Security Engineer II (Defensive)

Flywire1

Bengaluru

On-site

INR 1,200,000 - 1,800,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Competitive compensation
Employee Stock Purchase Plan (ESPP)
Digital Disconnect and FlyBetter Days

Job summary

Flywire1 is seeking a Security Engineer II to build hands-on expertise in secure software design and cloud native infrastructure defense within a high velocity fintech setting.

You will work on automating security in CI/CD, hardening cloud infrastructure, and applying AI-driven security reviews while growing toward independent ownership of AppSec and CloudSec tasks.

Qualifications

  • Bachelor's degree in Computer Science, Cyber Security, Software Engineering or a related technical discipline, or equivalent practical experience.
  • Indicative range [1 to 3 years] of hands on experience in application or cloud security, software engineering or a closely related technical role.
  • Exposure to manual code review, dependency or container scanning and cloud security concepts, gained through work experience, personal projects or study.
  • Working knowledge of a public cloud platform such as AWS, plus basic familiarity with containerisation (Docker) and CI/CD pipelines.
  • Comfort reading and writing code in at least one modern language such as Python, Java or Node.js.
  • Awareness of OWASP Top 10 for LLMs and AI risk categories.
  • General understanding of PCI-DSS, SOC 2 or DORA; willingness to deepen on the job.
  • Cloud & Architecture: AWS Certified Security - Specialty, Certified Kubernetes Security Specialist (CKS) or CISSP are highly preferred.
  • Modern AI Security: OffSec OSAI; OSCP or GCIH exposure is a plus.

Responsibilities

  • Secure SDLC & CI/CD Automation: integrate automated security requirements and validation tooling into pipelines under guidance.
  • Build and maintain internal tooling and automated controls to reduce manual security checks.
  • Cloud & Infrastructure Hardening: secure public cloud architecture, run IaC security scans, maintain network isolation and IAM reviews.
  • Contribute to Zero Trust boundaries within Docker and Kubernetes environments.
  • AI Driven Security & App Reviews: configure automated security review workflows using LLM APIs; perform AI risk checks.
  • Source code audits and API security reviews; build towards ownership of complex assessments.
  • Cross Functional Collaboration: participate in sprint planning to integrate security in the lifecycle; provide clear feedback on code and config issues; seek mentorship.

Skills

Security mindset
Cloud security
CI/CD

Education

Bachelor's degree in CS/CS related field

Tools

Docker
Kubernetes
Terraform

Job description

Job Summary:

As a Security Engineer II on the Defensive Platform Builder track you will build hands on experience across secure software design and cloud native infrastructure defence, working under the direction of senior and lead engineers. You will develop an automation first mindset within a high velocity fintech environment, supporting the integration of security controls into our public cloud and GitLab CI/CD pipelines while building towards independent ownership of AppSec and CloudSec work.

Responsibilities and Tasks (in order of priority)
  • 1. Secure SDLC & CI/CD Automation
    • Support the integration of automated security requirements and validation tooling into engineering pipelines under the direction of senior team members.
    • Help build and maintain internal tooling and automated controls that reduce reliance on manual security checkpoints.
  • 2. Cloud & Infrastructure Hardening
    • Work alongside SRE and DevOps teams on secure public cloud architecture, running Infrastructure as Code security scans (for example Terraform) and supporting network isolation controls.
    • Contribute to cloud Identity and Access Management reviews and help maintain Zero Trust boundaries within containerised environments such as Docker and Kubernetes.
  • 3. AI Driven Security & Application Reviews
    • Assist in configuring and running automated security review workflows that use LLM APIs for pull request analysis.
    • Learn and apply technical controls that protect generative AI features against LLM specific risks such as prompt injection and insecure output handling.
    • Support source code audits and API security reviews, building towards independent ownership of more complex assessments over time.
  • 4. Cross Functional Collaboration & Development
    • Take part in software development and infrastructure sprint planning to build a practical understanding of how security fits into the wider engineering lifecycle.
    • Provide clear, actionable feedback on code and configuration issues under the guidance of senior and lead engineers.
    • Actively seek mentorship from senior and lead security engineers to develop breadth across the wider security function.
Education :

Bachelor's degree in Computer Science, Cyber Security, Software Engineering or a related technical discipline, or equivalent practical experience.

Core Experience

indicative range [1 to 3 years] of hands on experience in application or cloud security, software engineering or a closely related technical role.

