Live opening · Posted 11 days ago

Security Engineer

Acko · Bangalore
Instahyre 3-6 yrs
You are 11 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 11 days ago
CompanyAcko
LocationBangalore
Experience3-6 yrs
SourceInstahyre
Listed11 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
0 min from Instahyre publishing this role to us finding it
11 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
16,616 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

Responsibilities:
Perform Security reviews, Vulnerability Assessments and Penetration Testing for Web, Android, iOS, and API endpoints.
Perform Threat Modelling and anticipate potential attack vectors, and improve security architecture on complex or cross-functional components.
Identify and remediate OWASP Top 10 and mobile-specific vulnerabilities.
Conduct secure code reviews and red team assessments.
Integrate SAST, DAST, SCA, and secret scanning tools into CI/CD pipelines.
Automate security checks using tools like SonarQube, Snyk, Trivy, etc.
Maintain and manage vulnerability scanning infrastructure.
Perform security assessments of AWS, Azure, and GCP environments, with an emphasis on container security, particularly for Docker and Kubernetes.
Implement guardrails for IAM, network segmentation, encryption, and cloud monitoring.
Contribute to infrastructure hardening for containers, Kubernetes, and virtual machines.
Triage bug bounty reports and coordinate remediation with engineering teams.
Act as the primary responder for external security disclosures.
Maintain documentation and metrics related to bug bounty and penetration testing activities.
Collaborate with developers and architects to ensure secure design decisions.
Lead security design reviews for new features and products.
Provide actionable risk assessments and mitigation plans to stakeholders.
Requirements:
3 to 6 years of solid hands-on experience in the VAPT domain.
Solid understanding of Web, Android, and iOS application security.
Experience with DevSecOps tools and integrating security into CI/CD.
Strong knowledge of cloud platforms (AWS/GCP/Azure) and their security models.
Familiarity with bug bounty programs and responsible disclosure practices.
Familiarity with tools like Burp Suite, MobSF, OWASP ZAP, Terraform, and Checkov, etc
Good knowledge of API security.
Scripting experience (Python, Bash, or similar) for automation tasks.
OSCP, CEH, AWS Security Speciality, or similar certifications.
Experience working in a regulated environment (e. g., FinTech, InsurTech).

Experience
3-6 yrs

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App