
Senior Information Security Engineer (DevSecOps)
at E-Commerce Industry
SENIOR INFORMATION SECURITY ENGINEER (DEVSECOPS)
Key Skills: Software Development Life Cycle (SDLC), CI/CD
About Company: Consumer Internet / E-Commerce
Company Size: Mid-Sized
Experience Required: 6 - 10 years
Working Days: 5 days/week
Office Location: Bengaluru [Karnataka]
Review Criteria:
Mandatory:
- Strong DevSecOps profile
- Must have 5+ years of hands-on experience in Information Security, with a primary focus on cloud security across AWS, Azure, and GCP environments.
- Must have strong practical experience working with Cloud Security Posture Management (CSPM) tools such as Prisma Cloud, Wiz, or Orca along with SIEM / IDS / IPS platforms
- Must have proven experience in securing Kubernetes and containerized environments including image security,runtime protection, RBAC, and network policies.
- Must have hands-on experience integrating security within CI/CD pipelines using tools such as Snyk, GitHub Advanced Security,or equivalent security scanning solutions.
- Must have solid understanding of core security domains including network security, encryption, identity and access management key management, and security governance including cloud-native security services like GuardDuty, Azure Security Center etc
- Must have practical experience with Application Security Testing tools including SAST, DAST, and SCA in real production environments
- Must have hands-on experience with security monitoring, incident response, alert investigation, root-cause analysis (RCA), and managing VAPT / penetration testing activities
- Must have experience securing infrastructure-as-code and cloud deployments using Terraform, CloudFormation, ARM, Docker, and Kubernetes
- B2B SaaS Product companies
- Must have working knowledge of globally recognized security frameworks and standards such as ISO 27001, NIST, and CIS with exposure to SOC2, GDPR, or HIPAA compliance environments
Preferred:
- Experience with DevSecOps automation, security-as-code, and policy-as-code implementations
- Exposure to threat intelligence platforms, cloud security monitoring, and proactive threat detection methodologies, including EDR / DLP or vulnerability management tools
- Must demonstrate strong ownership mindset, proactive security-first thinking, and ability to communicate risks in clear business language
Roles & Responsibilities:
We are looking for a Senior Information Security Engineer who can help protect our cloud infrastructure, applications, and data while enabling teams to move fast and build securely.
This role sits deep within our engineering ecosystem. You’ll embed security into how we design, build, deploy, and operate systems—working closely with Cloud, Platform, and Application Engineering teams. You’ll balance proactive security design with hands-on incident response, and help shape a strong, security-first culture across the organization.
If you enjoy solving real-world security problems, working close to systems and code, and influencing how teams build securely at scale, this role is for you.
What You’ll Do-
Cloud & Infrastructure Security:
- Design, implement, and operate cloud-native security controls across AWS, Azure, GCP, and Oracle.
- Strengthen IAM, network security, and cloud posture using services like GuardDuty, Azure Security Center and others.
- Partner with platform teams to secure VPCs, security groups, and cloud access patterns.
Application & DevSecOps Security:
- Embed security into the SDLC through threat modeling, secure code reviews, and security-by-design practices.
- Integrate SAST, DAST, and SCA tools into CI/CD pipelines.
- Secure infrastructure-as-code and containerized workloads using Terraform, CloudFormation, ARM, Docker, and Kubernetes.
Security Monitoring & Incident Response:
- Monitor security alerts and investigate potential threats across cloud and application layers.
- Lead or support incident response efforts, root-cause analysis, and corrective actions.
- Plan and execute VAPT and penetration testing engagements (internal and external), track remediation, and validate fixes.
- Conduct red teaming activities and tabletop exercises to test detection, response readiness, and cross-team coordination.
- Continuously improve detection, response, and testing maturity.
Security Tools & Platforms:
- Manage and optimize security tooling including firewalls, SIEM, EDR, DLP, IDS/IPS, CSPM, and vulnerability management platforms.
- Ensure tools are well-integrated, actionable, and aligned with operational needs.
