Principal Security Engineer

GeoServe

Bengaluru

On-site

INR 3,000,000 - 7,500,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Geoserve Energy Transport in Bengaluru is seeking a hands-on Principal Security Engineer to build and run the organization’s information and application security function. This is a working leadership role with direct accountability for the security posture of the product suite and infrastructure.

You will drive vulnerability management, penetration testing, and perimeter security, and you will mentor the security team while reporting to the Head of Engineering.

Qualifications

  • Hands-on leader with 6–12+ years in information security, incl. 3–4 years in leadership
  • Experience running VAPT programs and vulnerability management at scale
  • Strong knowledge of OWASP Top 10 and MITRE ATT&CK
  • Experience securing cloud environments (AWS strongly preferred; Azure/GCP a plus)
  • CI/CD security integration and DevSecOps practices

Responsibilities

  • Own end-to-end VAPT across web, API, mobile, network, and cloud
  • Deploy and manage automated security tooling integrated into CI/CD
  • Maintain vulnerability inventory, risk register, and scanning cadence
  • Own perimeter and infrastructure security (firewalls, WAF, VPN, IAM, encryption)
  • Build incident detection and response capability (SIEM, runbooks)
  • Develop security policies aligned with ISO 27001; audit readiness
  • Report posture to leadership and mentor the security function
  • Drive security awareness org-wide

Skills

VAPT programs
Vulnerability management
DevSecOps
CI/CD security
Container security
SIEM
Cloud security (AWS)
WAF/IDS/IPS knowledge
Threat detection

Education

Bachelor's degree in CS/Info Security
Master's degree a plus

Tools

SAST
DAST
SCA
CI/CD tooling
Cloud security tooling

Job description

Geoserve Energy Transport is seeking a hands-on Principal Security Engineer to build, own, and run the organization's information and application security function. This is a working leadership role — you will personally drive vulnerability management, penetration testing, and perimeter security, not just oversee it. You'll be the single point of accountability for the security posture of Geoserve's product suite and supporting infrastructure, reporting directly to the Head of Engineering.

Key Responsibilities
  • Own end-to-end VAPT (penetration testing) across web, API, mobile, network, and cloud environments; manage vendors, validate findings, and drive remediation to closure with SLA-based severity tracking
  • Deploy and manage automated security tooling (SAST/DAST/SCA, container scanning) integrated into CI/CD pipelines for shift-left security
  • Maintain vulnerability inventory, risk register, and regular scanning cadence across all assets
  • Own perimeter and infrastructure security — firewalls, WAF, IDS/IPS, VPN, network segmentation, and AWS cloud security posture (IAM, encryption, logging)
  • Build incident detection and response capability (SIEM, alerting, runbooks)
  • Develop security policies aligned with ISO 27001; own audit/regulatory readiness for a maritime/energy logistics business
  • Report security posture and risk to leadership; mentor and grow the security function
  • Drive security awareness training org-wide
Required Qualifications
  • Bachelor’s degree in computer science, Information Security, or related field (Master's a plus)
  • 6–12+ years in information security, with at least 3–4 years in a security leadership role
  • Demonstrated hands-on experience running VAPT programs and vulnerability management at scale
  • Strong working knowledge of OWASP Top 10, MITRE ATT&CK framework, and common exploitation/defense techniques
  • Experience securing cloud environments (AWS strongly preferred; Azure/GCP a plus)
  • Experience with CI/CD security integration and DevSecOps practices
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Engineer - Security
Principal Engineer - Security

LogiNext • Mumbai

On-site
INR 1,500,000 - 2,500,000
Principle Engineer - Application Security
Principle Engineer - Application Security

UST • Bengaluru

On-site
INR 2,500,000 - 4,800,000
Staff Product Security Engineer
Staff Product Security Engineer

Teladoc Health • Hyderabad

On-site
INR 4,000,000 - 6,000,000
Head of Security Engineering
Head of Security Engineering

Brevan Howard • Bengaluru Urban

On-site
INR 1,800,000 - 2,500,000
Staff Engineer - Application Security
Staff Engineer - Application Security

UST • Bengaluru

On-site
INR 2,400,000 - 4,200,000
Principal Software Engineer / Engineering Manager – Security
Principal Software Engineer / Engineering Manager – Security

ULTISOURCE • Bengaluru

Hybrid
INR 3,800,000 - 6,800,000
Information Security Analyst
Information Security Analyst

Energy Exemplar • Maharashtra

On-site
INR 1,200,000 - 2,000,000
Principal Penetration Tester/ Offensive Security Team Lead
Principal Penetration Tester/ Offensive Security Team Lead

BreachLock Inc. • Pune District

On-site
INR 5,000,000 - 7,500,000
Product Security Engineer
Product Security Engineer

Atlas Consolidated • Hyderabad

On-site
INR 1,800,000 - 2,400,000
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

Ecolab Global Services • Bengaluru

On-site
INR 3,500,000 - 6,500,000