4486-Security Engineer II

Innovaccer

Dadri

On-site

INR 1,500,000 - 2,500,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Leaves up to 40 days
Parental leave
Sabbatical
Health insurance
Care program
Financial assistance

Job summary

Innovaccer is seeking a Security Engineer-II for Product Security to own end-to-end security of the solution. You will perform penetration testing across Web, API, and AI/LLM domains, conduct security assessments and threat modeling, and collaborate with multiple teams to implement secure-by-design practices.

The role covers cloud security (AWS/Azure/GCP), secure SDLC, and incident response while offering exposure to diverse security domains in a fast-paced environment.

Qualifications

  • Bachelor's degree in CS/IT/Cyber Security or related field.
  • 3–5 years of experience in Product Security, Application Security, or Penetration Testing.
  • Experience with AI/LLM security testing and OWASP LLM Top 10.
  • Hands-on experience with Burp Suite Pro, OWASP ZAP, Nmap, Nessus, OpenVAS, SQLMap, Metasploit.
  • Familiarity with SAST, DAST, SCA, Container Security, IaC, and Secrets Scanning.
  • Experience with AWS, Azure, and GCP cloud security (IAM, networking, storage, compute, Kubernetes).
  • Strong understanding of SSDLC, DevSecOps, CI/CD pipelines, and modern app architectures.
  • Knowledge of networking, OAuth2, JWT, API security.
  • Scripting/automation in Python, Bash, PowerShell.
  • Excellent analytical, problem-solving, reporting, and communication skills.
  • Willingness to work in a 24x7 support environment and take on additional responsibilities.

Responsibilities

  • Perform Black Box, White Box, Grey Box, Web, API, and AI/LLM penetration testing to identify security vulnerabilities.
  • Conduct AI/LLM security assessments and red teaming in line with OWASP LLM Top 10.
  • Perform security architecture reviews, threat modeling, and secure design assessments for new products and cloud apps.
  • Assess applications against OWASP Top 10/API Top 10/LLM Top 10 and industry security standards.
  • Remediate vulnerabilities with Product, Engineering, DevOps, SRE, and Platform teams; apply secure-by-design principles.
  • Provide security guidance across SSDLC, including design/code reviews and release security assessments.
  • Conduct secure code reviews and help engineers implement secure coding practices.
  • Perform cloud security assessments across AWS/Azure/GCP, including IAM, networking, containers, and Kubernetes.
  • Collaborate with Infra/Data Security/SRE/DevOps to test BC/DR solutions and verify security controls.
  • Develop security use cases, dashboards, and metrics to improve visibility of product security posture.
  • Develop scripts/automation to enhance pentesting and vulnerability validation efficiency.
  • Support vulnerability management through validation, retesting, and timely remediation.

Skills

Security testing
AI/LLM security
SAST/DAST/DAST
Cloud security (AWS/Azure/GCP)
SSDLC/DevSecOps
Networking fundamentals
Scripting (Python/Bash/PowerShell)
Analytical/communication
On-call availability

Education

Bachelor's degree in CS/IT/Cyber Security

Tools

Burp Suite Pro
OWASP ZAP
Nmap
Nessus
OpenVAS
SQLMap
Metasploit

Job description

Job Description:

Engineering at Innovaccer

With every line of code, we accelerate our customers success, turning complex challenges into innovative solutions. Collaboratively, we transform each data point we gather into valuable insights for our customers. Join us and be part of a team thats turning dreams of better healthcare into reality, one line of code at a time. Together, we’re shaping the future and making a meaningful impact on the world.

About the Role

We at Innovaccer are looking for a Security Engineer-II for Product Security who will be responsible for End to End Security of the entire solution. This role will encompass the use of a broad range of security domains (Application Security – Web, Mobile & Desktop, Data Security, Cloud Security, Automation, VAPT).This role would be a great opportunity to learn and grow as you would be exposed to multiple security domains at single time.

