Lead Security Engineer

Refinitiv

Bengaluru

Hybrid

INR 3,000,000 - 6,000,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible vacation
Mental Health Days
Headspace app
Retirement savings
Tuition reimbursement
Incentive programs
Wellbeing resources

Job summary

Refinitiv is seeking a Lead Security Engineer to serve as the technical lead for security across applications, cloud, and infrastructure. You will shape the security backlog, design controls across OS, containers, CI/CD, and networking, and mentor engineers while championing automation and AI-assisted tooling.

The ideal candidate has 8+ years of experience in security engineering or cloud security, with a strong background in vulnerability management and multi-cloud environments (AWS/Azure/GCP).

Qualifications

  • 8+ years of hands-on experience in security engineering, vulnerability management, or cloud/security infrastructure.
  • Deep understanding of security principles, vulnerabilities, and best practices across application, cloud, and infrastructure layers.
  • Experience with vulnerability management at scale: CVSS/EPSS, CISA KEV, SLA-driven burndown.
  • Breadth across the security stack: application, infrastructure patching, guardrails, WAF, network isolation, IAM.

Responsibilities

  • Act as the technical lead for security across application, cloud, and infrastructure.
  • Set technical direction, own security backlog quality end-to-end, and escalate complex remediation work.
  • Design and build security controls across OS, containers, CI/CD, cloud configs, and network boundaries.
  • Lead process improvements like patching cycles and golden-image refreshes, ensuring fast delivery with safety.

Education

Bachelor's degree in Computer Science, Information Security, or related field

Job description

About the Role

In this opportunity as Lead Security Engineer, you will: Act as the technical lead for security across application, cloud, and infrastructure. Set technical direction, make the key calls, own the shape and quality of the security backlog end to end, and serve as the point of escalation for complex security and remediation work, without direct line-management responsibility. Design and build security controls across layers such as operating systems, container orchestration, CI/CD pipelines, cloud configuration, and network boundaries, to defend against sophisticated adversaries and insider threats. Design new security processes and ways of working, revamping patching cycles and golden-image and base-image refreshes across cloud and on‑prem, so the team can move fast without sacrificing safety. Come to the table with ideas: identify where security and remediation processes can be improved, propose better approaches, and turn them into standards the team adopts. Set the technical approach across the full security scope: application and open‑source dependency fixes, infrastructure patching, cloud configuration and guardrails, WAF, network isolation, and secrets and machine‑identity management. Prioritize by risk in line with industry best practice such as CISA guidance (CISA KEV, CVSS/EPSS, and SLA‑driven burndown), and champion adoption of AI‑augmented security tooling, including SAST and SCA. Raise the technical bar by reviewing fixes and mentoring engineers, and coordinate with the wider security team across regions to keep standards and priorities aligned across time zones. Own clear reporting and metrics, and build the runbooks, standards, and escalation paths that make security a repeatable, auditable capability.

About You

You’re a fit for the role of Lead Security Engineer if your background includes: 8+ years of hands‑on experience in security engineering, vulnerability management, or cloud and infrastructure security, including time as a technical lead or senior individual contributor setting direction and guiding the technical work of other engineers, plus a bachelor's degree in Computer Science, Information Security, or a related field (or equivalent practical experience). A deep understanding of security principles, common vulnerabilities, and best practice across application, cloud, and infrastructure layers. A working command of vulnerability management at scale: prioritization frameworks, CVSS/EPSS, CISA KEV, and SLA‑driven burndown. Breadth across the security stack: application and dependency vulnerabilities, infrastructure patching, guardrails, WAF, network isolation, and identity and access controls, with multi‑cloud experience across two or more of AWS, Azure, GCP, and OCI (all four an advantage) alongside on‑premises infrastructure. A track record of designing and improving technical processes, such as patching cycles, image or GAMI refreshes, or remediation workflows, rather than only executing them, with a proactive mindset for identifying and closing security gaps through automation and tooling; experience with AI‑assisted or automated security tooling is an advantage. Strong judgment on balancing risk reduction against operational and customer impact. Excellent written and verbal communication, comfortable operating across security, engineering, and business audiences and able to convey complex security concepts to technical and non‑technical stakeholders, with enthusiasm for collaborating with cross‑functional teams to build secure, reliable systems that scale globally. #LI-HG1

What’s in it For You?
Hybrid Work Model

We’ve adopted a flexible hybrid working environment (2‑3 days a week in the office depending on the role) for our office‑based roles while delivering a seamless experience that is digitally and physically connected.

Flexibility & Work‑Life Balance

Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work‑life balance.

Career Development and Growth

By fostering a culture of continuous learning and skill development, we prepare our talent to tackle tomorrow’s challenges and deliver real‑world solutions. Our Grow My Way programming and skills‑first approach ensures you have the tools and knowledge to grow, lead, and thrive in an AI‑enabled future.

