Cutshort logo
E-Commerce Industry  logo
Senior Information Security Engineer (DevSecOps)
E-Commerce Industry
Senior Information Security Engineer (DevSecOps)
Peak Hire Solutions's logo

Senior Information Security Engineer (DevSecOps)

at E-Commerce Industry

Agency job
6 - 10 yrs
₹30L - ₹50L / yr
Bengaluru (Bangalore)
Skills
Security Information and Event Management (SIEM)
Information security governance
ISO/IEC 27001:2005
Systems Development Life Cycle (SDLC)
Software Development
Software development methodology
CI/CD
Information security management system
Information security
skill iconAmazon Web Services (AWS)
Windows Azure
Microsoft Windows Azure
SQL Azure
Google Cloud Platform (GCP)
IDS
IPS
skill iconKubernetes
RBAC
Network Security
Windows Runtime
skill iconGitHub
Encryption
Disk encryption
Identity management
Access control
Web application security
Cyber Security
Security awareness
Spring Security
Security operations
Data security
Report Conversion Tool
SCA
Root cause analysis
RCA
Penetration testing
Cloud Computing
Terraform
AWS CloudFormation
skill iconDocker
ISO/IEC 27000-series
NIST
NIST 800-53
NIST SP 800 Series
HIPAA
Threat analysis
Threat modeling
DLP
EMC RSA DLP
Vulnerability assessment
Vulnerability management
Vulnerability scanning
Google Cloud Storage
Oracle Cloud
Automation
Test Automation (QA)
Troubleshooting
Hardware troubleshooting
Software troubleshooting
Mechanical troubleshooting
Electronic troubleshooting
Oracle
Microsoft SQL Server
Microsoft Windows
AWS Lambda
AWS Simple Notification Service (SNS)
AWS RDS
AWS Elastic Beanstalk
AWS Simple Queuing Service (SQS)
AWS ECR
AWS Bedrock
IPsec

SENIOR INFORMATION SECURITY ENGINEER (DEVSECOPS)

Key Skills: Software Development Life Cycle (SDLC), CI/CD

About Company: Consumer Internet / E-Commerce

Company Size: Mid-Sized

Experience Required: 6 - 10 years

Working Days: 5 days/week

Office Location: Bengaluru [Karnataka]


Review Criteria:

Mandatory:

  • Strong DevSecOps profile
  • Must have 5+ years of hands-on experience in Information Security, with a primary focus on cloud security across AWS, Azure, and GCP environments.
  • Must have strong practical experience working with Cloud Security Posture Management (CSPM) tools such as Prisma Cloud, Wiz, or Orca along with SIEM / IDS / IPS platforms
  • Must have proven experience in securing Kubernetes and containerized environments including image security,runtime protection, RBAC, and network policies.
  • Must have hands-on experience integrating security within CI/CD pipelines using tools such as Snyk, GitHub Advanced Security,or equivalent security scanning solutions.
  • Must have solid understanding of core security domains including network security, encryption, identity and access management key management, and security governance including cloud-native security services like GuardDuty, Azure Security Center etc
  • Must have practical experience with Application Security Testing tools including SAST, DAST, and SCA in real production environments
  • Must have hands-on experience with security monitoring, incident response, alert investigation, root-cause analysis (RCA), and managing VAPT / penetration testing activities
  • Must have experience securing infrastructure-as-code and cloud deployments using Terraform, CloudFormation, ARM, Docker, and Kubernetes
  • B2B SaaS Product companies
  • Must have working knowledge of globally recognized security frameworks and standards such as ISO 27001, NIST, and CIS with exposure to SOC2, GDPR, or HIPAA compliance environments


Preferred:

  • Experience with DevSecOps automation, security-as-code, and policy-as-code implementations
  • Exposure to threat intelligence platforms, cloud security monitoring, and proactive threat detection methodologies, including EDR / DLP or vulnerability management tools
  • Must demonstrate strong ownership mindset, proactive security-first thinking, and ability to communicate risks in clear business language


Roles & Responsibilities:

We are looking for a Senior Information Security Engineer who can help protect our cloud infrastructure, applications, and data while enabling teams to move fast and build securely.


