Security Engineer -1
Team: Infrastructure
Location: Bangalore, Karnataka
Commitment: Full Time Employee
Workplace Type: onsite
What you will do
- 1. Security Tooling & Automation
- Contribute to building internal security tools, pipelines, and integrations for SAST, DAST, SCA, and secrets scanning.
- Automate repetitive security test cases and workflows using Python, Go, or Node.js.
- Create APIs and dashboards that expose real-time security telemetry.
- Integrate with CI/CD (GitHub Actions, Jenkins, ArgoCD) to enforce security gates.
- Improve vulnerability detection coverage and reduce manual review overhead through scalable automation.
- 2. Secure Software Development
- Write production-grade, maintainable code that enhances security posture across repos.
- Contribute to open-source or internal frameworks for secure code review, dependency risk detection, and compliance automation.
- Partner with developers to design security libraries and SDKs that make “secure by default” easy to adopt.
- 3. Threat Modeling & Design Reviews
- Participate in security architecture reviews and model threats for new features.
- Support translation of findings into engineering solutions.
- Contribute reusable threat modeling templates or scripts that scale across teams.
- 4. Application Security Testing
- Perform and automate web, API, and mobile app security assessments.
- Develop scripts to correlate findings across scanners, triage false positives, and prioritize remediation.
- Build one-click validation tools or fuzzers that developers can run locally.
- 5. Developer Empowerment & Culture
- Contribute to internal security documentation, workshops, and awareness programs.
- Champion developer-first security practices that reduce friction and improve remediation speed.
- Continuously identify opportunities to eliminate manual effort via code.
What you will need
- Education: B.Tech/M.Tech in Computer Science, Software Engineering, or equivalent technical field.
- Experience:
- 1-2 years of hands-on experience in software development and application security.
- Prior experience building security tools, writing automation frameworks, or contributing to DevSecOps initiatives.
- Technical Skills:
- Strong coding proficiency in at least one of Python, Java, Go, or Node.js.
- Solid understanding of web technologies, RESTful APIs, and CI/CD pipelines.
- Basic understanding of secure coding principles and common vulnerability classes (e.g., OWASP Top 10).
- Familiarity with security testing tools (e.g., Burp, Nuclei, ZAP, Trivy, Semgrep).
- Knowledge of AWS/GCP security fundamentals, Docker, and Kubernetes.
- Experience integrating security checks in GitHub Actions or Jenkins.
- Core Competencies:
- Builder mindset - treats security as an engineering problem.
- Solid understanding of distributed systems and application architecture fundamentals.
- Excellent communication - can explain security trade-offs to developers.
- Passion for automation, open-source tools, and continuous improvement.
- Bonus:
- Experience with security data pipelines, LLM-assisted code review, or AI-driven vulnerability correlation.
- Contributions to open-source security projects or in-house tooling frameworks.
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say
