Live opening · Posted 15 days ago

Security Engineer IV

Meesho · Bangalore
Instahyre 6-10 yrs
You are 15 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 15 days ago
CompanyMeesho
LocationBangalore
Experience6-10 yrs
SourceInstahyre
Listed15 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
0 min from Instahyre publishing this role to us finding it
14 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
17,147 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

As a Security Engineer 4 your role is integral in ensuring the security of our products throughout their development lifecycle. You will be involved from the very beginning, participating in threat modeling and design reviews to identify potential risks early. You'll also integrate and manage SAST tools within our CI/CD pipeline, ensuring continuous security testing as code evolves. Additionally, you'll lead and conduct vulnerability assessments and penetration testing (VAPT) to proactively uncover and address security vulnerabilities before they reach production.
Responsibilities:
Lead and manage all aspects of the Secure Software Development Lifecycle (SDLC).
Implement and manage security tools within the CI/CD pipeline (DevSecOps).
Conduct and oversee VAPT for web applications, APIs, iOS, and Android apps.
Perform threat modeling, design, and architecture reviews to identify potential risks.
Execute manual source code reviews and enhance security in production environments.
Manage and optimize a self-managed bug bounty program.
Provide security architectural guidance to engineering and IT teams.
Manage issues identified from penetration tests and bug bounty programs.
Lead security training and awareness campaigns across the organization.
Manage Web Application Firewalls (WAF) to ensure robust protection.
Engage in the Security Champions program to integrate security practices within teams.
Assist in creating and maintaining security risk models for both new and existing systems.
Requirements:
7+ years of experience in product security, with a focus on application security and DevSecOps.
Proven experience in leading architectural changes or cross-team efforts to mitigate security vulnerabilities.
Proficiency in programming languages such as Java, React, Node.js, and Python.
Hands-on experience with manual source code reviews and securing production code.
Expertise in deploying and managing security tools in CI/CD pipelines.
Experience with Git, Jenkins, Artifactory, or other similar technologies.
Strong background in securing the software development lifecycle, including eliminating classes of vulnerabilities.
Proficiency with cloud platforms like AWS or GCP, including their security tools.
Experience with Docker and containerization technologies is highly desirable.
Additional experience in infrastructure security, particularly in GCP, Docker, and containerization, is a bonus.

Experience
6-10 yrs

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App