Lead Security Engineer

5 months ago


Bengaluru, India Flipkart Full time

About the team:

The Security Standards team is a part of the central Information security function which is primarily responsible for security standards, secure configuration reviews, architecture reviews, validating efficacy and efficiency of the existing security controls, threat modeling, assessment of the various security controls / technologies based on the gaps identified, security metrics, analytics, automation etc. This team owns the IT Security, Security controls and reviews them on a regular basis to ensure IT/Security controls are working as designed, and all features/capabilities of IT and Security products are being used to the maximum.

The InfoSec Security Standards team is primarily responsible for defining new and reviewing existing hardening standards, and carrying out secure configuration review assessments for Flipkart and Group. This function is also responsible for reviewing and approving technical security exceptions against the defined security standards.

About the role:

Flipkart is seeking a skilled, technocrat, motivated, strong security mindset and collaborative Lead, Security Engineer in the Security Standards team. You will serve as an expert, lead and be a mentor to the Security Standards team members. You will be a strong communicator and influencer, demonstrating curiosity to learn and understand the business.

What you’ll do:

Specializes in Security Standards Development, meticulously crafting security standards and protocols to fortify digital infrastructures. Conducts comprehensive Security Standards Assessments, scrutinizing systems for gaps and vulnerabilities Develop standards in accordance with industry recognised standards like CIS (Center for Internet Security), standards implementation and interpretation across FK Group. Security review of the architecture for the new projects and existing infrastructure setup. Expert in Security Configuration Reviews, ensuring optimal secure configurations and settings to mitigate risks. Ensure efficacy of security controls deployed. Work with the technical operations team to understand security controls / tech deployed and come up with recommendations to address gaps and also take full advantage of the deployed technologies. Conduct threat modeling based on well known standards / frameworks such as STRIDE, PASTA etc. Identifying and defining the requirements of the overall security of the information processing systems. Identify security gaps, exposures and develop mitigation plans Build and execute on organizations roadmaps Automation & Scripting as required. Defining and maintaining security procedures, standards,guidelines and procedures as required. Executes proactive measures to safeguard against emerging threats and collaborates cross-functionally to maintain cutting-edge security protocols.

What you’ll need:

Bachelor’s degree(B.E/B.Tech or M.S/M.Tech) in Information Technology or other related fields. At least 8-11 years of working experience in domains related to Information security and with a very strong security mindset. Implementation experience in Security technologies (at least 2+ years) such as Next Gen Firewall / IDS/ IPS / NAC / Email Security/CASB / EDR / WAF / AV / DLP / ATP / PIM / PAM / DAM / SIEM etc. In-depth understanding of networking concepts, protocols and in-depth knowledge of infrastructure, identity and endpoint security technology such as AD, Azure AD, Next Gen Firewall, IDS, IPD, AV, EDR, CASB, WAF, NAC, Wi-fi security, DLP, ATP, SIEM, Proxy etc. Proficiency in CIS (Center for Internet Security) standards implementation and interpretation. Very good understanding of Operating systems (Windows, MAC, Linux) & VDI etc. Knowledge and understanding of security standards, security configuration reviews, secure architecture and cloud security. Good understanding of security frameworks, standards such as ISO 27001, NIST, CIS etc. Experience in security architecture reviews and driving cross-functional programs. Strong skills in security principles such as least privilege access, defense in depth, preventative vs detective controls, network security, cloud security, application security, endpoint security, data protection, and incident response. Solid understanding of operational and organizational structures Possess of information security certifications such as CEH / ISO 27001 / TOGAF etc. Excellent problem solving, interpersonal,communication and presentation skills. Able to work independently and efficiently, as well as with others, to meet deadlines in a fast-paced environment.

  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: RSA Security Engineer - Application Security ExpertJob Summary: We are seeking a highly skilled Application Security Engineer to join our team at RSA Security. As an Application Security Engineer, you will be responsible for designing and implementing secure software development lifecycle (SDLC) processes, identifying and mitigating security...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: Principal Security EngineerRSA Security is looking for a highly skilled Principal Security Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for designing, developing, and maintaining our flagship product, NetWitness, in the SIEM domain.ResponsibilitiesDesign, develop, and maintain features for a...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: RSA - Application Security EngineerJob Summary:RSA is seeking an experienced Application Security Engineer to join our team. As a key member of our security team, you will be responsible for designing and implementing secure software development practices, identifying and mitigating security risks, and collaborating with cross-functional teams to...


  • Bengaluru, Karnataka, India Swiggy Full time

    Job Profile: Security Engineering Lead - SwiggyAbout the Role:Develop and implement security strategies to protect Swiggy's infrastructure and applications.Lead a team of security engineers to ensure compliance with industry standards and regulations.Collaborate with developers to integrate security into the software development lifecycle.Conduct regular...


  • Bengaluru, India RSA Security Full time

    RSA - Application Security Engineer (Location: Hybrid/ Remote India) RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced...