This role sits deep within our engineering ecosystem. You’ll embed security into how we design, build, deploy, and operate systems—working closely with Cloud, Platform, and Application Engineering teams. You’ll balance proactive security design with hands-on incident response, and help shape a strong, security-first culture across the organization.


If you enjoy solving real-world security problems, working close to systems and code, and influencing how teams build securely at scale, this role is for you.


What You’ll Do-

Cloud & Infrastructure Security:

  • Design, implement, and operate cloud-native security controls across AWS, Azure, GCP, and Oracle.
  • Strengthen IAM, network security, and cloud posture using services like GuardDuty, Azure Security Center and others.
  • Partner with platform teams to secure VPCs, security groups, and cloud access patterns.


Application & DevSecOps Security:

  • Embed security into the SDLC through threat modeling, secure code reviews, and security-by-design practices.
  • Integrate SAST, DAST, and SCA tools into CI/CD pipelines.
  • Secure infrastructure-as-code and containerized workloads using Terraform, CloudFormation, ARM, Docker, and Kubernetes.


Security Monitoring & Incident Response:

  • Monitor security alerts and investigate potential threats across cloud and application layers.
  • Lead or support incident response efforts, root-cause analysis, and corrective actions.
  • Plan and execute VAPT and penetration testing engagements (internal and external), track remediation, and validate fixes.
  • Conduct red teaming activities and tabletop exercises to test detection, response readiness, and cross-team coordination.
  • Continuously improve detection, response, and testing maturity.


Security Tools & Platforms:

  • Manage and optimize security tooling including firewalls, SIEM, EDR, DLP, IDS/IPS, CSPM, and vulnerability management platforms.
  • Ensure tools are well-integrated, actionable, and aligned with operational needs.


Compliance, Governance & Awareness:

  • Support compliance with industry standards and frameworks such as SOC2, HIPAA, ISO 27001, NIST, CIS, and GDPR.
  • Promote secure engineering practices through training, documentation, and ongoing awareness programs.
  • Act as a trusted security advisor to engineering and product teams.


Continuous Improvement:

  • Stay ahead of emerging threats, cloud vulnerabilities, and evolving security best practices.
  • Continuously raise the bar on a company's security posture through automation and process improvement.


Endpoint Security (Secondary Scope):

  • Provide guidance on endpoint security tooling such as SentinelOne and Microsoft Defender when required.


Ideal Candidate:

  • Strong hands-on experience in cloud security across AWS and Azure.
  • Practical exposure to CSPM tools (e.g., Prisma Cloud, Wiz, Orca) and SIEM / IDS / IPS platforms.
  • Experience securing containerized and Kubernetes-based environments.
  • Familiarity with CI/CD security integrations (e.g., Snyk, GitHub Advanced Security, or similar).
  • Solid understanding of network security, encryption, identity, and access management.
  • Experience with application security testing tools (SAST, DAST, SCA).
  • Working knowledge of security frameworks and standards such as ISO 27001, NIST, and CIS.
  • Strong analytical, troubleshooting, and problem-solving skills.


Nice to Have:

  • Experience with DevSecOps automation and security-as-code practices.
  • Exposure to threat intelligence and cloud security monitoring solutions.
  • Familiarity with incident response frameworks and forensic analysis.
  • Security certifications such as CISSP, CISM, CCSP, or CompTIA Security+.


Perks, Benefits and Work Culture:

A wholesome opportunity in a fast-paced environment that will enable you to juggle between concepts, yet maintain the quality of content, interact and share your ideas and have loads of learning while at work. Work with a team of highly talented young professionals and enjoy the comprehensive benefits that company offers.

