Dive in and do the best work of your career at DigitalOcean. Journey alongside a strong community of top talent who are relentless in their drive to build the simplest scalable cloud. If you have a growth mindset, naturally like to think big and bold, and are energized by the fast-paced environment of a true industry disruptor, you’ll find your place here. We value winning together—while learning, having fun, and making a profound difference for the dreamers and builders in the world.
What You’ll Do
- Help drive operations of our deployed AppSec tooling, including SAST, SCA, and secrets management. You will synthesize findings into actionable, impactful priorities and work with engineering teams to close those gaps.
- We like Semgrep, and believe it accelerates our ability to create guardrails around safe engineering practices. You will add to our growing corpus of custom, internal Semgrep rules.
- Help accelerate the wider security organization through your secure engineering capabilities. You may build an AI agent to support the Trust & Safety organization or an alert pipeline for the SOC.
- Design and build internal tooling to provide engineering teams with secure‑by‑default configurations and libraries.
- Write robust, resilient, and maintainable software, primarily in Go and Python. You may sometimes work on a frontend.
- Prioritize the user experience (our customers are internal dev teams) to ensure security’s libraries and services are the easiest, fastest way to get work done.
Required Qualifications
- 5+ years of experience in software engineering projects with a security focus. We primarily develop in Go, Python, and JavaScript. You are comfortable writing robust code with good test coverage and can point to specific examples of projects you’ve successfully delivered in the past.
- Experience building or reviewing threat models and ability to craft malicious user, attacker, and abuse/misuse cases.
- Working knowledge of hardware and software supply chain security.
- Understanding of and ability to clearly communicate security topics and vulnerability classes (e.g. OWASP Top Ten). You need to understand why the current project provides security benefits to our engineers.
- A record of partnering with internal engineering teams to tackle security problems across an entire stack with empathy and creativity. Engineering teams are our partners, not our adversaries.
Preferred Qualifications
- Familiarity with technologies such as gRPC, Docker, Prometheus, Kubernetes, HashiCorp Vault, and GitHub Actions.
- Experience with microservice architectures, asynchronous and event-driven processing, and synchronous gRPC/HTTP-based requests.
- Strong analytical, communication, and organizational skills.
Other Information
- This job is located in Bengaluru, India.
Why You’ll Like Working for DigitalOcean
- We innovate with purpose. You’ll be a part of a cutting-edge technology company with an upward trajectory, who are proud to simplify cloud and AI so builders can spend more time creating software that changes the world.
- We prioritize career development. At DO, you’ll do the best work of your career. You will work with some of the smartest and most interesting people in the industry. We are a high-performance organization that will always challenge you to think big. Our organizational development team will provide you with resources to ensure you keep growing. We provide employees with reimbursement for relevant conferences, training, and education. All employees have access to LinkedIn Learning's 10,000+ courses.
- We care about your well-being. Regardless of your location, we will provide you with a competitive array of benefits to support you from our Employee Assistance Program to Local Employee Meetups to flexible time off policy, to name a few.
- We reward our employees. The salary range for this position is based on market data, relevant years of experience, and skills. You may qualify for a bonus in addition to base salary; bonus amounts are determined based on company and individual performance. We also provide equity compensation to eligible employees, including equity grants upon hire and the option to participate in our Employee Stock Purchase Program.
Equity Commitment
For clarity, every applicable employee is granted a 1% stake to be vested over the next 48 months. (1) If at any point you are laid off for good reason the plan remains unchanged; (2) The plan will be preserved at the time of buyout, which means that the new employees or the board will not do anything that translates to further dilution. The economic impact would be a 10% entry point to an employee’s total equity. In the event of a new EV (for instance, if the company goes public) then the ECU will shift to an equivalent size. 73% of the total sum has to be paid for; suppose no additional approval has been given. A 73% vesting percent will pay 5% of your certifications or 23% of your long‑term equity. If the employee must become a minimum relationship then that employee must elect to a later year. Then it is a good question of who’s the best person to be part of the group, if a model was purchased on the fourth or fifth anniversary of the startup that was frozen.
Application Limit
You may apply to a maximum of 3 positions within any 180‑day period. This policy promotes better role‑candidate matching and encourages thoughtful applications where your qualifications align most strongly.
JR: 2026-7765