Talent.com
Sr. Product Security Engineer

Sr. Product Security Engineer

ConfidentialBengaluru / Bangalore, India
4 days ago
Job description

RDQ326R107

About The Team

The Product Security Team at Databricks is responsible for embedding security throughout the Software Development Lifecycle (SDLC). Our mission is to left-shift security—ensuring that all code, whether powering customer-facing features or supporting internal infrastructure, is developed with security in mind from the start. By reducing the likelihood of introducing vulnerabilities and minimizing the impact of externally reported issues, we safeguard Databricks' products and services at scale.

Role Overview

As a Product Security Engineer , you will play a key role in securing the features and infrastructure that power Databricks. You will partner closely with engineering teams across the organization to design secure systems, conduct security reviews, and enable scalable, repeatable secure development practices through automation, paved pathways, and guardrails.

You'll support the full spectrum of security within the SDLC—from architecture and threat modeling through secure coding, pentesting, and deployment. In addition, you will contribute to incident and vulnerability response efforts and help scale our security influence through tools, frameworks, and processes that support both engineers and compliance needs.

Responsibilities

  • Partner with product and engineering teams to design secure systems, identify risks early, and guide the development of robust solutions
  • Conduct comprehensive security reviews including threat modeling, design analysis, manual code reviews, and exploit development to validate potential weaknesses
  • Design and build guardrails that prevent common security mistakes and ensure consistent, enforceable policies across services
  • Develop and maintain paved pathways—secure-by-default development patterns, frameworks, and tools that enable engineering teams to build securely without friction
  • Triage and analyze findings from Static Application Security Testing (SAST) tools, distinguishing false positives from genuine issues and performing variant analysis to identify similar vulnerabilities across the codebase.
  • Operate and evolve Dynamic Application Security Testing (DAST) tooling and automation to support vulnerability detection and defect tracking
  • Support incident response (IR) and vulnerability response (VRP) workflows as needed, partnering with internal teams to investigate and remediate security events
  • Enhance internal security automation frameworks and integrations to meet evolving compliance and regulatory requirements (e.g., FedRAMP, PCI, HIPAA)
  • Contribute to the continuous improvement of SDLC-integrated security processes, with a focus on risk-based prioritization, real-world impact, and the implementation of AI-assisted tooling to enhance efficiency, accuracy, and scalability.

What We Look For

  • 3–5 years of experience in product or application security
  • Proficiency in threat modeling and identifying design flaws using architecture diagrams and data flow models
  • Experience conducting security assessments, code reviews, and partnering with engineering teams to remediate vulnerabilities
  • Ability to independently lead security reviews for medium- to large-scale features or systems
  • Collaborates effectively with cross-functional teams to integrate security practices into the SDLC and improve developer security awareness
  • Expertise in at least two of the following domains :
  • Ability to read code and identify security defects in two or more programming languages (e.g., Python, Java, Scala, JavaScript)
  • Hands-on experience with exploit development, proof-of-concept creation, or exploit chaining
  • Strong automation skills for building security tools and processes using AI-agents (think Cursor, Goose, VSCode, etc)
  • Familiarity with fuzzing techniques is a plus
  • Pragmatic approach to security—prioritizing risk management over theoretical severity
  • Other good to have credentials
  • About Databricks

    Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook.

    Benefits

    At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region, please visit https : / / www.mybenefitsnow.com / databricks.

    Our Commitment to Diversity and Inclusion

    At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics.

    Compliance

    If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.

    Skills Required

    Security Assessments, threat modeling

    Create a job alert for this search

    Product Security Engineer • Bengaluru / Bangalore, India

    Related jobs
    • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    ConfidentialBengaluru / Bangalore
    At Toast, we are committed to creating innovative solutions that enhance security and leverage the power of artificial intelligence to drive restaurant business growth and help them thrive.We are s...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Lead Product Security Engineer

    Senior Lead Product Security Engineer

    ConfidentialBengaluru / Bangalore
    As a Senior Lead Product Security Engineer, you will be responsible for : .Building and executing engineering processes for early detection of design flaws, vulnerabilities, weaknesses, missing secur...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aihosur, tamil nadu, in
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    Senior Product Security Offensive Engineer

