Cutshort logo
E-Commerce Industry  logo
Senior Information Security Engineer (DevSecOps)
E-Commerce Industry
Senior Information Security Engineer (DevSecOps)
E-Commerce Industry 's logo

Senior Information Security Engineer (DevSecOps)

at E-Commerce Industry

Agency job
6 - 10 yrs
₹30L - ₹50L / yr
Bengaluru (Bangalore)
Skills
Security Information and Event Management (SIEM)
Information security governance
ISO/IEC 27001:2005
Systems Development Life Cycle (SDLC)
Software Development
Software development methodology
CI/CD
Information security management system
Information security
skill iconAmazon Web Services (AWS)
Windows Azure
Microsoft Windows Azure
SQL Azure
Google Cloud Platform (GCP)
IDS
IPS
skill iconKubernetes
RBAC
Network Security
Windows Runtime
skill iconGitHub
Encryption
Disk encryption
Identity management
Access control
Web application security
Cyber Security
Security awareness
Spring Security
Security operations
Data security
Report Conversion Tool
SCA
Root cause analysis
RCA
Penetration testing
Cloud Computing
Terraform
AWS CloudFormation
skill iconDocker
ISO/IEC 27000-series
NIST
NIST 800-53
NIST SP 800 Series
HIPAA
Threat analysis
Threat modeling
DLP
EMC RSA DLP
Vulnerability assessment
Vulnerability management
Vulnerability scanning
Google Cloud Storage
Oracle Cloud
Automation
Test Automation (QA)
Troubleshooting
Hardware troubleshooting
Software troubleshooting
Mechanical troubleshooting
Electronic troubleshooting
Oracle
Microsoft SQL Server
Microsoft Windows
AWS Lambda
AWS Simple Notification Service (SNS)
AWS RDS
AWS Elastic Beanstalk
AWS Simple Queuing Service (SQS)
AWS ECR
AWS Bedrock
IPsec

SENIOR INFORMATION SECURITY ENGINEER (DEVSECOPS)

Key Skills: Software Development Life Cycle (SDLC), CI/CD

About Company: Consumer Internet / E-Commerce

Company Size: Mid-Sized

Experience Required: 6 - 10 years

Working Days: 5 days/week

Office Location: Bengaluru [Karnataka]


Review Criteria:

Mandatory:

  • Strong DevSecOps profile
  • Must have 5+ years of hands-on experience in Information Security, with a primary focus on cloud security across AWS, Azure, and GCP environments.
  • Must have strong practical experience working with Cloud Security Posture Management (CSPM) tools such as Prisma Cloud, Wiz, or Orca along with SIEM / IDS / IPS platforms
  • Must have proven experience in securing Kubernetes and containerized environments including image security,runtime protection, RBAC, and network policies.
  • Must have hands-on experience integrating security within CI/CD pipelines using tools such as Snyk, GitHub Advanced Security,or equivalent security scanning solutions.
  • Must have solid understanding of core security domains including network security, encryption, identity and access management key management, and security governance including cloud-native security services like GuardDuty, Azure Security Center etc
  • Must have practical experience with Application Security Testing tools including SAST, DAST, and SCA in real production environments
  • Must have hands-on experience with security monitoring, incident response, alert investigation, root-cause analysis (RCA), and managing VAPT / penetration testing activities
  • Must have experience securing infrastructure-as-code and cloud deployments using Terraform, CloudFormation, ARM, Docker, and Kubernetes
  • B2B SaaS Product companies
  • Must have working knowledge of globally recognized security frameworks and standards such as ISO 27001, NIST, and CIS with exposure to SOC2, GDPR, or HIPAA compliance environments


Preferred:

  • Experience with DevSecOps automation, security-as-code, and policy-as-code implementations
  • Exposure to threat intelligence platforms, cloud security monitoring, and proactive threat detection methodologies, including EDR / DLP or vulnerability management tools
  • Must demonstrate strong ownership mindset, proactive security-first thinking, and ability to communicate risks in clear business language


Roles & Responsibilities:

We are looking for a Senior Information Security Engineer who can help protect our cloud infrastructure, applications, and data while enabling teams to move fast and build securely.


