Senior Security Engineer (Application Security)

Tekion Corp

Bengaluru

On-site

INR 1,800,000 - 3,000,000

Full time

28 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive compensation
Generous stock options
Medical insurance coverage
Influence secure engineering practices

Job summary

Tekion Corp in Bengaluru, India, is expanding its Application Security Engineering team. You will partner with engineering to embed security across the SDLC, from design through deployment, and help build scalable security controls for web, mobile, APIs, and cloud platforms.

The role demands 6–9 years in application security, hands-on secure coding, and DevSecOps expertise. You will drive threat modeling, CI/CD security automation, and security governance while enabling developers to move fast

Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field.
  • 6–9 years of experience in application security, product security, DevSecOps, or security engineering.
  • Strong understanding of information security fundamentals and ability to communicate them clearly to engineering and product teams.
  • Hands‑on experience with secure coding, DevSecOps, and security automation.
  • Familiarity with application architecture, threat modeling, CI/CD pipelines, IaC, serverless, and IAM.
  • Experience integrating security controls into developer workflows.
  • Proficiency in at least one programming or scripting language such as Python, Bash, Java, JavaScript, or Go.
  • Strong collaboration skills and a pragmatic, solution‑oriented mindset.

Responsibilities

  • Drive integration of security across all phases of the software development lifecycle, from design to deployment.
  • Partner with development teams to implement scalable application security controls, standards, and guardrails.
  • Promote secure‑by‑design principles across web, mobile, cloud, APIs, and distributed systems.
  • Lead threat modeling exercises and security design reviews for high‑impact systems, services, and product features.
  • Conduct architectural reviews and risk assessments for new capabilities, services, and major design changes.
  • Assist engineering teams in identifying practical mitigation strategies and reducing design‑level security risks early.
  • Build and improve security automation within CI/CD pipelines.
  • Integrate and optimize application security tooling such as SAST, DAST, SCA, secrets scanning, IaC scanning, and API security controls.
  • Develop and maintain reusable security patterns, libraries, and automation to reduce friction for developers.
  • Review and help prioritize application security findings from internal testing, third‑party assessments, and VAPT exercises.
  • Guide engineering teams on remediation of common vulnerability classes and secure coding improvements.
  • Interpret testing and assessment results and translate them into scalable, engineering‑friendly recommendations.
  • Develop secure coding guidance, patterns, and developer‑facing best practices.
  • Partner with product, engineering, cloud security, and infrastructure teams to identify and remediate security risks early.
  • Participate in security education initiatives and promote strong security culture across engineering.

Skills

Secure coding
DevSecOps
Threat modeling
CI/CD pipelines
Programming languages

Education

Bachelor’s or Master’s degree in Computer Science or Cybersecurity

Tools

SAST
DAST
SCA
IaC scanning
API security controls

Job description

About Tekion

Positively disrupting an industry that has not seen any innovation in over 50 years, Tekion has challenged the paradigm with the first and fastest cloud-native automotive platform that includes the revolutionary Automotive Retail Cloud (ARC) for retailers, Automotive Enterprise Cloud (AEC) for manufacturers and other large automotive enterprises and Automotive Partner Cloud (APC) for technology and industry partners. Tekion connects the entire spectrum of the automotive retail ecosystem through one seamless platform. The transformative platform uses cutting-edge technology, big data, machine learning, and AI to seamlessly bring together OEMs, retailers/dealers and consumers. With its highly configurable integration and greater customer engagement capabilities, Tekion is enabling the best automotive retail experiences ever. Tekion employs close to 3,000 people across North America, Asia and Europe.

Job Introduction

As part of our world‑class engineering team at Tekion, we are expanding our Application Security Engineering function. Our development teams work across a variety of modern technology stacks in a fast-moving environment, making security both a challenge and an opportunity to innovate. We prioritize guardrails over roadblocks in our security culture, empowering developers to move fast while ensuring security is built in, scalable, and resilient. This role will partner closely with engineering teams to integrate security into all phases of the SDLC — from design through deployment.

Leads application security initiatives across Tekion’s products and engineering ecosystem. Drives secure‑by‑design principles, threat modeling, DevSecOps integration, vulnerability reduction, developer enablement, and scalable application security controls across web, mobile, APIs, and cloud‑connected systems.

Key Role & Responsibilities
Secure SDLC & Security Engineering
  • Drive integration of security across all phases of the software development lifecycle, from design to deployment.
  • Partner with development teams to implement scalable application security controls, standards, and guardrails.
  • Promote secure‑by‑design principles across web, mobile, cloud, APIs, and distributed systems.
Threat Modeling & Architecture Reviews
  • Lead threat modeling exercises and security design reviews for high‑impact systems, services, and product features.
  • Conduct architectural reviews and risk assessments for new capabilities, services, and major design changes.
  • Assist engineering teams in identifying practical mitigation strategies and reducing design‑level security risks early.
DevSecOps & Security Automation
  • Build and improve security automation within CI/CD pipelines.
  • Integrate and optimize application security tooling such as SAST, DAST, SCA, secrets scanning, IaC scanning, and API security controls.
  • Develop and maintain reusable security patterns, libraries, and automation to reduce friction for developers.
Vulnerability Management Advisory
  • Review and help prioritize application security findings from internal testing, third‑party assessments, and VAPT exercises.
  • Guide engineering teams on remediation of common vulnerability classes and secure coding improvements.
  • Interpret testing and assessment results and translate them into scalable, engineering‑friendly recommendations.
Security Enablement & Collaboration
  • Develop secure coding guidance, patterns, and developer‑facing best practices.
  • Partner with product, engineering, cloud security, and infrastructure teams to identify and remediate security risks early.
  • Participate in security education initiatives and promote strong security culture across engineering.
Basic Qualifications
  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field; equivalent experience considered.
  • 6–9 years of experience in application security, product security, DevSecOps, or security engineering.
  • Strong understanding of information security fundamentals and ability to communicate them clearly to engineering and product teams.
  • Hands‑on experience with secure coding, DevSecOps, and security automation.
  • Familiarity with application architecture, threat modeling, CI/CD pipelines, IaC, serverless, and IAM.
  • Experience integrating security controls into developer workflows.
  • Proficiency in at least one programming or scripting language such as Python, Bash, Java, JavaScript, or Go.
  • Strong collaboration skills and a pragmatic, solution‑oriented mindset.
Preferred Qualifications
  • Experience with OWASP Top 10, OWASP ASVS, API security, and modern software assurance practices.
  • Experience reviewing code and supporting remediation across modern application stacks.
  • Penetration testing experience is optional and good to have; ability to interpret findings is required.
  • Industry recognized and accepted relevant certifications are a plus.
Perks & Benefits
  • Competitive compensation
  • Generous stock options
  • Medical insurance coverage
  • Opportunity to influence secure engineering practices across a modern product organization
  • Ownership of impactful security initiatives at scale
  • Innovative, collaborative, and fast‑paced culture

Tekion is proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, victim of violence or having a family member who is a victim of violence, the intersectionality of two or more protected categories, or other applicable legally protected characteristics.

For more information on our privacy practices, please refer to our Applicant Privacy Notice here.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer Application Security
Senior Security Engineer Application Security

Tekion Corp • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Competitive compensation
Generous stock options
Medical insurance coverage
+3
Senior Security Engineer (Application Security)
Senior Security Engineer (Application Security)

Tekion Corporation • Bengaluru

On-site
INR 4,500,000 - 6,500,000
Competitive compensation
Generous stock options
Medical insurance coverage
Senior Security Engineer
Senior Security Engineer

Tekion Corp • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Career growth
Global platform
Equal opportunity
Senior Security Engineer
Senior Security Engineer

Tekion Corporation • Bengaluru

On-site
INR 1,200,000 - 1,700,000
Security Engineer II
Security Engineer II

Tekion Corp • Bengaluru

On-site
INR 1,400,000 - 2,100,000
Security Engineer II
Security Engineer II

Tekion Corporation • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Senior Security Engineer (Cloud Security Engineer)
Senior Security Engineer (Cloud Security Engineer)

Tekion Corp • Bengaluru

On-site
INR 1,500,000 - 3,000,000
Competitive compensation
Generous stock options
Medical Insurance coverage
+1
Senior Security Engineer (Cloud Security Engineer)
Senior Security Engineer (Cloud Security Engineer)

Tekion Corporation • Bengaluru

On-site
INR 3,000,000 - 4,500,000
Competitive compensation
Generous stock options
Medical Insurance coverage
+1
Manager, Engineering – Cloud Infrastructure Automation
Manager, Engineering – Cloud Infrastructure Automation

Tekion Corp • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Competitive compensation
Stock options
Medical Insurance coverage
+1
Senior IT Systems Engineer
Senior IT Systems Engineer

Tekion Corp • Bengaluru

On-site
INR 1,200,000 - 1,800,000