Industry Competitive Benefits
  • We offer comprehensive benefit plans to include flexible vacation, two company‑wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing.
Culture

Globally recognized, award‑winning reputation for inclusion and belonging, flexibility, work‑balance, and more. We live by our values: Obsess over our Customers, Compete to Win, Challenge (Y)our Thinking, Act Fast / Learn Fast, and Stronger Together.

Social Impact

Make an impact in your community with our Social Impact Institute. We offer employees two paid volunteer days off annually and opportunities to get involved with pro‑bono consulting projects and Environmental, Social, and Governance (ESG) initiatives.

Making a Real‑World Impact

We are one of the few companies globally that helps its customers pursue justice, truth, and transparency. Together, with the professionals and institutions we serve, we help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, and provide trusted, unbiased information to people all over the world.

About Us

Thomson Reuters informs the way forward by bringing together the trusted content and technology that people and organizations need to make the right decisions. We serve professionals across legal, tax, accounting, compliance, government, and media. Our products combine highly specialized software and insights to empower professionals with the data, intelligence, and solutions needed to make informed decisions, and to help institutions in their pursuit of justice, truth, and transparency. Reuters, part of Thomson Reuters, is a world leading provider of trusted journalism and news.

We are powered by the talents of 26,000 employees across more than 70 countries, where everyone has a chance to contribute and grow professionally in flexible work environments. At a time when objectivity, accuracy, fairness, and transparency are under attack, we consider it our duty to pursue them.

Sound exciting? Join us and help shape the industries that move society forward. As a global business, we rely on the unique backgrounds, perspectives, and experiences of all employees to deliver on our business goals.

To ensure we can do that, we seek talented, qualified employees in all our operations around the world regardless of race, color, sex/gender, including pregnancy, gender identity and expression, national origin, religion, sexual orientation, disability, age, marital status, citizen status, veteran status or any other protected classification under applicable law.

Thomson Reuters is proud to be an Equal Employment Opportunity Employer providing a drug‑free workplace.

We also make reasonable accommodations for qualified individuals with disabilities and for sincerely held religious beliefs in accordance with applicable law.

More information on requesting an accommodation here.

More information about Thomson Reuters can be found on thomsonreuters.com.

At Thomson Reuters, we’re not riding the AI wave — we’re reshaping the future of professional work across law, tax, compliance, and journalism. Here, you will collaborate with smart, ambitious people who thrive on solving complex problems, delivering market‑leading solutions, and innovating with curiosity and care.

Learn more about a career with us

Our Employer Story

Inside Thomson Reuters Blog

Awards and Recognition

Join Our Talent Community

Protect Your Job Search Future‑ready careers

Our focus on a skills‑first approach ensures you’ll have the tools and knowledge to grow, lead, and thrive in an AI‑enabled future.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Security Engineer
Lead Security Engineer

Refinitiv • India

Hybrid
INR 2,800,000 - 5,200,000
Flexible vacation
Mental Health Days off
Headspace app
+4
Senior Security Engineer
Senior Security Engineer

Refinitiv • Bengaluru

Hybrid
INR 2,500,000 - 4,000,000
Hybrid work model
Mental health days
Headspace app
+2
Senior Security Engineer
Senior Security Engineer

Refinitiv • India

Hybrid
INR 2,500,000 - 6,000,000
Hybrid work model
Flexible vacation
Mental health days
+3
Lead Security Engineer
Lead Security Engineer

Thomson Reuters India Pvt Ltd • Bengaluru

Hybrid
INR 4,000,000 - 8,000,000
Hybrid work model
Career development and growth
Industry competitive benefits
+2
Senior Software Engineer
Senior Software Engineer

Thomson Reuters • Bengaluru

Hybrid
INR 3,000,000 - 6,000,000
Senior Site Reliability Engineer, AI Platform
Senior Site Reliability Engineer, AI Platform

Refinitiv • Bengaluru

Hybrid
INR 4,000,000 - 7,000,000
Staff Software Engineer
Staff Software Engineer

Thomson Reuters • Hyderabad

Hybrid
INR 1,400,000 - 2,100,000
Hybrid Work Model
Flexible Work Arrangements
Career Development
+4
Senior Insights Analyst
Senior Insights Analyst

PowerToFly • Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Hybrid work model
Flexible work policies
Career development opportunities
Senior Software Engineer
Senior Software Engineer

Refinitiv • India

Hybrid
INR 1,800,000 - 2,600,000
Hybrid work model
Flex My Way
Career development
Staff Software Engineer
Staff Software Engineer

PowerToFly • Hyderabad

On-site
INR 3,000,000 - 5,500,000
Hybrid Work Model
Flex My Way
Career Growth
+2