This role sits deep within our engineering ecosystem. You’ll embed security into how we design, build, deploy, and operate systems—working closely with Cloud, Platform, and Application Engineering teams. You’ll balance proactive security design with hands-on incident response, and help shape a strong, security-first culture across the organization.


If you enjoy solving real-world security problems, working close to systems and code, and influencing how teams build securely at scale, this role is for you.


What You’ll Do-

Cloud & Infrastructure Security:

  • Design, implement, and operate cloud-native security controls across AWS, Azure, GCP, and Oracle.
  • Strengthen IAM, network security, and cloud posture using services like GuardDuty, Azure Security Center and others.
  • Partner with platform teams to secure VPCs, security groups, and cloud access patterns.


Application & DevSecOps Security:

  • Embed security into the SDLC through threat modeling, secure code reviews, and security-by-design practices.
  • Integrate SAST, DAST, and SCA tools into CI/CD pipelines.
  • Secure infrastructure-as-code and containerized workloads using Terraform, CloudFormation, ARM, Docker, and Kubernetes.


Security Monitoring & Incident Response:

  • Monitor security alerts and investigate potential threats across cloud and application layers.
  • Lead or support incident response efforts, root-cause analysis, and corrective actions.
  • Plan and execute VAPT and penetration testing engagements (internal and external), track remediation, and validate fixes.
  • Conduct red teaming activities and tabletop exercises to test detection, response readiness, and cross-team coordination.
  • Continuously improve detection, response, and testing maturity.


Security Tools & Platforms:

  • Manage and optimize security tooling including firewalls, SIEM, EDR, DLP, IDS/IPS, CSPM, and vulnerability management platforms.
  • Ensure tools are well-integrated, actionable, and aligned with operational needs.


Compliance, Governance & Awareness:

  • Support compliance with industry standards and frameworks such as SOC2, HIPAA, ISO 27001, NIST, CIS, and GDPR.
  • Promote secure engineering practices through training, documentation, and ongoing awareness programs.
  • Act as a trusted security advisor to engineering and product teams.


Continuous Improvement:

  • Stay ahead of emerging threats, cloud vulnerabilities, and evolving security best practices.
  • Continuously raise the bar on a company's security posture through automation and process improvement.


Endpoint Security (Secondary Scope):

  • Provide guidance on endpoint security tooling such as SentinelOne and Microsoft Defender when required.


Ideal Candidate:

  • Strong hands-on experience in cloud security across AWS and Azure.
  • Practical exposure to CSPM tools (e.g., Prisma Cloud, Wiz, Orca) and SIEM / IDS / IPS platforms.
  • Experience securing containerized and Kubernetes-based environments.
  • Familiarity with CI/CD security integrations (e.g., Snyk, GitHub Advanced Security, or similar).
  • Solid understanding of network security, encryption, identity, and access management.
  • Experience with application security testing tools (SAST, DAST, SCA).
  • Working knowledge of security frameworks and standards such as ISO 27001, NIST, and CIS.
  • Strong analytical, troubleshooting, and problem-solving skills.


Nice to Have:

  • Experience with DevSecOps automation and security-as-code practices.
  • Exposure to threat intelligence and cloud security monitoring solutions.
  • Familiarity with incident response frameworks and forensic analysis.
  • Security certifications such as CISSP, CISM, CCSP, or CompTIA Security+.


Perks, Benefits and Work Culture:

A wholesome opportunity in a fast-paced environment that will enable you to juggle between concepts, yet maintain the quality of content, interact and share your ideas and have loads of learning while at work. Work with a team of highly talented young professionals and enjoy the comprehensive benefits that company offers.

Read more
Users love Cutshort
Read about what our users have to say about finding their next opportunity on Cutshort.
Shubham Vishwakarma's profile image

Shubham Vishwakarma

Full Stack Developer - Averlon
I had an amazing experience. It was a delight getting interviewed via Cutshort. The entire end to end process was amazing. I would like to mention Reshika, she was just amazing wrt guiding me through the process. Thank you team.
Companies hiring on Cutshort
companies logos

Similar jobs

IBS Software Services
Bengaluru (Bangalore)
5 - 12 yrs
₹14L - ₹23L / yr
skill iconJava
skill iconAmazon Web Services (AWS)
skill iconKotlin

Job Summary

We are looking for a highly skilled Senior Java/Kotlin Developer with strong experience in Microservices Architecture and AWS Cloud. The ideal candidate should have hands-on expertise in designing, developing, and deploying scalable microservices-based applications using Java/Kotlin and AWS services.

