Jobgether

Lead Security Engineer

Jobgether · India

Internet Marketplace Platforms · 11-50 employees

15 h ago
Remote Senior (5-10 yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will lead application and AI security initiatives, establishing standards and best practices across engineering teams. Additionally, you will conduct threat modeling, perform security assessments, and drive automation within CI/CD pipelines to ensure resilient systems.

What they look for

Application security AI security Threat modeling Secure architecture DevSecOps CI/CD automation Kubernetes Docker SAST DAST SCA Python Go JavaScript Google Cloud Platform Terraform

Requirements

The role requires 8+ years of cybersecurity experience with deep expertise in application security and engineering-focused initiatives. Candidates must possess strong knowledge of AI/LLM security, cloud environments, and modern security tooling.

Benefits

Fully remote work environment Flexibility to work from anywhere in India Professional growth opportunities Technical leadership Mentoring Exposure to emerging technologies

Full description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Lead Security Engineer based in India.

This role offers an opportunity to lead critical security initiatives within a fast-growing, AI-driven technology environment. You will help shape application security practices, protect complex platforms, and strengthen security across the software development lifecycle. The position combines hands-on engineering, strategic leadership, and cross-functional collaboration with product, infrastructure, and AI teams. You will drive secure architecture decisions, improve security automation, and help build resilient systems at scale. This is a high-impact role for a security expert passionate about emerging threats, AI security, and developer enablement. You will contribute to creating a strong security culture while mentoring engineers and influencing technical direction globally.

\n

Accountabilities: As a Lead Security Engineer, you will be responsible for advancing application and AI security capabilities while partnering with engineering teams to embed security into products and processes. You will provide technical leadership, improve security practices, and ensure systems remain protected against evolving threats.

  • Lead application security initiatives across products and engineering teams, establishing security standards and best practices.
  • Conduct architecture reviews, secure design assessments, threat modeling, and security evaluations for new features and platforms.
  • Perform security assessments across web, mobile, and API-based applications, identifying vulnerabilities and driving remediation efforts.
  • Define and scale secure software development lifecycle (SDLC) practices across engineering teams.
  • Partner with developers to implement secure coding practices and improve vulnerability management processes.
  • Lead security reviews for AI-powered applications, large language model integrations, and intelligent systems.
  • Develop security controls for AI environments, including protections against prompt injection, data leakage, model abuse, and insecure integrations.
  • Improve security automation by integrating testing and monitoring tools into CI/CD pipelines.
  • Drive developer education through documentation, training, and security enablement programs.
  • Mentor engineers and promote a security-first mindset across technical teams.
  • Collaborate with technical and non-technical stakeholders to communicate risks, influence roadmaps, and align security priorities with business objectives.
  • Stay updated on emerging cybersecurity threats, application security trends, and AI security developments.

Requirements:

The ideal candidate brings deep cybersecurity expertise, strong application security knowledge, and the ability to influence engineering teams through technical leadership and collaboration. You should be comfortable working in complex environments where security, scalability, and innovation intersect.

  • 8+ years of experience in cybersecurity, with strong expertise in application security and engineering-focused security initiatives.
  • Proven experience securing web, mobile, and API environments, including OWASP standards and authentication technologies such as OAuth 2.0, OIDC, JWT, and SAML.
  • Hands-on experience with threat modeling, secure architecture reviews, code reviews, penetration testing, and security assessments.
  • Strong DevSecOps experience, including CI/CD security automation, container security using Kubernetes and Docker, and security tooling such as SAST, DAST, SCA, and secret scanning.
  • Specialized knowledge of AI and LLM security, including mitigation strategies for prompt injection, data exposure, model misuse, and insecure agent integrations.
  • Programming or scripting experience with languages such as Python, Go, JavaScript, or Bash.
  • Strong communication skills with the ability to influence engineering, product, and leadership stakeholders.
  • Experience securing cloud environments, preferably with Google Cloud Platform.
  • Knowledge of Infrastructure as Code security, including Terraform.
  • Familiarity with CSPM/CNAPP solutions and modern cloud security practices.
  • Experience with red teaming, adversary simulation, purple team exercises, or security research is a plus.
  • Relevant security certifications such as CEH, OSCP, GWAPT, CISSP, GCP Professional Cloud Security Engineer, or equivalent are advantageous.
  • Experience contributing to open-source security projects, bug bounty programs, or cybersecurity research is preferred.

Benefits:

  • Fully remote work environment with flexibility to work from anywhere in India.
  • Opportunity to contribute to security initiatives for large-scale, AI-powered technology platforms.
  • High-impact role with ownership over application security, AI security, and engineering security practices.
  • Collaborative global environment with opportunities to work across engineering, product, infrastructure, and AI teams.
  • Opportunities for professional growth, technical leadership, and mentoring.
  • Exposure to emerging technologies and complex security challenges.

\nHow Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1