Talent.com
Vegapay - Security Engineer - VAPT

Vegapay - Security Engineer - VAPT

VegapayBangalore
12 days ago
Job description

Our Story :

Vegapay Technology is a financial technology company. It partners with banks and financial institutions to digitize its financial infrastructure.

It provides users with a credit suite featuring a wide breadth of modules and no-code configuration to design, deploy, and direct their credit programs.

It provides access to build financial asset products including Card Management System, LOS, LMS, Co-lending and more.

Founded in 2022 by Gaurav Mittal, Himanshu Agrawal and Puneet Sharma, the startup is a B2B digital lending and Card Management Platform.

Vegapays vision is to liberate financial institutions and fintech enterprises from every technical barrier which hinders offering a lending programme.

Meet the Team :

Gaurav Mittal Gaurav is the Co-Founder and the CEO of the company. He is having more than 20 yrs of experience and has worked with organisations like Zeta, Matchmove, MasterCard, Amex and ICICI Bank.

Himanshu Agrawal Himanshu is the Co-Founder and the Head of Technology. He is from IIT Kanpur and has more than 14 yrs of experience working with organisations like Amazon and DE Shaw.

Puneet Sharma Puneet is the Co-Founder and the Head of Product. He is from IIT Roorkee and has more than 10 years of experience working with organisations like BharatPe, Avail Finance.

The Hats You Will Wear :

  • Plan and execute Vulnerability Assessment & Penetration Testing (VAPT) for Web, Mobile, and API applications; reproduce issues, write PoCs, and validate fixes.
  • Perform Network VAPT using standard methodologies; document risks and hardening actions.
  • Embed security testing in CI / CD (SAST / DAST, dependency / SBOM scans) and track remediation SLAs.
  • Analyze and mitigate OWASP Top 10 and business-logic flaws; coach developers on secure patterns.
  • Operate and tune security tooling : Burp Suite, AppScan, OWASP ZAP, BeEF, Metasploit, Qualys, Nessus, Snyk, Wazuh, SonarQube, Trivy.
  • Assess and improve authentication / authorization (OIDC, OAuth, SAML); review token flows and session controls.
  • Support audits & compliance (PCI DSS, ISO 27001, SOC 2, CICRA, NIST) : evidence collection, control mapping, auditor interactions.
  • Strengthen cloud security across AWS / GCP / Azure (S3, load balancers, Kubernetes, Docker); identify misconfigurations and enforce least privilege.
  • Read and reason about Java code paths to pinpoint root causes and guide fixes.
  • Produce clear reports (risk, impact, exploitability, remediation) for technical and non-technical audiences.

The Perfect Fit :

  • 3+ years of relevant experience in Information Security.
  • Proven hands-on VAPT for Web / Mobile / API and Network VAPT.
  • Strong knowledge of OWASP Top 10 (attacks and defenses).
  • Proficiency with commercial / open-source tools : Burp Suite, AppScan, ZAP, BeEF, Metasploit, Qualys, Nessus, Snyk, Wazuh, SonarQube, Trivy.
  • Demonstrated ability to uncover complex business-logic vulnerabilities.
  • Working understanding of OIDC, OAuth, SAML.
  • Ability to read / write Java and understand basic application logic.
  • Experience with PCI DSS, ISO 27001, SOC 2, CICRA, NIST and auditor engagement.
  • Working knowledge of cloud security and core components in AWS / GCP / Azure (i.e., S3, Load Balancers, Kubernetes, Docker).
  • (ref : hirist.tech)

    Create a job alert for this search

    Security Engineer • Bangalore

    Related jobs
    • Promoted
    Security Engineer (Detection and Response)

    Security Engineer (Detection and Response)

    Foodsmarthosur, tamil nadu, in
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 18 days ago
    • Promoted
    Sr Threat Detection Engineer

    Sr Threat Detection Engineer

    Insight Globalhosur, tamil nadu, in
    Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimizat...Show moreLast updated: 12 days ago
    • Promoted
    Mobile Applications Security Engineer - Vulnerability Assessment

    Mobile Applications Security Engineer - Vulnerability Assessment

    SKS EnterprisesBangalore
    Position Name : Application Security Engineer Location : Bangalore Experience Range : 3+ Years &l...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaBengaluru, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Nexoria Techworks Inc.hosur, tamil nadu, in
    Job Description : Cybersecurity Engineer.Cybersecurity, Information Security, Threat Management.Your core responsibilities will include : . Implement security measures to proactively identify and mitig...Show moreLast updated: 20 days ago
    • Promoted
    DevSecOps / AppSecOps Staff Engineer

    DevSecOps / AppSecOps Staff Engineer

    First American (India)hosur, tamil nadu, in
    Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show moreLast updated: 30+ days ago
    • Promoted
    Security Governance Engineer

    Security Governance Engineer

    FICOBengaluru, Republic Of India, IN
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    InfogainBengaluru, Karnataka, India
    Title : Security Engineer (6+ Years).Use CrowdStrike reports to evaluate all security vulnerabilities on both Windows and Linux systems. Analyze the requirements to remediate the security vulnerabili...Show moreLast updated: 13 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    CBTShosur, tamil nadu, in
    Senior level roles as IT Security Architect, IT Security Engineer, IT Security Auditor, Cyber-Security Analyst, Cyber-Intelligence Analyst. Certifications, Accreditations, Licenses.One or more of th...Show moreLast updated: 12 days ago
    • Promoted
    Product Security Engineer II

    Product Security Engineer II

    FICOBengaluru, Karnataka, India
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

    Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

    Cloud4C Serviceshosur, tamil nadu, in
    Gartner’s Magic Quadrant (2021), is a leading automation-driven Cloud Managed Services Provider (MSP).We specialize in multi-cloud migration, management, and disaster recovery with zero data loss g...Show moreLast updated: 13 days ago
    • Promoted
    Security Engineer

    Security Engineer

    NexionProBangalore
    Key Responsibilities : - Perform vulnerability assessments across cloud platforms and workloads using Wiz, Tenable, and SonarQube. Classify vulnerabilities by severity...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    Foodsmarthosur, tamil nadu, in
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 18 days ago
    • Promoted
    Security Architect

    Security Architect

    Tata Consultancy Serviceshosur, tamil nadu, in
    Experience in datacentre, cloud and network.Hands-on experience in AWS and GCP cloud.Experience in Containers, Kubernetes and micro services. Experience in advance networking in public cloud.Terrafo...Show moreLast updated: 20 days ago
    • Promoted
    Aziro - Senior Security Engineer - DevSecOps

    Aziro - Senior Security Engineer - DevSecOps

    AZIRO TECHNOLOGIES INDIA PRIVATE LIMITEDBangalore
    Description : Role : Senior Security Engineer Experience : 5- 10 yrs Location : Bengaluru Key ...Show moreLast updated: 28 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Anumanabangalore, India
    Position : Cyber Security Engineer.Work Mode : Hybrid (3 days in the office, 2 days remote).Anumana is seeking a skilled and motivated Cybersecurity Engineer to ensure the security, integrity, and co...Show moreLast updated: 30+ days ago
    • Promoted
    Contractor Security Engineer Level 3 – GRC Tech Solutions

    Contractor Security Engineer Level 3 – GRC Tech Solutions

    MindlanceBengaluru, IN
    Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 13 days ago
    • Promoted
    Security Engineer

    Security Engineer

    redBusBengaluru, Karnataka, India
    We are looking for a Security Engineer to join our cybersecurity team and strengthen redBus defence against evolving cyber threats. This role involves monitoring, analysing, and responding to securi...Show moreLast updated: 30+ days ago