Compliance, Governance & Awareness:
- Support compliance with industry standards and frameworks such as SOC2, HIPAA, ISO 27001, NIST, CIS, and GDPR.
- Promote secure engineering practices through training, documentation, and ongoing awareness programs.
- Act as a trusted security advisor to engineering and product teams.
Continuous Improvement:
- Stay ahead of emerging threats, cloud vulnerabilities, and evolving security best practices.
- Continuously raise the bar on a company's security posture through automation and process improvement.
Endpoint Security (Secondary Scope):
- Provide guidance on endpoint security tooling such as SentinelOne and Microsoft Defender when required.
Ideal Candidate:
- Strong hands-on experience in cloud security across AWS and Azure.
- Practical exposure to CSPM tools (e.g., Prisma Cloud, Wiz, Orca) and SIEM / IDS / IPS platforms.
- Experience securing containerized and Kubernetes-based environments.
- Familiarity with CI/CD security integrations (e.g., Snyk, GitHub Advanced Security, or similar).
- Solid understanding of network security, encryption, identity, and access management.
- Experience with application security testing tools (SAST, DAST, SCA).
- Working knowledge of security frameworks and standards such as ISO 27001, NIST, and CIS.
- Strong analytical, troubleshooting, and problem-solving skills.
Nice to Have:
- Experience with DevSecOps automation and security-as-code practices.
- Exposure to threat intelligence and cloud security monitoring solutions.
- Familiarity with incident response frameworks and forensic analysis.
- Security certifications such as CISSP, CISM, CCSP, or CompTIA Security+.
Perks, Benefits and Work Culture:
A wholesome opportunity in a fast-paced environment that will enable you to juggle between concepts, yet maintain the quality of content, interact and share your ideas and have loads of learning while at work. Work with a team of highly talented young professionals and enjoy the comprehensive benefits that company offers.

Similar jobs
Key Responsibilities:
Business Leadership:
Develop a clear vision and strategic plan for the dietetic department, aligning it with the overall vision and objectives.
Lead the team in implementing goals, strategies, and initiatives that focus on providing exceptional diet & wellness services.
Clinical Expertise:
Utilize advanced knowledge and expertise in nutrition and dietetics to assess patients' nutritional needs, interpret diagnostic results, and create tailored diet plans.
Counselling to educate clients/ patients on appropriate diets and regular health test to enhance and maintain optimum health. Monitor and review the progress of client/patients
after every meeting. Guide client/patient on regular basis and record behavioral /dietary/activity deviations with endorsement from time to time.
Team Management:
Lead and manage the dietetic team, providing guidance, mentorship, and professional development opportunities.
Foster a collaborative and positive work environment that encourages growth and ensures each team member's contribution is valued.
Collaboration with Healthcare Professionals:
Work closely with other healthcare professionals, including Clinicians, and other healthcare specialist. Collaborate in the diagnosis and treatment planning process, integrating diet & wellness services seamlessly with other medical interventions.
Quality Assurance and Compliance:
Establish and maintain rigorous quality assurance standards for all dietetic services. Ensure that the department adheres to relevant regulations, ethical guidelines, and company standards to provide accurate and reliable services.
Customer Service & Engagement:
Represent the significance of diet & wellness. Participate in public events, seminars, and camps to raise awareness about the role of die & wellness in overall well-being.
Ensure patients and clients receive compassionate, empathetic, and respectful care. Implement strategies to enhance the customer experience and maintain a high level of satisfaction.
Ensure customer satisfaction and feedback ratings to be achieved as per given standards.
Data Analysis and Reporting:
Oversee the collection and analysis of data related to diet & wellness outcomes and department performance.
Prepare reports and present findings to inform decision-making and demonstrate the impact of the dietetic department's interventions.
- This job description provides a general outline of responsibilities and qualifications and is not exhaustive. The Dietitian may be required to perform additional duties as necessary for the smooth functioning of the business.
Requirements:
- Bachelor's or Master's degree in Nutrition, Dietetics, or a related field.
- Registered Dietitian (RD) or equivalent certification.
- Proven experience in a leadership or managerial role within a dietetic department.
