Infosec Engineer

Spyne

Gurugram District

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Comprehensive Health & Life Coverage
Performance-Driven Growth
Elevate Learning & Development
Collaborative Office Culture

Job summary

Spyne, located in Gurugram, is seeking an Application Security professional who will secure conversational agents and conduct penetration testing. The candidate will have a pivotal role in safeguarding the infrastructure against various threats and compliance with data privacy regulations.

The ideal candidate should possess 3-5 years of experience in a relevant field, a degree in Computer Science, and proficiency in scripting languages. Join us to work in a dynamic, employee-centric environment with competitive compensation.

Qualifications

  • 3-5 years in an information security or application security role.
  • Strong hands-on experience with OWASP Top 10.
  • Proficient in Python, Bash, or similar scripting languages.

Responsibilities

  • Secure conversational agents against data poisoning attacks.
  • Establish secure coding guidelines and integrate vulnerability scanning.
  • Lead alignment with global data privacy regulations and industry standards.

Skills

Application Security
AI/ML Security
SAST/DAST/SCA Tools
Cloud Security
Scripting & Automation
Compliance

Education

Bachelor's or master's degree in Computer Science, Information Security, or related field

Tools

Semgrep
Snyk
Burp Suite
OWASP ZAP

Job description

We are Spyne, redefining how cars are marketed and sold with cutting‑edge Generative AI. What started as a bold idea—using AI‑powered visuals to help dealers sell online faster—has evolved into a full‑fledged AI‑first automotive retail ecosystem.

Location: Gurugram (Work from Office, 5 days a week)

What Will You Do?
  • AI & LLM Security: Secure conversational agents (Vini AI) against prompt injection and data poisoning attacks; protect computer vision pipelines (Studio AI) from adversarial evasion techniques and model theft.
  • Code Security: Establish secure coding guidelines and integrate automated vulnerability scanning (SAST/SCA) directly into developer workflows and CI/CD pipelines.
  • API Security: Safeguard critical data pipelines and third‑party CRM/DMS integrations (e.g., Tekion ARC) against unauthorized access, broken object‑level authorization, and business logic abuse.
  • Application Security: Protect our Web App (Virtual Studio, Developer Hub) and Android/iOS mobile applications against reverse engineering, unauthorized access, and runtime exploits.
  • VAPT & Penetration Testing: Own and manage continuous offensive security testing—both automated vulnerability assessments and manual penetration tests—across the full product suite.
  • Compliance & Governance: Lead alignment with global data privacy regulations (GDPR, CCPA) and automotive industry security standards to support seamless enterprise onboarding in the US and EU.
  • Cross‑Functional Security Enforcement: Partner with the DevOps team to define and enforce security requirements for cloud infrastructure; ensure deployment pipelines and AWS architectures meet rigorous security standards without hindering development velocity.
  • Security Culture: Drive security awareness programs, conduct training sessions, and build a security‑first mindset across all engineering disciplines.
  • Incident Response: Define, document, and lead the execution of incident response playbooks; conduct post‑mortems and drive remediation.
What You Must Have?
  • Experience: 3‑5 years in an information security or application security role, preferably within a SaaS or AI‑first product company.
  • AI/ML Security: Demonstrated knowledge of LLM attack vectors (prompt injection, jailbreaking, data exfiltration) and computer vision model threats (adversarial inputs, model inversion).
  • Application Security: Strong hands‑on experience with OWASP Top 10 (Web & Mobile), API security testing, and mobile app security (Android/iOS).
  • SAST/DAST/SCA Tools: Proficiency with tools such as Semgrep, Snyk, Burp Suite, OWASP ZAP, or equivalents.
  • VAPT: Proven experience conducting or managing penetration tests across web, mobile, and API surfaces; familiarity with frameworks like PTES or OWASP WSTG.
  • Cloud Security: Working knowledge of AWS security services and best practices (IAM, Security Groups, GuardDuty, CloudTrail, KMS, Secrets Manager); ability to audit cloud architectures for risk.
  • Compliance: Practical experience with GDPR, CCPA, and/or relevant industry frameworks (SOC 2, ISO 27001); experience supporting enterprise security reviews and third‑party audits.
  • Scripting & Automation: Proficient in Python, Bash, or similar scripting languages for security automation and tooling.
  • Collaboration: Ability to work closely with developers, DevOps, ML engineers, and product managers—translating complex security requirements into actionable engineering tasks without blocking velocity.
  • Education: Bachelor's or master's degree in Computer Science, Information Security, or a related field. Relevant certifications (OSCP, CEH, CISSP, AWS Security Specialty) are a strong plus.
Why is Spyne an Employee‑Centric Company?
  • Comprehensive Health & Life Coverage – GMC, GPA, and GTLI benefits for you and your family.
  • Performance‑Driven Growth – Fast career progression, ownership from Day 1, and stock options for top performers.
  • Elevate Learning & Development – Access LinkedIn Learning, mentorship programs, and hands‑on AI security projects to upskill daily.
  • Collaborative Office Culture – Thrive in our energetic, innovation‑first workplace.
Why Spyne?
  • Strong Culture: A supportive, transparent environment with high autonomy.
  • Competitive Compensation: Market‑leading salary, equity, and benefits.
  • Dynamic Growth: Join us at a pivotal growth stage—shape our security posture, processes, and future.
  • Cutting‑Edge Tech: Work on real‑world AI/ML and GenAI security challenges that very few engineers get to tackle.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Data Engineer
Data Engineer

Spyne • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Comprehensive Health & Life Coverage
Performance-driven growth
Learning & Development access
+2
Head of Computer Vision
Head of Computer Vision

Spyne • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Equity options
Performance-linked rewards
Collaborative culture
Head of Artificial Intelligence
Head of Artificial Intelligence

Spyne • Gurugram District

On-site
INR 2,500,000 - 4,000,000
Competitive Compensation
Equity and performance-linked rewards
People-First Culture
Engineering Manager
Engineering Manager

Spyne • Gurugram District

On-site
INR 2,000,000 - 3,000,000
Competitive salary
Performance-based incentives
Equity
+2
Senior Product Manager (AI & LLMs)
Senior Product Manager (AI & LLMs)

Spyne • Gurugram District

On-site
INR 2,000,000 - 3,000,000
Growth opportunities
Exposure to international markets
High ownership culture
AI Product Manager
AI Product Manager

Spyne • Gurugram District

On-site
INR 1,500,000 - 3,000,000
Health Insurance
Supportive work environment
High levels of autonomy
Product Marketing Manager
Product Marketing Manager

Eventila Technologies • Gurugram District

On-site
INR 1,400,000 - 2,400,000
Business Analyst
Business Analyst

Spyne • Gurugram District

On-site
INR 600,000 - 1,200,000
Product Management Intern
Product Management Intern

Spyne • Gurugram District

On-site
INR 201,000 - 335,000
Associate Product manager
Associate Product manager

Spyne • Gurugram District

Hybrid
INR 1,600,000 - 2,100,000