Join to apply for the Product Security Engineer role at Loyalty Juggernaut.
At Loyalty Juggernaut, we’re on a mission to revolutionize customer loyalty through AI-driven SaaS solutions. GRAVTY® is our flagship SaaS product that empowers multinational enterprises to build deeper customer connections across diverse industries such as Airlines, Airport, Retail, Hospitality, Banking, F&B, Telecom, Insurance, and Ecosystem.
Visit www.lji.io to know more about us.
As a Product Security Engineer, you’ll ensure the security of GRAVTY® throughout the development lifecycle. You will collaborate closely with Engineering, DevOps, and Product teams to design and implement security controls, identify vulnerabilities, and promote secure coding practices.
Roles and Responsibilities
- Conduct Vulnerability Assessment and Penetration Testing (VAPT) across web, mobile, API, and infrastructure.
- Think like an attacker and simulate advanced threat scenarios to proactively identify security gaps.
- Utilize leading security tools such as Burp Suite, Acunetix, OWASP ZAP, Snyk, Wiz, and others.
- Leverage offensive security platforms and toolkits like Wireshark, Metasploit, Kali Linux, and more.
- Perform API and mobile platform security testing, including vulnerability discovery and exploit validation.
- Execute and document Open-Source Intelligence (OSINT) investigations.
- Collaborate closely with DevOps/Engineering to integrate security tools into CI/CD pipelines and promote DevSecOps best practices.
- Contribute to secure coding reviews and vulnerability triage, and assist in patch, compliance, and access control management.
- Monitor and respond to production security alerts and assist with security incident handling.
Qualifications
- A Bachelor’s degree in Engineering, preferably CS/IT.
- 2‑5 years of proven experience in penetration testing and vulnerability management.
- Minimum of 2+ years of experience in Red Teaming.
- Strong coding/scripting proficiency in Python, Java, Ruby, or similar.
- Familiarity with AWS cloud, Linux systems, Docker containers, and infrastructure security practices.
- Exposure to DevSecOps, including implementing security tools in CI/CD and production environment protection.
- Experience in Secure Development Lifecycles, access controls, and patch & compliance frameworks.
- Industry‑recognized certifications like CEH, eWPT, eWPTX, or equivalent are a plus.
- Excellent analytical, communication, and collaboration skills.
- A curious mind, a passion for security, and a knack for staying one step ahead of adversaries.
Referrals increase your chances of interviewing at Loyalty Juggernaut by 2x.