time

    Job Profile: Security Engineering Lead - SwiggyAbout the Role:Develop and implement security strategies to protect Swiggy's infrastructure and applications.Lead a team of security engineers to ensure compliance with industry standards and regulations.Collaborate with developers to integrate security into the software development lifecycle.Conduct regular...


  • Bengaluru, India RSA Security Full time

    RSA - Application Security Engineer (Location: Hybrid/ Remote India) RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced...


  • Bengaluru, Karnataka, India Ambient Security Full time

    Ambient Security is an innovative cybersecurity startup on a mission to revolutionize enterprise security by reducing the risk of privileged account takeovers and cyber attacks.We're seeking highly skilled software engineers at all levels to lead the design and implementation of cutting-edge technologies in security, large-scale distributed systems, AI, and...

  • Lead Security Engineer

    21 hours ago


    Bengaluru, India GXS Bank Full time

    About the TeamWe are the bank's security engineering team - our mission is simple - we make sure that we build and leverage secure systems and operate them at production scale in a secure way. Our engineering teams move fast and are constantly innovating, and our security engineers need to ensure we provide the right tools and processes to help them move at...


  • Bengaluru, India System Two Security Full time

    DescriptionAs a Principal Software Engineer at System Two Security, you will play a crucial role in developing and maintaining the software stack that powers our innovative AI-driven cybersecurity solutions. This senior position demands a blend of advanced back-end skills, with a focus on creating seamless, efficient, and scalable applications. Additionally,...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Andromeda Security is a pioneering cloud security firm, backed by leading Silicon Valley venture capitalists. Our mission is to empower businesses by effectively managing cloud credentials and preventing security breaches. We pride ourselves on fostering a culture of trust, excellence, humility, grit, and fun. We are seeking dedicated professionals who will...


  • Bengaluru, Karnataka, India Resillion Full time

    Resillion is seeking a highly skilled Security Engineering Lead to join our team in Bangalore. This role offers a competitive salary of $120,000 - $180,000 per annum.About the RoleThis is a leadership position that requires a passionate information security professional with excellent communication skills to lead our SOC Engineering team. The successful...


  • Bengaluru, India System Two Security Full time

    DescriptionAs a Principal Software Engineer at System Two Security, you will play a crucial role in developing and maintaining the software stack that powers our innovative AI-driven cybersecurity solutions. This senior position demands a blend of advanced back-end skills, with a focus on creating seamless, efficient, and scalable applications. Additionally,...


  • Bengaluru, India System Two Security Full time

    Description As a Principal Software Engineer at System Two Security, you will play a crucial role in developing and maintaining the software stack that powers our innovative AI-driven cybersecurity solutions. This senior position demands a blend of advanced back-end skills, with a focus on creating seamless, efficient, and scalable applications....


  • Bengaluru, India System Two Security Full time

    Description As a Principal Software Engineer at System Two Security, you will play a crucial role in developing and maintaining the software stack that powers our innovative AI-driven cybersecurity solutions. This senior position demands a blend of advanced back-end skills, with a focus on creating seamless, efficient, and scalable applications....


  • Bengaluru, India System Two Security Full time

    Description   As a Principal Software Engineer at System Two Security, you will play a crucial role in developing and maintaining the software stack that powers our innovative AI-driven cybersecurity solutions. This senior position demands a blend of advanced back-end skills, with a focus on creating seamless, efficient, and scalable applications....

  • Lead Security Engineer

    3 months ago


    Bengaluru, India Flipkart Full time

    About the role: The Security Tech Lead at Flipkart plays a critical role in safeguarding digital assets andsensitive information. This position involves developing and implementingcomprehensive security strategies, leading incident response efforts, and conductingsecurity assessments to identify vulnerabilities. The role also includes promotingsecurity...


  • Bengaluru, India Ambient Security Full time

    Ambient Security is an exciting new startup, looking to reduce the risk of privileged account takeovers and cyber attacks for large enterprises. The founder and CEO is a 7x cyber security entrepreneur with a track record of successful exits.Ws seeking software engineers at all levels to lead the design and implementation of innovative technologies. We are...


  • Bengaluru, Karnataka, India ALTERYX Full time

    We are seeking a seasoned Cloud Security Engineer to join our team at Alteryx. This is an exciting opportunity to lead the charge in securing our cloud-based products and infrastructure.


  • Bengaluru, India System Two Security Full time

    As a Principal UI Engineer at System Two Security, you will be instrumental in developing and maintaining the software stack for our cutting-edge AI-driven cybersecurity solutions. This senior role requires advanced front-end development skills using modern UI technologies, including React.js, CSS5, and Tailwind. Your focus will be on creating seamless,...

  • Lead Security Engineer

    5 months ago


    Bengaluru, India Zepto Full time

    Zepto, a leading quick commerce grocery delivery company based in Bangalore, is seeking a highly skilled Senior Cloud Security Engineer to join our dynamic team. You will play a crucial role in ensuring the security of our cloud infrastructure and microservices architecture. Key Responsibilities: Design, implement, and maintain security measures for our...


  • Bengaluru, India Ambient Security Full time

    Ambient Security is an exciting new startup, looking to reduce the risk of privileged account takeovers and cyber attacks for large enterprises. The founder and CEO is a 7x cyber security entrepreneur with a track record of successful exits. Ws seeking software engineers at all levels to lead the design and implementation of innovative technologies. We are...


  • Bengaluru, India Ambient Security Full time

    Ambient Security is an exciting new startup, looking to reduce the risk of privileged account takeovers and cyber attacks for large enterprises. The founder and CEO is a 7x cyber security entrepreneur with a track record of successful exits.Ws seeking software engineers at all levels to lead the design and implementation of innovative technologies. We are...


  • Bengaluru, India Ambient Security Full time

    Ambient Security is an exciting new startup, looking to reduce the risk of privileged account takeovers and cyber attacks for large enterprises. The founder and CEO is a 7x cyber security entrepreneur with a track record of successful exits.Ws seeking software engineers at all levels to lead the design and implementation of innovative technologies. We are...