- Strong clinical knowledge and expertise in nutrition assessment and intervention.
- Excellent communication, interpersonal, and organizational skills.
- Ability to work collaboratively in a multidisciplinary healthcare environment
About Blackhawk Network
Blackhawk Network (BHN) delivers branded payment solutions through the prepaid products, technologies and network that connect brands and people. We collaborate with our partners to innovate, translating market trends in branded payments to increase reach, loyalty, and revenue. We reliably execute security-minded solutions worldwide. Join us as we shape the future of global branded payments.
Overview:
BHN Rewards is a platform for marketers to send & manage global e- gift campaigns like Amazon or Visa e-gift cards. Marketers love how BHN Rewards makes it easy to deliver
gifts to hundreds and thousands of recipients. BHN Rewards is the only integrated gifting partner for the top marketing & survey platforms - SurveyMonkey, Marketo, HubSpot,
and Qualtrics. BHN Rewards has also entered into Employee rewards with our recent launch of BHN Rewards for the Microsoft Teams App.
BHN Rewards was acquired by Blackhawk Networks in August 2021, the global leader in
rewards and incentives.
At Blackhawk Network, we shape the future of global branded payments through prepaid products, technologies, and networks that connect brands and people. Our collaborative innovation and scalable, security-minded solutions help our partners to increase reach, loyalty, and revenue. We believe our future holds great things for Blackhawk Network and its partners. We believe that together, we can shape the future. Our beliefs? Win as one team, be innovative, have global excellence, and be inspiring! Blackhawk is a multi-billion dollar US-based corporation, with headquarters in Pleasanton, California, and offices in over 28 countries.
So, what are you waiting for? Shape your career and join our global network
Responsibilities
▪ Expertise in API testing and experience in working with API based applications
● Expertise and experience in designing Automation Frameworks from scratch
● Strong in Web Services Automation
● Technical expertise in building effective testing frameworks that are highly scalable and reusable. (Karatelabs.io)
● Programming Fundamentals: Proficiency in a programming language, understanding of data structures and algorithms, and knowledge of object-oriented programming principles. (Java and Javascript)
● Software Development Lifecycle: Familiarity with the software development process, agile methodologies, and version control systems.
● Problem-Solving and Analytical Skills: Ability to analyze and solve complex problems, logical reasoning, and troubleshooting skills.
● Database and Data Management: Understanding of relational databases, SQL, and data modeling concepts.
● Web Development: Familiarity with HTML, CSS, JavaScript, and web development frameworks for building web applications.
● Communication and Collaboration: Strong communication skills, ability to work in a team, and willingness to learn and adapt to new technologies.
Qualifications
▪ 1-2 years of experience with Bachelor’s degree in Computer Science
▪ Excellent communication skills
▪ Love for learning new things - Curiosity and grasping abilities
▪ Expert coding and design skills
▪ Thorough understanding of Software Development Life Cycle and Quality methodologies
▪ Experience working with agile/scrum-based teams
▪ Organized, focused on building, improving, resolving and delivering
Conduct outbound calls to potential clients based in the United States,
promoting our IT services and generating leads.
Build and maintain strong relationships with prospects to understand their
business needs and present appropriate solutions.
Achieve monthly targets.
Develop a deep understanding of our IT services and effectively
communicate their value to potential clients.
Stay up-to-date with industry trends and competitive landscape to effectively
position our services in the market.
Collaborate with the sales team to identify cross-selling and upselling
opportunities.
Maintain accurate and up-to-date records of all sales activities in the CRM
system.
Participate in regular sales meetings and provide insights and feedback on
market trends.
Overview:
Role: Software Development - Other
Industry Type: IT Services & Consulting
Department: Engineering - Software & QA
Role Category: Software Development
Responsibilities
• Hands-on developer who can breakdown a large/complex problem, quickly
derive an efficient design, document and implement the core framework.
• Demonstrated appreciation for code performance, scalability, and extensibility.
• Understands big picture/business cases behind individual requirements and attempts to
offer lower cost solutions.
