Lead Security Engineer in India at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Lead Security Engineer based in India.
This role offers an opportunity to lead critical security initiatives within a fast-growing, AI-driven technology environment.
You will help shape application security practices, protect complex platforms, and strengthen security across the software development lifecycle.
The position combines hands-on engineering, strategic leadership, and cross-functional collaboration with product, infrastructure, and AI teams.
You will drive secure architecture decisions, improve security automation, and help build resilient systems at scale.
This is a high-impact role for a security expert passionate about emerging threats, AI security, and developer enablement.
You will contribute to creating a strong security culture while mentoring engineers and influencing technical direction globally.
As a Lead Security Engineer, you will be responsible for advancing application and AI security capabilities while partnering with engineering teams to embed security into products and processes. You will provide technical leadership, improve security practices, and ensure systems remain protected against evolving threats.
- Lead application security initiatives across products and engineering teams, establishing security standards and best practices.
- Conduct architecture reviews, secure design assessments, threat modeling, and security evaluations for new features and platforms.
- Perform security assessments across web, mobile, and API-based applications, identifying vulnerabilities and driving remediation efforts.
- Define and scale secure software development lifecycle (SDLC) practices across engineering teams.
- Partner with developers to implement secure coding practices and improve vulnerability management processes.
- Lead security reviews for AI-powered applications, large language model integrations, and intelligent systems.
- Develop security controls for AI environments, including protections against prompt injection, data leakage, model abuse, and insecure integrations.
- Improve security automation by integrating testing and monitoring tools into CI/CD pipelines.
- Drive developer education through documentation, training, and security enablement programs.
- Mentor engineers and promote a security-first mindset across technical teams.
- Collaborate with technical and non-technical stakeholders to communicate risks, influence roadmaps, and align security priorities with business objectives.
- Stay updated on emerging cybersecurity threats, application security trends, and AI security developments.
The ideal candidate brings deep cybersecurity expertise, strong application security knowledge, and the ability to influence engineering teams through technical leadership and collaboration. You should be comfortable working in complex environments where security, scalability, and innovation intersect.
- 8+ years of experience in cybersecurity, with strong expertise in application security and engineering-focused security initiatives.
- Proven experience securing web, mobile, and API environments, including OWASP standards and authentication technologies such as OAuth 2.0, OIDC, JWT, and SAML.
- Hands-on experience with threat modeling, secure architecture reviews, code reviews, penetration testing, and security assessments.
- Strong DevSecOps experience, including CI/CD security automation, container security using Kubernetes and Docker, and security tooling such as SAST, DAST, SCA, and secret scanning.
- Specialized knowledge of AI and LLM security, including mitigation strategies for prompt injection, data exposure, model misuse, and insecure agent integrations.
- Programming or scripting experience with languages such as Python, Go, JavaScript, or Bash.
- Strong communication skills with the ability to influence engineering, product, and leadership stakeholders.
- Experience securing cloud environments, preferably with Google Cloud Platform.
- Knowledge of Infrastructure as Code security, including Terraform.
- Familiarity with CSPM/CNAPP solutions and modern cloud security practices.
- Experience with red teaming, adversary simulation, purple team exercises, or security research is a plus.
- Relevant security certifications such as CEH, OSCP, GWAPT, CISSP, GCP Professional Cloud Security Engineer, or equivalent are advantageous.
- Experience contributing to open-source security projects, bug bounty programs, or cybersecurity research is preferred.
- Fully remote work environment with flexibility to work from anywhere in India.
- Opportunity to contribute to security initiatives for large-scale, AI-powered technology platforms.
- High-impact role with ownership over application security, AI security, and engineering security practices.
- Collaborative global environment with opportunities to work across engineering, product, infrastructure, and AI teams.
- Opportunities for professional growth, technical leadership, and mentoring.
- Exposure to emerging technologies and complex security challenges.