Senior Security Engineer

Thomson Reuters

Bengaluru

On-site

INR 1,500,000 - 3,500,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible hybrid work
Mental Health Days
Headspace app access
Tuition reimbursement

Job summary

Thomson Reuters is seeking a Senior Security Engineer to secure and harden our estate across applications and cloud infrastructure. You will sharpen patching cycles, implement security controls, and drive AI-augmented SAST/SCA tooling adoption.

You will mentor junior engineers and coordinate changes with partner teams across regions to ensure secure, scalable delivery. The role emphasizes ownership of security outcomes, cross-functional collaboration, and continuous improvement of engineering

Qualifications

  • 5+ years of security, software, or DevSecOps engineering experience across application, infrastructure, and cloud
  • Multi-cloud experience (AWS, Azure, GCP, OCI) and on-premises infra
  • Hands-on with SAST/SCA tooling and remediating vulnerabilities
  • Experience reducing patching cycles and improving security workflows
  • Strong ownership of security outcomes and ability to mentor engineers

Responsibilities

  • Secure and harden the estate across full stack, fixes vuls and cloud configuration
  • Improve patching cycles and golden-image refreshes to reduce cycle time
  • Implement and tune security controls across OS, containers, CI/CD, cloud, and networks
  • Scale adoption of AI-augmented SAST and SCA tooling and review fixes
  • Mentor junior engineers and review their fixes
  • Partner with application/platform teams to validate changes and coordinate across regions
  • Provide accurate security metrics for program reporting

Skills

Security engineering
DevSecOps
Cloud security
Patching & hardening
Vulnerability management
Mentoring & leadership

Education

Bachelor's degree in CS/InfoSec

Tools

SAST
SCA tooling
CI/CD security tooling

Job description

About the Role

In this opportunity as Senior Security Engineer, you will:

  • Secure and harden the estate hands-on across the full stack: application and open-source dependency fixes, infrastructure patching, cloud configuration and guardrails, WAF, network isolation, and secrets and machine-identity management.
  • Improve and optimize how security gets done, reworking patching cycles and golden-image refreshes, cutting cycle time, and removing friction so the team moves faster.
  • Implement and tune security controls across operating systems, containers, CI/CD pipelines, cloud configuration, and network boundaries to defend against sophisticated adversaries and insider threats.
  • Scale adoption of AI-augmented SAST and SCA tooling, expanding coverage, reviewing generated pull requests, and validating fixes, prioritizing by risk in line with CISA guidance and measuring mean time to remediate, throughput, and burndown against SLA.
  • Package reusable patterns, tooling, and runbooks so routine work can be executed by more junior engineers, and mentor them with technical review of their fixes.
  • Partner with application and platform teams to land and validate changes safely, and coordinate with the wider team across regions to keep progress continuous across time zones.
  • Feed accurate security metrics and status into program reporting.
About You

You're a fit for the role of Senior Security Engineer if your background includes:

  • 5+ years of security, software, or DevSecOps engineering experience, comfortable securing and hardening across application, infrastructure, and cloud, plus a bachelor's degree in Computer Science, Information Security, or a related field (or equivalent practical experience).
  • Multi-cloud experience across two or more of AWS, Azure, GCP, and OCI (all four an advantage), alongside on-premises infrastructure.
  • A solid understanding of security principles and common vulnerabilities, with hands-on work across patching, hardening, cloud configuration, network isolation, and identity and access controls.
  • Hands-on experience with SAST/SCA tooling and remediating application and open-source dependency vulnerabilities, plus infrastructure patching.
  • A track record of improving and optimizing engineering processes, reducing cycle time in patching, releases, or security work, rather than only executing it.
  • Familiarity with vulnerability prioritization (CVSS/EPSS, CISA KEV) and SLA-driven burndown, plus comfort with AI-assisted tooling and reviewing its output critically.
  • Clear communication, some experience mentoring engineers, and strong ownership of security outcomes.
What's in it For You?

Hybrid Work Model: We've adopted a flexible hybrid working environment (2-3 days a week in the office depending on the role) for our office-based roles while delivering a seamless experience that is digitally and physically connected.

Flexibility & Work-Life Balance: Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work-life balance.

Career Development and Growth: By fostering a culture of continuous learning and skill development, we prepare our talent to tackle tomorrow's challenges and deliver real-world solutions. Our Grow My Way programming and skills-first approach ensures you have the tools and knowledge to grow, lead, and thrive in an AI-enabled future.

Industry Competitive Benefits: We offer comprehensive benefit plans to include flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing.

Culture: Globally recognized, award-winning reputation for inclusion and belonging, flexibility, work-life balance, and more. We live by our values: Obsess over our Customers, Compete to Win, Challenge (Y)our Thinking, Act Fast / Learn Fast, and Stronger Together.

Social Impact: Make an impact in your community with our Social Impact Institute. We offer employees two paid volunteer days off annually and opportunities to get involved with pro-bono consulting projects and Environmental, Social, and Governance (ESG) initiatives.

Making a Real-World Impact: We are one of the few companies globally that helps its customers pursue justice, truth, and transparency. Together, with the professionals and institutions we serve, we help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, and provide trusted, unbiased information to people all over the world.

#LI-HG1

About Us

Thomson Reuters informs the way forward by bringing together the trusted content and technology that people and organizations need to make the righ

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Refinitiv • India

Hybrid
INR 2,500,000 - 6,000,000
Hybrid work model
Flexible vacation
Mental health days
+3
Lead Security Engineer
Lead Security Engineer

PowerToFly • Bengaluru

Hybrid
INR 3,500,000 - 6,000,000
Hybrid work model
Flex My Way policy
Career development and growth
Lead Security Engineer
Lead Security Engineer

Refinitiv • India

Hybrid
INR 2,800,000 - 5,200,000
Flexible vacation
Mental Health Days off
Headspace app
+4
Senior Software Engineer II (Security)
Senior Software Engineer II (Security)

JobCubby • India

Hybrid
INR 1,800,000 - 2,400,000
Hybrid work model
Flex My Way
Career development
+2
Senior Cloud Security Engineer
Senior Cloud Security Engineer

PowerToFly • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Hybrid work
Work-life balance
Career development
+4
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Refinitiv • India

Hybrid
INR 2,500,000 - 5,000,000
Senior Software Engineer II (Security)
Senior Software Engineer II (Security)

Thomson Reuters • Bengaluru

Hybrid
INR 2,500,000 - 3,800,000
Hybrid Work Model
Career Development
Mental Health Days
+1
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Thomson Reuters • Bengaluru

Hybrid
INR 2,600,000 - 3,800,000
Hybrid Work Model
Flex My Way policies
Growth & Learning programs
+1
Senior Software Engineer
Senior Software Engineer

Thomson Reuters • Bengaluru

Hybrid
INR 3,000,000 - 6,000,000
Staff Software Engineer
Staff Software Engineer

Thomson Reuters • Hyderabad

Hybrid
INR 1,400,000 - 2,100,000
Hybrid Work Model
Flexible Work Arrangements
Career Development
+4