• Oversees requirement, project planning, design reviews, and feature
implementation.
• Develop and maintain effective automated unit test coverage of new and existing code.
• Write quality, testable, maintainable, and well-documented code.
Qualification:
•Ready to relocate to Ahmedabad, Gujarat
•Solid understanding of object-oriented programming (OOP).
•Web API and MVC Framework.
•C# with .NET or .NET Core.
•Good MS SQL experience and database development using T-SQL.
•Familiarity with common developer tools GIT, SVN, or TFS.
• JavaScript frameworks such as jQuery / Angular framework / React js.
•Excellent written and verbal communication skills in English.
Key Skills
• Angular
• MVC Framework
• CSS
• .Net
• JavaScript
• HTML
• JavaScript Framework
Perks and Benefits
• Rewards and Recognition.
• Flexible working hours.
• Exposure to international market
The selected intern's day-to-day responsibilities include:
- Developing content for blogs, articles, product descriptions, social media, and the company website.
- Assisting the marketing team in developing content for advertising campaigns.
Editing and polishing existing content to improve readability.
- Conducting keyword research and using SEO best practices to increase traffic to the company website.
- Creating compelling headlines and body copy that will capture the attention of the target audience.
- Identifying customers' needs and recommending new content to address gaps in the company's current content.
Job Brief:
You'll be joining Mindtickle’s InfoSec and Compliance team, which is responsible for various functions related to Security, Privacy, and Compliance around Mindtickle's rapidly growing cloud platform. You'll play a crucial role in all our compliance & information security initiatives, including but not limited to those arising from regulations (e.g., GDPR, CCPA, UK DPA 2018, FINRA), audit requirements (e.g., SOC 2, HIPAA), and customer/ prospects requests (typically large enterprises).
As Data Privacy & Compliance Manager, you will champion the highest data privacy standards and drive forward compliance across all of Mindtickle. Crucial to this role will be an expert knowledge of international data protection laws and a proactive and pragmatic approach towards data privacy and compliance.
Key Responsibilities:
-
Act as the single point of contact for all privacy-related topics, including communication with customers and prospects, including RFPs, emails, or privacy calls
-
Closely working with the internal legal team and external legal counsel to support the review of third parties/customer data processing addendums (DPAs), standard contractual clauses, contracts, and other data protection agreements
-
Maintain the data protection terms agreed with customers in a contract management software
-
Perform due diligence of new third parties and periodic risk review of existing third parties, including processes around sub-processors
-
Support in other industry compliance projects such as ADA, Section 508, WCAG, FINRA, 21 CFR Part 11, etc.
-
Lead the assessment of new legislation or other regulatory changes (GDPR, CCPA, UK DPA 2018, LGPD, PIPEDA, Swiss FDAP) and make recommendations as necessary to ensure that risks are mitigated as well as ongoing compliance
-
To work flexibly and collaboratively across all teams in the organization while driving privacy & compliance-related projects, including sales, customer success, product, and engineering
-
Own internal and external privacy audit projects, including planning, scoping, need analysis, ongoing project management, and communications with all relevant stakeholders
-
Onboard privacy solutions, design, build and deploy data privacy programs on the solutions to ensure compliance with privacy requirements
-
Maintain Records of Processing Activities (ROPA) and ensure Privacy By Design for new features/changes in the platform
-
Undertake all other reasonable and related tasks associated with this role
Desired Qualification:
-
5-10 years of experience in data privacy and compliance, with exposure to cloud software platforms
-
Extensive experience in data protection and knowledge of relevant legislation, including GDPR, Standard Contractual Clauses, Transfer Impact Assessment, CCPA, UK DPA 2018, LGPD, PIPEDA, Swiss FDAP, etc.