Key Responsibilities

  • Design and develop scalable, secure, and high-performance microservices using Java and/or Kotlin
  • Build RESTful APIs using frameworks like Spring Boot / Spring Cloud
  • Develop and deploy cloud-native applications on AWS
  • Implement containerized applications using Docker and orchestrate using Kubernetes / EKS
  • Work with messaging systems like Kafka / SQS
  • Implement CI/CD pipelines using tools like Jenkins / GitHub Actions
  • Ensure best practices in system design, code quality, testing, and security
  • Collaborate with cross-functional teams (DevOps, QA, Product)
  • Participate in code reviews and mentor junior developers

Required Skills

  • 5+ years of strong experience in Java development
  • Hands-on experience in Kotlin
  • Strong knowledge of Microservices Architecture
  • Experience with Spring Boot, Spring MVC, Spring Security
  • Strong experience in AWS services such as:
  • EC2
  • S3
  • RDS
  • Lambda
  • ECS/EKS
  • API Gateway
  • SQS/SNS
  • Experience with Docker & Kubernetes
  • Strong understanding of REST APIs and distributed systems
  • Experience with relational databases (MySQL/PostgreSQL) and NoSQL (MongoDB/DynamoDB)
  • Good understanding of design patterns and clean architecture
  • Experience in Agile/Scrum methodology


Read more
QAgile Services
at QAgile Services
1 recruiter
Radhika Chotai
Posted by Radhika Chotai
Remote only
5 - 7 yrs
₹8L - ₹12L / yr
espresso
Xcuitest
CI/CD
webdriver
skill iconJenkins
+8 more

Must-Have Skills

1. Mobile Test Automation – Strong hands-on experience in Espresso (Android),

XCUITest (iOS), and WebDriverIO for web & mobile hybrid apps.

2. Programming Languages – Proficiency in Java, Kotlin, Swift, and

JavaScript/TypeScript.

3. Test Frameworks & Tools – Experience with JUnit, TestNG, Mocha, Appium

(optional), WebDriverIO.

4. CI/CD & DevOps – Hands-on experience in Jenkins, CircleCI, GitHub Actions, and

Bitrise.

5. Version Control – Strong knowledge of Git, GitHub, Bitbucket.

6. Cloud Device Testing – Experience with Sauce Labs, BrowserStack, AWS Device

Farm, or Firebase Test Lab.

7. API Testing – Hands-on experience with Postman, REST Assured, or Kotlin for

API automation.

8. Performance Testing – Exposure to mobile performance testing using tools like

Android Profiler, Xcode Instruments, JMeter.

9. Agile & Collaboration – Familiarity with JIRA, Rally, Confluence, and working in

Agile environments.

10. Debugging & Troubleshooting – Strong ability to debug test failures and optimize

automation performance.


Develop and execute automation test scripts for Android (Espresso/JetPack

Compose) and iOS (XCUITest) applications.

● Work closely with development and QA teams to ensure complete test coverage

and seamless integration.

● Maintain and optimize existing test automation frameworks for scalability,

reliability, and performance.

● Set up and manage automation testing workflows in CI/CD pipelines using Jenkins, CircleCI, and other tools.




Read more
Pinsout Innovation
Ayush Singhal
Posted by Ayush Singhal
Noida
1 - 2 yrs
₹3.2L - ₹4.2L / yr
skill iconAngularJS (1.x)
skill iconAngular (2+)
skill iconReact.js
skill iconNodeJS (Node.js)
skill iconLaravel
+1 more
  1. Proven experience as a Laravel Developer with a strong portfolio of past projects.
  2. In-depth knowledge of Laravel, PHP, and MySQL.
  3. Experience with front-end technologies such as HTML, CSS, JavaScript, and jQuery.
  4. Familiarity with version control systems (e.g., Git).
  5. Understanding of RESTful API development and consumption.
  6. Strong problem-solving and communication skills.
  7. Ability to work collaboratively in a team environment.
  8. Attention to detail and a commitment to delivering high-quality solutions.
  9. Experience with testing frameworks (e.g., PHPUnit) is a plus.
  10. Knowledge of other PHP frameworks and CMS (e.g., Symfony, CodeIgniter, WordPress) is a plus.


