Talent.com
This job offer is not available in your country.
Product Security Engineer

Product Security Engineer

TravelokaBengaluru, Karnataka, India
30+ days ago
Job description

Job Description

Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software architecture and should be able to perform manual security code review. They need to be able to integrate security in the software development process with defense-in-depth strategies such as automated testing in CI / CD pipeline. A Product Security Engineer preferably needs to have a software development background and should have practical programming knowledge.

They will work very closely with our Software Engineering Team to implement Secure SDLC in Traveloka. They will also need to have proficiency in handling multiple projects based on different frameworks and groups.

Responsibilities

  • Carry out manual and automated review of source code to identify security vulnerabilities and risks
  • Implement automated security testing tools (SAST, DAST, IAST) and their deployment within continuous integration systems
  • Implement hardening and secure framework such as RASP, WAF, safe library, and security decorator functions
  • Perform vulnerability assessment & penetration testing on web API, front-end service, internal RPC, and mobile application
  • Attend design reviews and actively lead the discussions from a security standpoint
  • Analyze possible security incident related to application security such as payment abuse or sensitive data exposure via web API
  • Ensure that product security requirements are identified early on and are being baked into all projects
  • Provide effective recommendations or patches to mitigate security vulnerabilities
  • Develop in-house tools to integrate with SDLC and to track and derive security metrics

Skills & Experience

  • Academic background in Computer Science or equivalent
  • Relevant professional experience or extensive experience in security activities (e.g. CTF, bug bounty, security research, publications, blog)
  • Practical knowledge of modern software development such as microservices, application containerization, REST architecture, object oriented programming, stateless / stateful authentication, and cloud platform
  • Working knowledge of one or more of these programming languages : Java, JavaScript, Kotlin, C#, Objective-C, Swift
  • Experience in security code review, vulnerability assessment, and penetration testing.
  • Knowledge of common vulnerabilities such as OWASP Top 10 and CWE including business logic issue (e.g. IDOR)
  • Core skill set in two or more of the following areas :
  • JavaScript framework (e.g. React)
  • Java framework (e.g. Spring)
  • Android / iOS platform
  • DevOps
  • AWS
  • Automation tool development
  • Dynamic debugging
  • Unit testing
  • Algorithm & data structure
  • If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

    Create a job alert for this search

    Security Engineer • Bengaluru, Karnataka, India

    Related jobs
    • Promoted
    Staff Engineer – Product Security

    Staff Engineer – Product Security

    AviatrixBengaluru, Karnataka, India
    Job Title : Staff Engineer – Product Security.For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security. Where current cybersecurity approa...Show moreLast updated: 11 days ago
    • Promoted
    Security Engineer (Red Team)

    Security Engineer (Red Team)

    Crossing Hurdleshosur, tamil nadu, in
    Your focus will be to uncover vulnerabilities, prompt-injection pathways, and data-exfiltration risks before adversaries do. Design and automate multi-turn attacks involving browser, terminal, and A...Show moreLast updated: 2 days ago
    • Promoted
    • New!
    Senior Application Security Engineer

    Senior Application Security Engineer

    MOURI Techhosur, tamil nadu, in
    We are seeking a highly skilled.The ideal candidate will bring hands-on experience in.You will work closely with engineering, DevOps, and security teams to build, automate, and secure systems acros...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    ▷ [Apply Now] Product Security Engineer

    ▷ [Apply Now] Product Security Engineer

    TravelokaBengaluru, Karnataka, India
    Job Description Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hard...Show moreLast updated: 2 hours ago
    • Promoted
    Security Engineer - Applications Security

    Security Engineer - Applications Security

    theSocialsBangalore
    Job Description : We are seeking an experienced Security Engineer with strong expertise in Application Security, Cloud Security, and VAPT to join our client's en...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    sliceBengaluru, Karnataka, India
    We’ve all felt how slow, confusing, and complicated banking can be.We’re building every product from scratch to be fast, transparent, and feel good, because we believe that the best products transc...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Engineer - Product Security

    Staff Engineer - Product Security

    AviatrixBengaluru, Karnataka, India
    Job Title : Staff Engineer – Product Security Location : Bangalore, India Who We Are : For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud se...Show moreLast updated: 5 days ago
    • Promoted
    Pluralsight - Product Security Engineer - SAST / DAST

    Pluralsight - Product Security Engineer - SAST / DAST

    PluralsightBangalore
    Job Description : The Product Security Engineers work closely with engineering teams to secure our Pluralsight platform.They will work on various Secure SDL programs ...Show moreLast updated: 14 days ago
    • Promoted
    Product Security Engineer II

    Product Security Engineer II

    FICOBengaluru, Karnataka, India
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 29 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Sonata Softwarehosur, tamil nadu, in
    Microsoft Defender or equivalent), including alert management, playbook creation, and automation of responses.Proven experience in preparing and executing. SIEM deployments (Azure Sentinel).Broader ...Show moreLast updated: 2 days ago
    • Promoted
    Lead Full-Stack / AI Security Engineer

    Lead Full-Stack / AI Security Engineer

    CloudMatoshosur, tamil nadu, in
    D8HQbbu-NcdrkE5bLxaXVZkskXWt2bjh / edit?usp=sharing&ouid=110344943628786127496&rtpof=true&sd=true.CloudMatos is building the next generation of. AI / ML, GenAI, and modern full-stack engineering.Managed...Show moreLast updated: 2 days ago
    • Promoted
    • New!
    Penetration Tester

    Penetration Tester

    VIDA Digital Identityhosur, tamil nadu, in
    We are seeking a skilled and innovative Security Researcher to lead our Liveness Testing and Presentation Attack Detection (PAD ) initiatives with a focus on offensive approach.The ideal candidate ...Show moreLast updated: 12 hours ago
    • Promoted
    Senior Security Engineer - Product Security

    Senior Security Engineer - Product Security

    People Gamut HR SolutionsBangalore
    As a part of the world-class engineering team, that is focused on solving some unique problems in the space (and one that has been delivering to commitments, as per our customer testimonials) we ar...Show moreLast updated: 30+ days ago
    • Promoted
    EdgeVerve - Product Security Engineer - Penetration Testing

    EdgeVerve - Product Security Engineer - Penetration Testing

    EdgeverveBangalore
    Job Objective : As a Product Security Engineer, you'll play a vital role in ensuring the security of our products, particularly those catering to the financial ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    Pocket FMBengaluru, Karnataka, India
    Pocket FM is the world’s largest audio entertainment platform, revolutionizing the way stories are told and consumed.We bring together storytelling, technology, and creativity to deliver an immersi...Show moreLast updated: 30+ days ago
    • Promoted
    Product Security Engineer

    Product Security Engineer

    TravelokaBengaluru, Karnataka, India
    Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security Engineer

    Security Engineer

    SignzyBengaluru, Karnataka, India
    Signzy is a digital trust system.We provide identification, background checks, forgery detection.Our biometric user authentication system and blockchain-based digital trail.This increases complianc...Show moreLast updated: 9 hours ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer Systemshosur, tamil nadu, in
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 2 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiBengaluru, Karnataka, India
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    MatchMove - Security Engineer - OWASP

    MatchMove - Security Engineer - OWASP

    MatchMoveBangalore
    About Us : MatchMove is a leading embedded finance platform that empowers businesses to embed financial services into their applications. We provide innovative solutions across...Show moreLast updated: 22 days ago