-
Certifications such as CIPP/E, CIPP/US, CIPM, CIPT, etc., are preferred
-
Specialist knowledge in a relevant area, e.g., data security and individual rights requests
-
Excellent communication, interpersonal, project management, and issue resolution skills
-
Excellent analytical skills, organizational skills, ingenuity, and the ability to work as part of a team
-
Experience in managing privacy audits and risk management processes
-
Demonstrated ability to learn quickly, take the initiative, and drive complex projects
· Participate in the entire application lifecycle, focusing on coding and debugging
· Write clean code to develop functional web applications
· Troubleshoot and debug applications
· Perform UI tests to optimize performance
· Manage cutting-edge technologies to improve legacy applications
· Collaborate with Front-end developers to integrate user-facing elements with server- side logic
· Gather and address technical and design requirements
· Provide training and support to internal teams
· Build reusable code and libraries for future use
· Liaise with developers, designers and system administrators to identify new features
· Follow emerging technologies
|
Primary Responsibilities: •Delivering a complete front-end application, creating modules and components and coupling them together into a functional app. • Creating self-contained, reusable, and testable modules and components • Validating user actions on the client side and providing responsive feedback • Ensuring a timely code delivery in an accurate fashion, with a focus on high performance. • Validating user actions on the client side and providing responsive feedback • Evaluate Functional and non-functional requirements and ensure that they are addressed with an apt technical solution • Coordinating the task work flow between graphic designer, content management and other key technical stakeholders. • Coordinating with the back-end developer and testing team in the process of building and testing APIs. • Familiar with agile software development methodologies (e.g. SCRUM / Agile / Kanban)
|
|
Qualifications and Educational Requirements |
|
• BE/B.Tech in Computer Science or related stream from a reputed Institute.
|
|
Specialist Skills and Experience Required |
|
• The candidate should have 4 to 10years of relevant software industry experience, specifically on front end technologies • Strong hands-on experience of JavaScript, Angular6, HTML5, CSS3 and Webpack. • Should have working knowledge of tools - Jenkins, Docker and Selenium. • Architecting and automating the build process for production, using task runners or scripts |
Hiring Java Architects/ Tech Leads with expertise in Microservices, and Spring Framework. Experience of 8-10 yrs.
Notice Period - immediate to 45 days joiners only
Location - Bangalore and Chennai
Experience: 4+ yrs
Salary: Not Disclosed
Location: Hyderabad
Responsibilities:
- Analyze, design and support implementation of business specific Pega solutions and/or framework
- Responsible for implementing technical solutions on Pega 8.x
- Ability to create reusable components that can be leveraged across the enterprise for providing top-notch user experience
- Ability to translate complex business requirement into functional technical requirements using Pega Systems Smart BPM methodology and DCO tools
- Good hands on implementing PEGA integration services using REST, SOAP, Email etc. Good understanding of PEGA case management features
- Design and implement product features in collaboration with business and IT stakeholders
- Design reusable components, frameworks and libraries
- Ability to interact with business analysts and business team members to refine requirements, Use Cases
- Perform all phases of software engineering including requirements analysis, application design, code development and testing
- Work very closely with architecture groups and drive solutions
- Participate in an Agile / Scrum methodology to deliver high-quality software releases
- Design and develop innovative solutions to meet the needs of the business
- Review code and provide feedback relative to best practices and improving performance
- Troubleshoot production support issues post-deployment and come up with solutions as required
- Mentor and guide other software/Pega engineers within the team
- Experience with troubleshooting Production log files and performance issues
- Responsible for unit testing more complex individual and team deliverables based on established test plans
- Responsible for ensuring an efficient integration of programming deliverables timely builds and overall code quality
- Contributes to the delivery of new applications and to the maintenance and enhancement of existing applications with shared responsibility for the technical issues
Experience and Qualifications:
- Bachelor’s Degree in computer science, or Information Systems or Engineering is required, else in lieu, a demonstrated equivalence in work experience is mandatory.
- Pega Systems Certified Senior System Architect (CSSA)
- 5+ Years of Experience on Pega PRPC (8.x/7.x versions) and Frame worked Case Management
- In-Depth knowledge of Pega Upgrades, Integration, Performance Management and all Pega relevant Tools
- Ability to negotiate and allocate resources appropriately for development and implementation
- Excellent written, communication and presentation skills