Read more
Ftechiz Solutions
at Ftechiz Solutions
1 recruiter
Rashmi Chand
Posted by Rashmi Chand
Dehradun
3 - 6 yrs
₹3L - ₹4L / yr
Magento
skill iconHTML/CSS
skill iconPHP

We are hiring a Magento Developer for Dehradun location with Ftechiz Solutions.

  • Substantive experience developing on the Magento platform
  • Expert in PHP programming along with Zend and CodeIgnitor framework
  • Experience with MySQL database design and administration
  • Experience with XML / SOAP / WDSL
  • Experience with Subversion
  • Knowledge of current HTML / CSS / XHTML standards
  • Knowledge of JavaScript / AJAX technologies and methods
  • Specific Magento experience...
  • Configure multiple stores and authentication features
  • Integrate creative designs into Magento from HTML templates
  • Integrate with payment gateways (authorize.net, etc)
  • Integrate with shipping providers (Fedex, UPS, etc)
  • Installing and skinning Magento modules
  • Creating custom Magento modules, a plus
  • Customize product and inventory management features
  • Take advantage of Magento web services
  • Cross-browser testing and implementation
Read more
Cyber Success
Gauri Gore
Posted by Gauri Gore
Pune
0 - 2 yrs
₹1L - ₹2L / yr
Communication Skills
Project coordination
Training and Development

We Are a Software Training Institute situated on a Ferguson Collage Road which is Opposite to Goodluck Cafe

We are in a Training Business Where we train people and help them set their Career in a fast growing environment



We At cyber Success looking for a Young and Enthusiastic Talent to Join our Team

Some one who has a vison to serve and help our students to build their Career and help in the grooming part of our students

Who is Excellent in communication and co-ordination

Some one who can motivate others  and absolutely Optimistic in his nature

Some one who can understand the roles and responsibilities well and execute them  on their own

Some one who is enthusiastic to learn more and Grow 

Some one who is a Great team player

Passionate! And multi task

Required:

Basics of MS excel

Good English

               

Experience : 1 to 3 Years

Location : Pune

 If you are some one who believes that he can be the one to help people grow you are the one where our Search ends !

 

Gauri Gore

Recruitment Specialist

Cyber Success ! 

Read more
SUVI (we can provide upto 25LPA )
SUVI (we can provide upto 25LPA )
Agency job
via SUVI BUSINESS VENTURE by VINOTH KUMAR
Gurugram, Delhi, Noida, Ghaziabad, Faridabad
4 - 8 yrs
₹10L - ₹15L / yr
CI/CD
skill iconGoogle Analytics
SDK
Unit testing
skill iconMongoDB
+6 more
CANDIDATES MUST HAVE

• CI/CD tools
• Google’s Android design principles
• Android SDK.
• Unit-test code
• MongoDB, Elastic Search, DynamoDB, Redis
• AWS Amplify

REQUIREMENTS

• BS/MS degree in Computer Science, Engineering or a related subject
• Proven software development experience and Android skills development
• Proven working experience in Android app development and
• Have published at least one original Android app
• Experience with Android SDK
• Experience working with remote data via REST and JSON
• Experience with third-party libraries and APIs
• Working knowledge of the general mobile landscape,
architectures,trends,andemergingtechnologies
• Solid understanding of the full mobile development life cycle.
Read more
With a global provider of Business Process Management.
With a global provider of Business Process Management.
Agency job
via Jobdost by Mamatha A
Mumbai
8 - 10 yrs
₹15L - ₹20L / yr
SAP ABAP
HANA
SAP HANA
SAP
Interfaces management
+4 more

Job Description

The ideal candidate should have minimum 8 years of experience on SAP Abap.

Should be well versed with Reports , Interfaces , Conversions , Enhancements , Forms and User exits.

Should be good in stakeholder management.

Should have excellent verbal and written communication skills

Should be good in Project management.

Knowledge of S/4 Hana is required.