Read more
Users love Cutshort
Read about what our users have to say about finding their next opportunity on Cutshort.
Shubham Vishwakarma's profile image

Shubham Vishwakarma

Full Stack Developer - Averlon
I had an amazing experience. It was a delight getting interviewed via Cutshort. The entire end to end process was amazing. I would like to mention Reshika, she was just amazing wrt guiding me through the process. Thank you team.
Companies hiring on Cutshort
companies logos

Similar jobs

i2b Technologies Pvt Ltd
at i2b Technologies Pvt Ltd
1 candid answer
chaitanya v
Posted by chaitanya v
Hyderabad
3 - 6 yrs
Best in industry
Test Automation (QA)
Mobile App Testing (QA)
Performance Testing
Appium

SDET — Software Development Engineer in Test

Mobile & Real-Time Systems | 3–5 Years | Hyderabad / Remote


We're hiring an SDET who thinks in test strategies, not just test cases. You'll own quality across mobile apps that handle live streaming, real-time chat, and high-concurrency interactive systems. You won't just find bugs — you'll design the systems that prevent them from reaching production.


WHAT YOU'LL DO

→ Own test strategy and automation across functional, integration, regression, and performance layers

→ Build scalable automation frameworks from scratch — not maintain someone else's

→ Test real-time data flows — WebSocket message ordering, reconnection logic, latency under load

→ Design and execute API contract tests; catch breaking changes before they hit staging

→ Run performance and load tests simulating thousands of concurrent users on live streams

→ Test edge cases — poor network, offline states, app backgrounding, memory pressure

→ Integrate test suites into CI/CD pipelines — every PR, every build

→ Analyse crash reports, ANRs, OOM events and build regression coverage around them

→ Participate in design reviews to ensure testability is built in from day one


SKILLS

★ Appium — iOS & Android mobile automation

★ JavaScript or Python — test scripting at depth

★ REST & WebSocket API testing

★ Performance testing — JMeter, k6, Gatling

★ CI/CD — GitHub Actions, Jenkins, or equivalent

★ Test framework design — POM, BDD, data-driven

★ Debugging tools — Charles Proxy, Proxyman, device logs

★ Mobile profiling — memory, CPU, FPS, battery

★ Test management — TestRail, Zephyr, or Jira Xray

★ Defect lifecycle & root cause analysis

★ Agile / shift-left testing mindset

★ Strong analytical & documentation skills


GOOD TO HAVE


◆ Push notification testing — FCM / APNs

◆ Cloud device farms — BrowserStack, Sauce Labs

◆ Monitoring integration — Sentry, Crashlytics, Datadog

◆ Chaos / fault-injection testing

◆ Docker / containerised test environments

◆ TypeScript proficiency


YOU'RE EXACTLY WHO WE WANT IF YOU'VE

✓ Built an automation framework end-to-end — architecture, not just scripts

✓ Tested a live product used by real users at meaningful scale (chat, streaming, gaming)

✓ Simulated real-world chaos — flaky networks, reconnects, device interruptions

✓ Caught a critical production bug through automation before any user reported it

✓ Worked with developers on testability during API or feature design — not after

✓ Reduced release cycle time through better automation coverage and CI integration

Read more
Wissen Technology
at Wissen Technology
4 recruiters
Vijayalakshmi Selvaraj
Posted by Vijayalakshmi Selvaraj
Bengaluru (Bangalore)
5 - 10 yrs
Best in industry
skill iconJava
Microservices
DSA
06692

Job Description:

As per our conversation, please find below the job description for your review. 

·       Strong written/verbal communication skills

·       Minimum 5-14 Years of Core Java Programming with Collections Framework, Concurrent Programming, Multi-threading (Good knowledge in Executor service, Forkjoin pool and other threading concepts)

·       Good knowledge of the JVM with an understanding of performance and memory optimization.

·       Extensive and expert programming experience in JAVA programming language (strong OO skills preferred).

·       Excellent knowledge on collections like, Array List, Vector, LinkedList, HashMap, Hash Table, HashSet is mandate.

·       Exercised exemplary development practices including design specification, coding standards, unit testing, and code-reviews.

·       Expert level understanding of Object-Oriented Concepts and Data Structures

·       Good experience in Database (Sybase, Oracle, or SQL Server) like indexing (clustered, non clustered), hashing, segmenting, data types like clob / blob, views (materialized), replication, constraints, functions, triggers, procedures etc.

·       While you may already know about Wissen and the company history, here is a quick rundown for you.