  • Bengaluru, Karnataka, India Cloud Software Group Full time

    About This TeamAmbitious security engineer looking to take on a leadership role!Job DescriptionWe are seeking a highly skilled and experienced security engineer to lead our Product Security team. As a key member of our engineering organization, you will be responsible for developing and implementing secure software development lifecycle (SSDLC) processes and...


  • Bengaluru, Karnataka, India Guidewire Full time

    Job OverviewGuidewire is seeking a highly skilled Security Engineer Lead to join our team. As a key member of our infrastructure team, you will be responsible for ensuring the security and integrity of our systems and applications.Key ResponsibilitiesPartner with Security: Collaborate with our security team to develop and implement security standards,...

  • Lead Security Engineer

    2 months ago


    Bengaluru, India Flipkart Full time

    About the role: The Security Tech Lead at Flipkart plays a critical role in safeguarding digital assets andsensitive information. This position involves developing and implementingcomprehensive security strategies, leading incident response efforts, and conductingsecurity assessments to identify vulnerabilities. The role also includes promotingsecurity...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Job Title: Data and Security SpecialistOverview:Andromeda Security is an early stage, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. You will have the opportunity to grow with the company and help secure enterprises from cloud security breaches. Job Responsibilities:We're looking for dreamers, coders, and hackers...


  • Bengaluru, Karnataka, India Arcesium Full time

    About ArcesiumArcesium is a global financial technology firm that solves complex data-driven challenges faced by some of the world's most sophisticated financial institutions. We constantly innovate our platform and capabilities to meet tomorrow's challenges, anticipate the risks our clients encounter, and design advanced solutions to help our clients...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this role:Wells Fargo is seeking a highly skilled Information Security Engineer to join our team. As a key member of our security team, you will be responsible for leading computer security incident response activities for highly complex events, conducting technical investigations of security-related incidents, and providing security consulting on...

  • Lead Security Engineer

    4 months ago


    Bengaluru, India Zepto Full time

    Zepto, a leading quick commerce grocery delivery company based in Bangalore, is seeking a highly skilled Senior Cloud Security Engineer to join our dynamic team. You will play a crucial role in ensuring the security of our cloud infrastructure and microservices architecture.Key Responsibilities:Design, implement, and maintain security measures for our...

  • Lead Security Engineer

    4 months ago


    Bengaluru, India Zepto Full time

    Zepto, a leading quick commerce grocery delivery company based in Bangalore, is seeking a highly skilled Senior Cloud Security Engineer to join our dynamic team. You will play a crucial role in ensuring the security of our cloud infrastructure and microservices architecture.Key Responsibilities:Design, implement, and maintain security measures for our...

  • Lead Security Engineer

    4 months ago


    Bengaluru, India Zepto Full time

    Zepto, a leading quick commerce grocery delivery company based in Bangalore, is seeking a highly skilled Senior Cloud Security Engineer to join our dynamic team. You will play a crucial role in ensuring the security of our cloud infrastructure and microservices architecture. Key Responsibilities: Design, implement, and maintain security measures for our...


  • Bengaluru, India Cloud Software Group Full time

    You are/have worked on security architecture and are performing security analysis on existing or new products and provides security guidance and input to product engineers. You have worked on problems of varied scope independently and able to drive strategy for Product Security in the limited scope of work and provide general guidance and/or direction on...


  • Bengaluru, Karnataka, India TIBCO Full time

    Job Title: Lead Product Security EngineerAs a Lead Product Security Engineer at Cloud Software Group, you will play a critical role in ensuring the security and robustness of our cloud-based products. Your expertise will be instrumental in guiding product development teams to design and implement secure software development practices.Key...

  • Lead Engineer

    2 months ago


    Bengaluru, India MNR Solutions Full time

    We are seeking a proactive Lead Engineer - Network Security to join our team. The ideal candidate will have strong expertise in cloud platforms, network security solutions, and providing L2 and L3 support.Key Responsibilities :- Design, implement, and manage network security solutions across AWS and GCP environments.- Conduct security assessments and monitor...


  • Bengaluru, India Cloud Software Group Full time

    About This Team YOU as a Lead Product Security Engineer will have the opportunity to collaborate with the brightest engineering minds and work on innovative product security areas. Job Description You are/have worked on Threat Modelling, Source Code Review, Penetration Testing and performing security analysis on existing or new products. Provide...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job SummaryRSA Security is seeking a highly skilled Cloud Identity Engineer to join our team. As a Cloud Identity Engineer, you will be responsible for designing, implementing, and maintaining cloud-based identity and access management solutions for our customers.Key ResponsibilitiesDesign and implement cloud-based identity and access management solutions...

  • Lead Security Engineer

    4 months ago


    Bengaluru, India Flipkart Full time

    About the team:The Security Standards team is a part of the central Information security function which is primarily responsible for security standards, secure configuration reviews, architecture reviews, validating efficacy and efficiency of the existing security controls, threat modeling, assessment of the various security controls / technologies based on...