Read more
Bengaluru (Bangalore)
3 - 6 yrs
₹12L - ₹15L / yr
skill iconJava
skill iconSpring Boot
MySQL
skill iconAmazon Web Services (AWS)
HTTP
+2 more
  • Team Name - SDET
  • Skills and Stacks - Java, Spring boot, Mysql, AWS stack, HTTP/GRPC
  • Project 1 line description -Will be required the folks to close the P0 E2E automation
Read more
Chennai
3 - 6 yrs
₹7L - ₹12L / yr
Selenium
Test Automation (QA)
TestNG
Software Testing (QA)
Automation
+2 more

RESPONSIBILITIES

  • Write, execute and maintain test automation scripts using Java/Javascript – Web/API/DB.

  • Experience in Agile Methodologies

  • Knowledge of In-Sprint Automation

  • Have working experience in Automated API Testing

  • Design and implementation Experience in Test Strategy

  • Write, maintain and execute regression and sanity automation test suite – per build/on demand

  • Design data driven tests and fetch the data from API calls/ different Databases(Like MySQL, Oracle, Mongo)

  • Attend daily scrum calls, update status

  • Good to have Design and Implementation Experience in Test Automation Framework

  • Good to have TDD implementation using Mocha or Jest

  • Good to have Experience in IOS Automation Testing.

  • Interact and collaborate with cross functional teams and understand the business requirements

REQUIREMENTS

  • Technical Skills:

    • 4+ years experience in Automation using Java/Javascript

    • Should be Strong in oops concepts

    • Strong Knowledge /experience in API and UI framework

    • Experience in GIT, CI/CD Jobs development and implementation

    • Any one of this is mandatory - TestNG,MOCHA,JEST

  • Software Engineering Skills:

    • Excellent problem solving and critical thinking

    • Experience of In-Sprint Automation

    • Take ownership of business problems and technical solutions

    • Strong Communication and interpersonal skills

    • Hands on with engineering excellence & continuous integration practices

    • Experience with Agile and strong collaboration skills with Business and Ops

  • What we value as a team:

    • Scripts written for readability, performance, scale and maintainability

    • Proactive in communication

    • Collaborate with other members in agile ecosystem

    • Out of the box thinking to resolve issues and bringing New Ideas to bringing Quality in the Applications

    • Ability to suggest changes in the product with respect to user experience

Read more
Affairal
at Affairal
1 video
1 recruiter
Govind Balakrishna
Posted by Govind Balakrishna
Bengaluru (Bangalore)
3 - 12 yrs
₹12L - ₹45L / yr
User Experience (UX) Design
skill iconHTML/CSS
User Interface (UI) Development
Sketch
skill iconAdobe Illustrator
+1 more
Hey Everyone, look forward to talk to you. We are a disruptive start up in fashion marketplace segment working on core personalization.Featured@tech crunch, websummit,voted top 100 start ups from the Asia region by Tech.co& Red herring. We are hiring! Team of Ex-flipkart, myntra, garmin,abof, snapdeal and others. We look forward to see you onboard in this amazing journey forward.  Thanks & Regards Govind  Founder/CEO @ Affairal +919972668335/+918904013330 [email protected] Job perks : Free Lunch facility provided in the office
Read more
Why apply to jobs via Cutshort
people_solving_puzzle
Personalized job matches
Stop wasting time. Get matched with jobs that meet your skills, aspirations and preferences.
people_verifying_people
Verified hiring teams
See actual hiring teams, find common social connections or connect with them directly.
ai_chip
Move faster with AI
We use AI to get you faster responses, recommendations and unmatched user experience.
Did not find a job you were looking for?
icon
Search for relevant jobs from 10000+ companies such as Google, Amazon & Uber actively hiring on Cutshort.
companies logo
companies logo
companies logo
companies logo
companies logo
Get to hear about interesting companies hiring right now
Company logo
Company logo
Company logo
Company logo
Company logo
Linkedin iconFollow Cutshort
Users love Cutshort
Read about what our users have to say about finding their next opportunity on Cutshort.
Shubham Vishwakarma's profile image

Shubham Vishwakarma

Full Stack Developer - Averlon
I had an amazing experience. It was a delight getting interviewed via Cutshort. The entire end to end process was amazing. I would like to mention Reshika, she was just amazing wrt guiding me through the process. Thank you team.
Companies hiring on Cutshort
companies logos