Foundational Depth

exposure to manual code review, dependency or container scanning and cloud security concepts, gained through work experience, personal projects or study.

Cloud & DevOps Familiarity

working knowledge of a public cloud platform such as AWS, plus basic familiarity with containerisation (Docker) and CI/CD pipelines.

Technical Language Foundation

comfort reading and writing code in at least one modern language such as Python, Java or Node.js.

AI Security Awareness

a working interest in the OWASP Top 10 for LLMs and how AI features introduce new categories of risk.

Regulatory Awareness

a general understanding of standards such as PCI-DSS, SOC 2 or DORA, with willingness to build practical depth on the job.

Highly Preferred Certifications
  • Cloud & Architecture: AWS Certified Security - Specialty, Certified Kubernetes Security Specialist (CKS) or CISSP.
  • Modern AI Security: OffSec OSAI (Offensive Security AI Red Teamer).
  • Broader Depth: OSCP or GCIH, where candidates bring exposure to offensive or incident response work as a secondary strength.
Skills and Abilities

Balances a builder's engineering empathy with a security first mindset, treating software, SRE and product teams as operational allies rather than a source of friction. Communicates clearly under pressure, able to distill cloud configuration drift or a live vulnerability into a plain, high impact risk summary for non-technical stakeholders. Shows creative, novel problem solving across complex, non-standard application and cloud infrastructure challenges within a distributed financial microservices environment. Resilience and analytical clarity in high-pressure scenarios, supporting transparent communication and contributing to risk-based decisions during active security incidents or compressed financial product launch windows. Balances technical risk reduction with business enablement, supporting security infrastructure that serves as a competitive advantage and helps unblock global revenue and enterprise-client acquisition.

What We Offer:
  • Competitive compensation
  • Employee Stock Purchase Plan (ESPP)
  • Competitive time off, including Digital Disconnect and FlyBetter Days to volunteer in a cause you believe in.
  • Flying Start - Our immersive Global Induction Program (Meet our Execs & Global Teams)
  • Work with brilliant people globally
  • Learn more about their journeys by checking out #InsideFlywire on social media
  • Wellbeing Programs (Mental Health, Wellness, Yoga/Pilates/HIIT Classes) with Global FlyMates
  • Be
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer II (Offensive)
Security Engineer II (Offensive)

Flywire1 • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Competitive compensation
ESPP
Digital Disconnect & FlyBetter Days
+3
Lead Security Engineer
Lead Security Engineer

Flywire1 • Bengaluru

On-site
INR 3,500,000 - 7,000,000
Competitive compensation
Employee Stock Purchase Plan (ESPP)
Digital Disconnect & FlyBetter Days to
+3
Security Engineer II (Defensive)
Security Engineer II (Defensive)

Flywire • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Competitive compensation
ESPP
Digital Disconnect & FlyBetter Days
+3
Senior Security Engineer (Defensive)
Senior Security Engineer (Defensive)

Flywire • Bengaluru

Hybrid
INR 3,000,000 - 6,000,000
Employee Stock Purchase Plan (ESPP)
Competitive time off
Digital Disconnect and FlyBetter Days
+3
Senior Security Engineer (Defensive)
Senior Security Engineer (Defensive)

Flywire1 • Bengaluru

On-site
INR 300,000 - 500,000
Senior Security Engineer (Offensive)
Senior Security Engineer (Offensive)

Flywire1 • Bengaluru

On-site
INR 3,500,000 - 7,000,000
Competitive compensation
Employee Stock Purchase Plan (ESPP)
Digital Disconnect / FlyBetter Days
Security Engineer II (Offensive)
Security Engineer II (Offensive)

Flywire • Bengaluru

On-site
INR 1,200,000 - 2,200,000
Competitive compensation
ESPP
Digital Disconnect & FlyBetter Days
+2
Lead Security Engineer
Lead Security Engineer

Flywire • Bengaluru

On-site
INR 5,000,000 - 7,000,000
Competitive compensation
Employee Stock Purchase Plan (ESPP)
Digital Disconnect & FlyBetter Days
+3
Senior Security Engineer I, Application Security
Senior Security Engineer I, Application Security

Flywire • Bengaluru

On-site
INR 3,500,000 - 5,500,000
ESPP
Global induction program
Wellbeing programs
+1
Security & Compliance Engineer Intern
Security & Compliance Engineer Intern

AI Prof • Hyderabad

On-site
INR 1,500,000 - 2,100,000