A Day in the Life
  • Perform Black Box, White Box, Grey Box, Web, API, and AI/LLM application penetration testing toidentify security vulnerabilities across products and services.
  • Conduct AI/LLM security assessments and red teaming exercises in alignment with OWASP LLMTop 10 and emerging AI security best practices.
  • Perform security architecture reviews, threat modeling, and secure design assessments for newproducts, features, APIs, and cloud-native applications.
  • Assess applications against OWASP Top 10, OWASP API Security Top 10, OWASP LLM Top 10, andindustry security standards.
  • Work closely with Product, Engineering, DevOps, Infrastructure, Platform Engineering, and SREteams to remediate security vulnerabilities and implement secure-by-design principles.
  • Provide security guidance throughout the Secure Software Development Lifecycle (SSDLC),including design reviews, code reviews, and release security assessments.
  • Conduct secure code reviews and assist engineering teams in implementing secure coding practices.
  • Perform cloud security assessments across AWS, Azure, and GCP environments, includingcloud-native services, IAM, networking, containers, and Kubernetes.
  • Collaborate with Infrastructure, Data Security, SRE, and DevOps teams to implement, validate, andperiodically test Business Continuity (BCP) and Disaster Recovery (DR) solutions
  • Develop security use cases, dashboards, reports, and metrics to improve visibility into productsecurity posture.
  • Develop scripts and automation to improve penetration testing, vulnerability validation, andsecurity assessment efficiency.
  • Support vulnerability management by validating remediation, performing retesting, and workingwith engineering teams to drive timely closure of security findings.
  • Participate in incident response activities involving application and product security when required.
  • This role requires being available on call during weekends and off hours.
What You Need
  • Bachelors degree (engineering) in Computer Science, Information Technology, Cyber Security, or a related field.
  • Minimum 3-5 years of experience in Product Security, Application Security, or Penetration Testing.
  • Experience conducting AI/LLM security testing and familiarity with OWASP LLM Top 10 is highly desirable.
  • Hands-on experience with penetration testing tools such as Burp Suite Professional, OWASP ZAP,Nmap, Nessus, OpenVAS, SQLMap, Metasploit, and similar tools.
  • Familiarity with SAST, DAST, SCA, Container Security, Infrastructure as Code (IaC), and Secrets Scanning tools.
  • Experience with AWS, Azure, and GCP cloud security, including IAM, networking, storage, compute, Kubernetes, and container security.
  • Good understanding of Secure SDLC, DevSecOps, CI/CD pipelines, and modern application architectures.
  • Strong knowledge of networking fundamentals, TCP/IP, HTTP/HTTPS, TLS, authentication,authorization, OAuth2, JWT, and API security.
  • Good scripting and automation skills using Python, Bash, PowerShell, or similar languages.
  • Strong analytical, problem-solving, reporting, and communication skills.
  • Ability to work independently, prioritize multiple assignments, and manage competing deadlines.
  • OSCP, OSWE, CEH, AWS Security Specialty, or equivalent security certifications are preferred.
  • Proficient in open-source security tools and technologies.
  • Willingness to work in a 24x7 support environment and take on additional responsibilities

We offer competitive benefits to set you up for success in and outside of work.

Here’s What We Offer
  • Generous Leaves:Enjoy generous leave benefits of up to 40 days.
  • Parental Leave: Leverage one of industrys best parental leave policies to spend time with your new addition.
  • Sabbatical: Want to focus on skill development, pursue an academic career, or just take a break? Weve got you covered.
  • Health Insurance:We offer comprehensive health insurance to support you and your family, covering medical expenses related to illness, disease, or injury. Extending support to the family members who matter most.
  • Care Program:Whether it’s a celebration or a time of need, we’ve got you covered with care vouchers to mark major life events. Through our Care Vouchers program, employees receive thoughtful gestures for significant personal milestones and moments of need.
  • Financial Assistance: Life happens, and when it does, we’re here to help. Our financial assistance policy offers support through salary advances and personal loans for genuine personal needs, ensuring help is there when you need it most.

Innovacceris an equal-opportunity employer. We celebrate diversity, and we are committed to fostering an inclusive and diverse workplace where all employees, regardless of race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, marital status, or veteran status, feel valued and empowered.

Requirements
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

4486-Security Engineer II
4486-Security Engineer II

Innovaccer Analytics • Dadri

On-site
INR 1,400,000 - 2,200,000
Generous leaves (up to 40 days)
Parental Leave
Sabbatical
+3
4486-Security Engineer II
4486-Security Engineer II

Innovaccer Inc. • India

On-site
INR 1,200,000 - 1,800,000
Generous Leaves: up to 40 days
Parental Leave
Sabbatical
+3
Security Lead (GRC & AppSec)
Security Lead (GRC & AppSec)

INNOVAPPTIVE GLOBAL SOLUTIONS PRIVATE LIMITED • Hyderabad

On-site
INR 2,000,000 - 3,000,000
Competitive compensation
Equity tied to impact on AI performance
Continuous learning and innovation opportunities
2919-Software Development Engineer-III Backend
2919-Software Development Engineer-III Backend

Innovaccer • Dadri

On-site
INR 1,500,000 - 2,000,000
Generous Leaves: up to 40 days
Health Insurance
Parental Leave
+1
Application Security Engineer
Application Security Engineer

RXinsider LTD. • Hyderabad

On-site
INR 14,367,000 - 20,115,000
Security Lead (GRC & AppSec)
Security Lead (GRC & AppSec)

Innovapptive Inc • Hyderabad

On-site
INR 2,000,000 - 3,000,000
Competitive compensation
Equity tied to performance
Access to cutting-edge tools
Security Pen tester
Security Pen tester

Infios • Bengaluru

On-site
INR 3,000,000 - 5,500,000
Application Security Engineer
Application Security Engineer

DigiCert • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Generous time off policies
Top shelf benefits
Education, wellness, and lifestyle support
Staff Software Engineer, Security
Staff Software Engineer, Security

United States Digital Space LLC • Bengaluru

Hybrid
INR 2,500,000 - 4,500,000
4549- Software Development Engineer-II (Backend-Python)
4549- Software Development Engineer-II (Backend-Python)

Innovaccer Analytics • Dadri

On-site
INR 1,500,000 - 2,600,000
40 days leave
Parental leave
Sabbatical
+3