Product Security Engineer

New
IndiaFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Experience
3–4 years
Required Skills
Node.jsPythonTypeScriptGo

Requirements

  • 3–4 years of experience in product security or application security in cloud-native or microservices environments
  • Strong experience in threat modeling using frameworks such as STRIDE or attack trees
  • Ability to perform architecture and design reviews to identify authentication, authorization, and data exposure risks
  • Hands-on secure code review and vulnerability analysis aligned with OWASP Top 10 and modern security risks
  • Proficiency in at least one programming language such as Python, Go, or TypeScript/Node.js
  • Experience securing APIs, backend services, and mobile or web applications in production
  • Familiarity with vulnerability management and prioritization using signals like EPSS or CISA KEV
  • Understanding of AI/ML security risks such as prompt injection and insecure tool usage
  • Experience using modern AI tools or coding agents in engineering or security workflows
  • Strong written and verbal communication skills to translate technical risks into actionable recommendations
  • Collaborative mindset with ability to influence engineering teams without formal authority
  • Comfortable working in ambiguous, high-ownership environments

Responsibilities

  • Lead threat modeling and secure design reviews across new features and system architectures
  • Conduct secure code reviews and vulnerability analysis across cloud-native, microservices, web, and mobile applications
  • Partner with engineering teams to identify risks early and drive remediation of security issues
  • Build and enhance AI-powered and automation-driven security tooling to improve detection and response capabilities
  • Run and improve vulnerability management processes, prioritizing risks using industry standards and business context
  • Support incident response activities, including root cause analysis and post-incident security improvements
  • Collaborate with compliance teams to support audits and ensure security controls are properly evidenced
  • Promote secure coding practices and influence engineering teams through strong technical guidance
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now