Security Engineer - Secure Development
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Engineer – Secure Development based in India.
This role sits at the core of secure software engineering practices, ensuring that all internally developed applications, APIs, automation workflows, and AI-enabled systems meet the highest security standards before release.
You will act as a technical authority for secure development, embedding security across the entire software development lifecycle while enabling engineering teams to maintain delivery speed.
The position involves hands-on security review, threat modeling, and governance across code, infrastructure-as-code, and cloud-native architectures.
You will play a key role in strengthening DevSecOps practices by integrating security controls into CI/CD pipelines and development workflows.
A major focus is placed on evaluating emerging technologies, including AI systems, to ensure safe, compliant, and controlled deployment.
The role also supports compliance, audit readiness, and intellectual property protection across all internal platforms.
Overall, this is a high-impact position for a security expert who wants to shape secure engineering standards in a fast-moving, product-driven environment.
Accountabilities:
- Define, own, and enforce secure development standards across all internally built software, automation tools, and AI-driven systems.
- Conduct and oversee secure code reviews including static, dynamic, dependency, and supply chain security analysis.
- Establish security release gates and approval workflows before deployment of applications and AI systems.
- Perform threat modeling and secure design reviews early in the development lifecycle to identify and mitigate risks.
- Integrate security tools and controls (SAST, DAST, dependency scanning, container scanning, secrets detection) into CI/CD pipelines.
- Review and secure AI models, agents, prompts, data pipelines, and integrations for privacy, misuse, and compliance risks.
- Collaborate with DevOps and engineering teams to implement secure development and deployment practices.
- Support compliance initiatives (SOC 2, ISO 27001, and customer requirements) through audit-ready documentation and evidence.
- Act as escalation point for application security issues and provide guidance on remediation strategies.
- Mentor engineering teams on secure coding practices, application security, and threat modeling.
- Provide leadership reporting on security posture, risks, and trends across applications and AI systems.
Requirements:
- 8+ years of experience in application security, DevSecOps, or secure software engineering roles.
- Strong hands-on experience with modern programming languages such as Python, JavaScript/TypeScript, Java, C#, or Go.
- Proven expertise in securing web applications, APIs, microservices, and cloud-native architectures.
- Experience integrating security practices into CI/CD pipelines and modern DevOps environments.
- Deep understanding of OWASP Top 10, API security risks, and software supply chain threats.
- Strong ability to balance security requirements with delivery speed in fast-paced engineering environments.
- Experience with threat modeling, secure design, and vulnerability management practices.
- Familiarity with cloud platforms such as AWS or Azure and containerized environments is preferred.
- Exposure to AI/ML system security or data-driven platforms is a strong advantage.
- Experience in SaaS or Managed Services environments with customer-facing delivery obligations is beneficial.
- Strong communication skills with the ability to influence engineering and leadership stakeholders.
Benefits:
- Competitive compensation package aligned with experience and industry standards
- Opportunity to shape enterprise-wide secure development and DevSecOps practices
- Exposure to AI security, cloud-native systems, and advanced engineering environments
- Career growth in a high-impact security architecture and leadership track
- Collaborative, engineering-driven culture with strong ownership and autonomy
- Work on modern technologies across AI, cloud, and distributed systems
- Continuous learning opportunities in cybersecurity and secure engineering
- Flexible working arrangements depending on project and team requirements
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1