Connecting talent with opportunity

Loading WeHireYou

Free for the first 200 users

Claim spot

Product Security Engineer (Devsec Ops)

Lenskart · Gurugram · Hybrid

engineeringhybridseniorawsazuregcpci/cd
schedule

Posted

Today

work

Job type

Full-time

domain

Industry

IT & Software

group

Openings

1

About the role

Product Security Engineer (Devsec Ops) We are looking for a Product Security Engineer with 3 to 5 years of hands-on experience in identifying, assessing, and mitigating security risks across our products and platforms. The ideal candidate will work closely with engineering, DevOps, and product teams to integrate security throughout the software development lifecycle (SDLC) and ensure the security of our applications and infrastructure. Key Responsibilities - Conduct application security assessments, threat modeling, and code reviews for products and services. - Perform static (SAST), dynamic (DAST), and software composition (SCA) analysis using modern tools. - Collaborate with development teams to embed security controls in CI/CD pipelines. - Review and enhance security architecture for web, mobile, and API-based applications. - Work with DevOps teams to strengthen cloud security posture (AWS/GCP/Azure). - Investigate and respond to product security incidents and vulnerability reports. - Support bug bounty triage and coordinate fixes with engineering teams. - Document and enforce secure coding practices and security guidelines. - Participate in design and architecture reviews to ensure security-by-design principles. Gurugram, Haryāna, India Gurugram

Key responsibilities

  • check_circleCollaborate with the team on day-to-day project tasks
  • check_circleLearn tools and processes used by the organization
  • check_circleDocument work and participate in team meetings
  • check_circleSupport quality checks and continuous improvement

Requirements

  • check_circleConduct application security assessments, threat modeling, and code reviews for products and services.
  • check_circlePerform static (SAST), dynamic (DAST), and software composition (SCA) analysis using modern tools.
  • check_circleCollaborate with development teams to embed security controls in CI/CD pipelines.
  • check_circleReview and enhance security architecture for web, mobile, and API-based applications.
  • check_circleWork with DevOps teams to strengthen cloud security posture (AWS/GCP/Azure).
  • check_circleInvestigate and respond to product security incidents and vulnerability reports.
  • check_circleSupport bug bounty triage and coordinate fixes with engineering teams.
  • check_circleDocument and enforce secure coding practices and security guidelines.
  • check_circleParticipate in design and architecture reviews to ensure security-by-design principles.

Skills & keywords

awsazureci/cddevsecengineergcpgurugramlenskartopsproductsecurity

Benefits & perks

  • check_circleMentorship
  • check_circleCertificate of completion
  • check_circleFlexible work arrangement where applicable