About the job
Join Our Team as a Staff/Lead Security Engineer
Location: Bengaluru, Karnataka
Experience Required: 8+ years
Employment Type: Full-time
Department: Security Engineering
Role Overview:
We are seeking a highly skilled Staff/Lead Security Engineer to take charge of enhancing our security posture across various platforms including AI systems, microservices, data pipelines, and mobile/web applications. You will be responsible for designing and implementing scalable security controls that integrate smoothly into our CI/CD processes and cloud infrastructure. This role is a unique opportunity to combine advanced technical expertise with practical risk assessment.
This position involves collaboration with AI, Product, and DevOps teams to embed security measures from the outset of development.
Key Responsibilities:
Security Engineering & Automation:
- Design and implement robust security automation frameworks for threat detection, remediation, and compliance validation across both cloud and application layers.
- Manage SentinelOne EDR/XDR and SIEM platforms to facilitate automated detection and response workflows.
- Develop tools to enhance security visibility in AI model pipelines, APIs, and data integrations.
- Integrate security controls such as SAST, DAST, SCA, and IaC scanning into CI/CD pipelines utilizing tools like Arnica.
Application & API Security:
- Configure and manage Reblaze WAF for tailored DDoS and bot protection.
- Conduct secure code reviews and threat modeling for AI microservices, REST APIs, and agentic frameworks.
- Work closely with engineering teams to address vulnerabilities and enforce secure development lifecycle practices.
- Lead periodic Vulnerability Assessment & Penetration Testing (VAPT) for web, mobile, and Agentic AI platforms.
Cloud & Infrastructure Security:
- Secure multi-cloud environments (GCP/AWS) using both native security services and third-party tools.
- Establish and maintain Infrastructure as Code (IaC) security baselines with automated configuration drift detection.
- Oversee management of secrets, IAM policies, and container security within production workloads.
- Architect and enforce Zero Trust Network Access (ZTNA) policies across internal services, cloud workloads, and third-party integrations.
- Identify and remediate misconfigurations, exposed defaults, and public vulnerabilities across systems such as Grafana, Zookeeper, and Prometheus.
AI & Data Security:
- Continuously monitor for compromised datasets, credentials, and attempts at model theft across deep/dark web channels.
- Implement data protection measures for AI training pipelines, model storage, and inference endpoints.
- Deploy and fine-tune Data Loss Prevention (DLP) policies to prevent sensitive data exfiltration across SaaS, cloud, and endpoint channels.
- Utilize Cloud Access Security Broker (CASB) solutions to enforce security policies and enhance visibility.