Read more
Chennai, Madurai
6 - 20 yrs
₹10L - ₹30L / yr
skill iconJava
J2EE
skill iconSpring Boot
Hibernate (Java)
Struts
+4 more

Java Developer Requirements

·        Minimum 7 to 15years of experience in Java/J2EE

·        Outstanding skills in Java Struts, JSP, Hibernate

·        Capability to understand DB design, SQL queries

·        Experience in JavaScript, JQuery, JSON and AJAX

·        Strong Object Oriented Analysis and Design skills

·        Knowledge in source version control such as GIT

·        Understanding on Agile methodologies

No of Opening: 7

Location: Chennai/Madurai (WFO)


·        Degree in Computer Science or related field.

·        Experience with user interface design, database structures, and statistical analyses.

·        Analytical mind-set and good problem-solving skills.

·        Excellent written and verbal communication.

·        Good organizational skills.

·        Ability to work as part of a team.

·        Attention to detail.

 



Read more
Flaxen Infosoft
at Flaxen Infosoft
1 recruiter
Deepa Sisodiya
Posted by Deepa Sisodiya
Indore
1 - 2 yrs
₹1L - ₹2L / yr
Self motivated
Interpersonal Skills
Problem solving
skill iconDeep Learning
Lead management

Job description:

•Candidate should have basic communication and good convincing power.

•Candidate should be comfortable with calling.

•Lead generation, Ability to work in a team or individually as and when required.

•Outstanding problem solving skills.

•Have great interpersonal skills.

•Candidate should have strong organizational skills.

Read more
Elocity Technologies
Aashima Bhutani
Posted by Aashima Bhutani
Bengaluru (Bangalore)
3 - 10 yrs
₹10L - ₹15L / yr
skill iconNodeJS (Node.js)
skill iconMongoDB
skill iconExpress
RESTful APIs
TypeScript
+4 more
  • Elocity is a cleantech start-up striving to make the world a better place through technology innovations. We are building a global infrastructure for making the transition to electric vehicles viable, affordable, and sustainable by working closely with the utilities, governments, and public.  
  •  
  • Headquartered out of Canada, we are a team of highly specialized domain experts and problem solvers enabling utilities, public and private sector entities to successfully manage the demands of electric vehicle charging and its infrastructure needs to pave the way for electromobility in future.  
  • To know more visit https://elocitytech.com/" target="_blank">https://elocitytech.com/ 

  • Responsibilities:  
  • Determines technical feasibility of features or solutions by evaluating problem, customer requirements, possible solutions and technology requirements.  
  • Exercises judgement in prioritizing tasks and selecting methods and techniques for obtaining solutions.  
  • Create low-level design of modules of a software application through proper documentation and diagrams.  
  • Develops software solutions by studying requirements, clarifying customer/user needs, analysing data and processes and following established software development practices and processes.  
  • Develops proof of concepts for technical evaluation and early customer feedback  
  • Updates and shares knowledge by studying state-of-the-art development tools, programming techniques, and computing technology; reading professional publications  
  • Networks with internal and external personnel in own area of expertise.  

Skills:  
  • Good command in JavaScript/TypeScript. Knowledge of Java/Python will be a plus.  
  • Experience in Debugging/troubleshooting TypeScript code.  
  • Experience in API development (REST/GraphQL etc)  
  • Experience in development of Web and Mobile(android/iOS) applications  
  • Exposure of Parallel and Asynchronous programming  
  • Experience in writing Unit tests (Jest or any similar framework)  
  • Should be proficient in relational Database concepts (Postgres etc.)  
  • Knowledge of Non-relational Databases would be a plus.  
  • Good Understanding of Object-Oriented Programming Concepts.  
  • Good Understanding of Design Patterns.  
  • Good command of Data structures, Algorithms and Complexity.  
  • Good at problem solving and analytical skills.  
  • Experience with Source Code Versioning systems (Git etc)  
  • Understanding of Micro services Architecture would be a plus has context menu
Read more
Apexon
at Apexon
3 recruiters
Siva Kumar
Posted by Siva Kumar
Bengaluru (Bangalore), Chennai, Pune, Hyderabad, Mumbai, Ahmedabad
4 - 6 yrs
Best in industry
skill iconC#
Test Automation (QA)
Automation
MS SharePoint
DevOps
+5 more

About Apexon:

Apexon is a digital-first technology services firm specializing in accelerating business transformation and delivering human-centric digital experiences. For over 17 years, Apexon has been meeting customers wherever they are in the digital lifecycle and helping them outperform their competition through speed and innovation. Our reputation is built on a comprehensive suite of engineering services, a dedication to solving our clients’ toughest technology problems, and a commitment to continuous improvement. We focus on three broad areas of digital services: User Experience (UI/UX, Commerce); Engineering (QE/Automation, Cloud, Product/Platform); and Data (Foundation, Analytics, and AI/ML), and have deep expertise in BFSI, healthcare, and life sciences.

Apexon is backed by Goldman Sachs Asset Management and Everstone Capital.

 

To know more about us please visit:  https://www.apexon.com/" target="_blank">https://www.apexon.com/

 

 

Responsibilities:

  • C# Automation engineer with 4-6 years of experience to join our engineering team and help us develop and maintain various software/utilities products. 
  • Good object-oriented programming concepts and practical knowledge. 
  • Strong programming skills in C# are required. 
  • Good knowledge of C# Automation is preferred. 
  • Good to have experience with the Robot framework.
  • Must have knowledge of API (REST APIs), and database (SQL) with the ability to write efficient queries.
  • Good to have knowledge of Azure cloud. 
  • Take end-to-end ownership of test automation development, execution and delivery. 

Good to have: 

  • Experience in tools like SharePoint, Azure DevOps

.

Other skills:    

  • Strong analytical & logical thinking skills. Ability to think and act rationally when faced with challenges. 

 

Read more
TrustCheckr
at TrustCheckr
4 recruiters
Anand Gopalakrishna
Posted by Anand Gopalakrishna
Bengaluru (Bangalore)
1 - 3 yrs
₹8L - ₹10L / yr
skill iconNodeJS (Node.js)
skill iconReact.js
skill iconAngular (2+)
skill iconAngularJS (1.x)
skill iconMongoDB
+8 more
Full Stack Development - AWS development and deployment experience using AWS API calls
Exposure to following AWS modules/services / GCP / Modules / Services - Both Skills are ok Amazon S3, EC2, Exposure to any AWS-supported database, Mongo DB collections, Devops, 
AWS toolkit / FlaskREST API development or NodeJS/ReactJS, Web scraping experience, API integration of the various sources for Fraud Solutions, Should be good at communication, Should be able to lead team technically in resolving any technical issues,                                 Should be able to own modules which are critical to business needs, Build and Nurture the young team members in the organization,
Aware of Microservices GOOD to HAVE Familiar with UI development 
(Directed Acyclic graph)CI/CD with AWS
UI with React JS
Read more
Displaysweet
at Displaysweet
1 recruiter
Vinod Kamte
Posted by Vinod Kamte
Remote, Pune, Mumbai, NCR (Delhi | Gurgaon | Noida), Bengaluru (Bangalore), Chennai, Kolkata, Hyderabad
2 - 10 yrs
₹3L - ₹15L / yr
skill iconVue.js
skill iconReact.js
Angular
skill iconAngularJS (1.x)
skill iconJavascript
+1 more

We are hiring Front End Developers 2+ years Experience- Mid to Senior Level at Displaysweet (www.Displaysweet.com)

 

Technical Qualities Required:

Experience working on web applications based on Vue.js or Angular or React 

Solid knowledge of fundamental web technologies such as REST, HTML, CSS and JavaScript (ES2015+)

Interest in using Vue.js and its associated concepts to build a scalable web application

Great working knowledge of Git

 

A team-player, willing to help others through code review and pair programming

Open minded and always willing to further your own learnings

Quality oriented, a solid eye for detail, and good knowledge of data structures & algorithms

 

Bonus skills :

Experience with Hybrid/Native App development, NativeScript/React Native, Cloud Services (Firestore, AWS)

Excellent communicator

 

About the Company

 

DisplaySweet (www.displaysweet.com) is an innovative PropTech company creating world-class interactive experiences and sales software for the off the plan property industry.

 

Our core software is a content-rich sales presentation system designed specifically for property developers, agents and buyers.

 

Over the past 7 years, we have led the industry, transforming it to a digital platform, recently winning an industry award for the best property technology company in Australia. Our portfolio of clients includes some of the largest developers across Australia. 

Read more
Smart Owls
at Smart Owls
1 recruiter
Sarika Grover
Posted by Sarika Grover
Jalandhar
2 - 7 yrs
₹2.5L - ₹5L / yr
skill iconiOS App Development
skill iconObjective C
skill iconSwift
Xcode
  • Candidate Must be well versed with latest SDK versions, XCode, Objective C, Swift, UIKit, Cocoa etc.
  • Expertise in integrating web services (XML/ JSon etc.) with iPhone applications.
  • An experience in using Maps API, GPS services for iPhone/ iOS apps is required.
  • Experience with third-party libraries and APIs.
  • Working knowledge of the general mobile orientation, architectures, trends, and emerging technologies.
  • Experience working with iOS frameworks such as Core Data, Core Animation, Core Graphics and Core Text, Core Location.
  • To take care of build and release process (Adhoc releases, Final release).
  • Should have worked on cocoa touch, story board, core data, auto layout.
  • Hands-on experience in Cloud APIs, push notifications, social media integration, and integration of analytics is an added advantage.
  • Must have good analytical, debugging, App publishing and problem solving skills.
  • Self-starter having the ability to independently acquire the knowledge required in succeeding his job.
Read more
Signal2noise
at Signal2noise
1 recruiter
Priyanshi Singh
Posted by Priyanshi Singh
Bengaluru (Bangalore)
0 - 2 yrs
₹1L - ₹2L / yr
Sales Operations
Product Marketing
Communication Skills
Sales
Business Development Executive Designation: Business Development Executive Functional Area: BPO Voice (Domestic) Industry: Financial Services Experience: 0-2 years Salary: 1.5 – 2.00 Lpa Other Perks : Attractive Incentives, On the spot gifts Shift: General (9am-6pm) Location: HSR Layout Job Roles: Generating The Revenue Through Sales The Profile Is a combination Sales generation as well as Customer Relationship Management Identify and make contact with potential clients, recognize and identify their requirements and accordingly pitch products to them Maintain all customer interactions through the CRM System Respond to queries from existing and prospective customer Taking significant sales initiatives and providing basic services and re-subscription to customers Required Skills: The Candidate should be very Aggressive towards sales Should be ready to work with targets on Monthly Basis Very good communication skills, Listening skills and Convincing skills Should know English, Hindi and other Regional Languages Having Experience in Sales Domain will Have an Added Advantage Company Profile: Signal2Noise Capital Partners (Regd.) is a leading firm in the Investment Advisory market. We specialize in short term trading opportunities (intraday and sub 1 month) with instruments that have considerable leverage (futures, options) across equity (index and stock), commodities (agri, energy and metals) markets. Website: www.s2n.co.in
Read more
Why apply to jobs via Cutshort
people_solving_puzzle
Personalized job matches
Stop wasting time. Get matched with jobs that meet your skills, aspirations and preferences.
people_verifying_people
Verified hiring teams
See actual hiring teams, find common social connections or connect with them directly.
ai_chip
Move faster with AI
We use AI to get you faster responses, recommendations and unmatched user experience.
Did not find a job you were looking for?
icon
Search for relevant jobs from 10000+ companies such as Google, Amazon & Uber actively hiring on Cutshort.
companies logo
companies logo
companies logo
companies logo
companies logo
Get to hear about interesting companies hiring right now
Company logo
Company logo
Company logo
Company logo
Company logo
Linkedin iconFollow Cutshort
Users love Cutshort
Read about what our users have to say about finding their next opportunity on Cutshort.
Shubham Vishwakarma's profile image

Shubham Vishwakarma

Full Stack Developer - Averlon
I had an amazing experience. It was a delight getting interviewed via Cutshort. The entire end to end process was amazing. I would like to mention Reshika, she was just amazing wrt guiding me through the process. Thank you team.
Companies hiring on Cutshort
companies logos