    Senior Product Security Offensive Engineer

    iManageBengaluru, Karnataka, IN
    Quick Apply
    We offer a flexible working policy that supports the health and well-being of our iManage employees.As an organization, we value collaborating and learning from our peers in person, while providing...Show moreLast updated: 14 days ago
    • Promoted
    Product Security Engineer

    Product Security Engineer

    ConfidentialBengaluru / Bangalore, India
    The Product Security Engineers work closely with engineering teams to secure our Pluralsight platform.They will work on various Secure SDL programs to help identify security Threats and Vulnerabili...Show moreLast updated: 30+ days ago
    • Promoted
    Sr Security Engineer - Product Security

    Sr Security Engineer - Product Security

    ConfidentialBengaluru / Bangalore
    Senior Security Engineer Product Security.Ecolabs Information Security team is seeking a Senior Security Engineer with strong expertise in Product Security to lead and enhance secure software devel...Show moreLast updated: 4 days ago
    • Promoted
    Pluralsight - Product Security Engineer - SAST / DAST

    Pluralsight - Product Security Engineer - SAST / DAST

    PluralsightBangalore
    Job Description : The Product Security Engineers work closely with engineering teams to secure our Pluralsight platform.They will work on various Secure SDL programs ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Product Security Offensive Engineer

    Senior Product Security Offensive Engineer

    ConfidentialBengaluru / Bangalore, India
    We offer a flexible working policy that supports the health and well-being of our iManage employees.As an organization, we value collaborating and learning from our peers in person, while providing...Show moreLast updated: 4 days ago
    • Promoted
    Product Security Engineer II

    Product Security Engineer II

    FICOBengaluru, Karnataka, India
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Product Security Engineer

    Lead Product Security Engineer

    ConfidentialBengaluru / Bangalore, India
    At ASAPP, our mission is simple : deliver the best AI-powered customer experience—faster than anyone else.To achieve that, we're guided by principles that shape how we think, build, and execute.We v...Show moreLast updated: 4 days ago
    • Promoted
    Enterprise Applications Security Engineer

    Enterprise Applications Security Engineer

    AviatrixBengaluru, India
    For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security.Where current cybersecurity approaches focus on securing entry points to a trus...Show moreLast updated: 21 days ago
    • Promoted
    Product Security Engineer Ii

    Product Security Engineer Ii

    FICOBengaluru, Republic Of India, IN
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 30+ days ago
    • Promoted
    Product Security Specialist

    Product Security Specialist

    Insight GlobalBengaluru, Karnataka, India
    JOB DESCRIPTION We are hiring Product Security Specialists to strengthen our product security capability across penetration testing, AI security, MCP security, mobile app security, web application...Show moreLast updated: 13 days ago
    • Promoted
    • New!
    Director Product – Building and Managing Security Products - Cyber Security Startup - Salary INR 75 L

    Director Product – Building and Managing Security Products - Cyber Security Startup - Salary INR 75 L

    CareerXperts Consultingbangalore, karnataka, in
    We are seeking a hands-on product leader to drive the strategy, design, and operational delivery of AI-driven threat investigation and response content at platform scale. This role is ideal for a fo...Show moreLast updated: 19 hours ago
    • Promoted
    Contractor Security Engineer Level 3 – GRC Tech Solutions

    Contractor Security Engineer Level 3 – GRC Tech Solutions

    Mindlancehosur, tamil nadu, in
    Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 13 days ago
    • Promoted
    Sr. Staff Product Security Engineer

    Sr. Staff Product Security Engineer

    ConfidentialBengaluru / Bangalore, India
    The Product Security Team at Databricks is responsible for embedding security throughout the Software Development Lifecycle (SDLC). By reducing the likelihood of introducing vulnerabilities and mini...Show moreLast updated: 4 days ago
    • Promoted
    Sr Threat Detection Engineer

    Sr Threat Detection Engineer

    Insight GlobalBangalore, IN
    Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimizat...Show moreLast updated: 13 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcanahosur, tamil nadu, in
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago