Product security Engineer
Responsibilities
Qualifications & Requirements
Experience Level: Mid Level
Full Job Description
As a Product Security Engineer in Chennai, you will be instrumental in safeguarding our products throughout the Software Development Life Cycle (SDLC). Your responsibilities will include designing and implementing robust security controls, conducting thorough threat modeling, security reviews, and vulnerability assessments. You will collaborate closely with development teams to embed security best practices, manage and investigate security incidents, and develop automation tools for security processes. This role also involves performing secure code reviews, penetration testing, researching emerging security threats and technologies, and providing developer training on secure coding. Additionally, you will be responsible for documenting security guidelines and communicating risks to stakeholders.
Key Responsibilities:
- Design and implement security controls for products across the SDLC.
- Perform threat modeling, security reviews, and vulnerability assessments.
- Collaborate with development teams to integrate security best practices.
- Respond to, investigate, and remediate product-related security incidents.
- Develop and maintain security automation tools and scripts.
- Conduct secure code reviews and penetration testing.
- Research and evaluate emerging security technologies and threats.
- Create and deliver developer training on secure coding practices.
- Document security guidelines, standards, and compliance requirements.
- Communicate risks and mitigation strategies to diverse stakeholders.
Requirements:
- Bachelor's degree in Computer Science, Information Security, or a related field.
- Strong experience in application security, threat modeling, and vulnerability assessment.
- Proficiency in secure coding practices and common security tools (e.g., SAST, DAST).
- Familiarity with SDLC, DevSecOps, and cloud security principles.
- Excellent communication and collaboration skills.
Company
Yubi
Yubi, formerly CredAvenue, is a pioneering financial technology company dedicated to transforming global debt markets. By facilitating the seamless flow of finance between borrowers, lenders, and inve...