Product Security Engineer

5 - 10 years

5 - 8 Lacs

Posted:3 days ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

About the Role
Were seeking a Principal Product Security Engineer to play a critical part in building and evolving Quvia s security posture across our products entire lifecycle . In this highly impactful role, you ll partner with product management, engineering, and operations teams to assess product risks, define secure development standards, enforce security policies, and implement best practices to protect our products and, by extension, our customers data and operations.

This is a hands-on role requiring a deep understanding of secure software development, application security frameworks, and cloud-native product architectures, with a strong emphasis on vulnerability mitigation and secure design principles . If youre a strategic thinker with a passion for building intrinsically secure products and a knack for embedding security into the DNA of software development, we encourage you to apply.

What Youll Do:
  • Security Architecture & Design Review: Collaborate with product and engineering teams to review designs and architectures for new features and products, identifying potential security risks and recommending appropriate controls and mitigations.
  • Threat Modeling: Conduct threat modeling exercises for applications and systems to proactively identify and address potential security weaknesses.
  • Security Code Review: Perform manual and automated security code reviews to identify vulnerabilities such as OWASP Top 10, common weaknesses (CWEs), and other security flaws.
  • Vulnerability Management: Participate in the vulnerability management process, including triage, prioritization, and tracking of vulnerabilities identified through various sources (e.g., pen tests, bug bounties, internal scans).
  • Security Testing: Work with QA and development teams to integrate security testing into the CI/CD pipeline, including static application security testing (SAST), dynamic application security testing (DAST), and software composition analysis (SCA).
  • Security Tooling & Automation: Evaluate, implement, and maintain security tools and technologies to improve the efficiency and effectiveness of our product security program. Develop automation scripts to streamline security tasks.
  • Security Training & Awareness: Contribute to developing and delivering security training and awareness programs for engineering teams.
  • Incident Response Support: Provide security expertise and support during security incidents related to products.
  • Security Best Practices: Research and stay up-to-date with the latest security threats, vulnerabilities, and industry best practices. Evangelize and promote security-first development principles within the organization.

What Youll Need:
  • Education: Bachelors degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
  • Experience: 5+ years of experience in product security, application security, or a similar role.
  • Technical Skills:
    • Strong understanding of application security principles, secure coding practices, and common web application vulnerabilities (e.g., OWASP Top 10).
    • Proficiency in at least one programming language (e.g., Python, Java, Go, Node.js, C#) and the ability to review code for security flaws.
    • Experience with security testing tools (SAST, DAST, SCA) and methodologies.
    • Familiarity with cloud security principles and practices (e.g., AWS, Azure, GCP).
    • Understanding of cryptographic principles and secure communication protocols.
    • Experience with CI/CD pipelines and integrating security into the development lifecycle.
    • Knowledge of common security frameworks and standards (e.g., NIST, ISO 27001) is a plus.

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
Quvia (Formerly Neuron) logo
Quvia (Formerly Neuron)

Technology / Data Analytics

Tech City

RecommendedJobs for You

Bengaluru, Karnataka, India