VAPT-DevSecops Experts(Individual contributor)

Anaplan Inc

India

On-site

INR 2,000,000 - 2,800,000

Full time

9 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work model

Job summary

Anaplan is hiring a Senior Vulnerability Remediation Engineer to scale security through automation across the SDLC. You will implement self-service controls, enforce guardrails, and enable rapid secure engineering workflows within our hybrid Gurugram environment.

You will build policy-as-code, apply AI-assisted tooling, and focus on least-privilege access, dependency policies, and secure image baselines to protect our platform at scale.

Qualifications

  • Strong automation and engineering skills in Python or Go.
  • Experience with infrastructure-as-code and CI/CD pipelines.
  • Knowledge of DevSecOps and policy-as-code tools.

Responsibilities

  • Automate across the pipeline: build security automation into CI/CD and the broader SDLC so that controls run as code.
  • Leverage AI to scale security automation: harness AI and LLM-assisted tools to speed up control development, triage, and remediation, extending automated coverage beyond what traditional scripts can achieve.
  • Implement policy-as-code: encode guardrails for dependency and package policies, secrets, and configurations so they enforce themselves effortlessly.
  • Build the controlled-repository model: automate the restriction of external dependencies and provide safe, approved package paths for our engineers.
  • Automate secrets management and detection: ensure mishandled or leaked secrets are automatically caught and managed without the need for manual sweeps.
  • Reduce standing privilege: develop automation for least privilege and just-in-time access, making persistent access the exception rather than the rule.
  • Tame scanner output: integrate detection into low-noise, actionable workflows that feed remediation, preventing overwhelming flood of alerts.
  • Automate attack-surface hardening: drive the creation of hardened, golden images and enforce baselines through code.
  • Make controls self-service: default to providing engineers with a paved path wherever it’s safe to do so, rather than imposing unnecessary gates.

Skills

Python
Go
Infra-as-code
CI/CD security
Policy-as-code
OPA
Conftest
Kyverno
Kubernetes
Cloud providers
Secrets management
Identity basics
Developer experience

Job description

At Anaplan, we are a team of innovators focused on optimizing business decision-making through our leading AI-infused scenario planning and analysis platform so our customers can outpace their competition and the market.

What unites Anaplanners across teams and geographies is our collective commitment to our customers’ success and to our Winning Culture.

Our customers rank among the who’s who in the Fortune 50. Coca-Cola, LinkedIn, Adobe, LVMH and Bayer are just a few of the 2,400+ global companies who rely on our best-in‑class platform.

Our Winning Culture is the engine that drives our teams of innovators. We champion diversity of thought and ideas, we behave like leaders regardless of title, we are committed to achieving ambitious goals, and we love celebratingour wins – big and small.

Supported by operating principles of being strategy-led, values -based and disciplined in execution, you’ll be inspired, connected, developed and rewarded here. Everything that makes you unique is welcome; join us and let’s build what’s next - together!

Senior Vulnerability Remediation Engineer

Reports to: Senior Manager, Platform Security
Working model: Gurugram (Hybrid)

Why this role matters

This is an exciting opportunity to make a significant impact at Anaplan! In this role, you will be at the forefront of scaling security through automation and self‑service. You’ll be the driving force behind transforming security intent into enforced, self‑service controls across the SDLC and CI/CD pipelines. Think dependency policy, secrets handling, least‑privilege access, and the guardrails that allow engineering teams to innovate rapidly without compromising security.

When done right, this is some of the most high‑leverage work in our function. Every control you implement will run continuously for every team, seamlessly integrated into their workflows!

Why Anaplan

Anaplan is not just another SaaS application; it’s a powerful platform that performs highly dimensional, enterprise‑scale modeling with responsive recalculation and strong correctness expectations. Our technical landscape is rich and varied, featuring the legacy Hyperblock engine, the innovative Polaris engine, and an expanding suite of AI‑powered products like CoModeler for AI‑assisted model building and CoPlanner for conversational, analyst‑style planning support.

With AI revolutionizing software development, we are embracing more generated code and autonomous changes, making the need for encoded, verifiable guardrails more critical than ever. Security is woven into the fabric of how our platform evolves, rather than treated as an afterthought. Join our small, dynamic team where your contributions to automation will set the gold standard!

What you'll do
  • Automate across the pipeline: build security automation into CI/CD and the broader SDLC so that controls run as code.
  • Leverage AI to scale security automation: harness AI and LLM‑assisted tools to speed up control development, triage, and remediation, extending automated coverage beyond what traditional scripts can achieve.
  • Implement policy‑as‑code: encode guardrails for dependency and package policies, secrets, and configurations so they enforce themselves effortlessly.
  • Build the controlled‑repository model: automate the restriction of external dependencies and provide safe, approved package paths for our engineers.
  • Automate secrets management and detection: ensure mishandled or leaked secrets are automatically caught and managed without the need for manual sweeps.
  • Reduce standing privilege: develop automation for least privilege and just‑in‑time access, making persistent access the exception rather than the rule.
  • Tame scanner output: integrate detection into low‑noise, actionable workflows that feed remediation, preventing overwhelming flood of alerts.
  • Automate attack‑surface hardening: drive the creation of hardened, golden images and enforce baselines through code.
  • Make controls self‑service: default to providing engineers with a paved path wherever it’s safe to do so, rather than imposing unnecessary gates.
What we’re looking for
  • Strong automation and engineering skills, particularly in languages such as Python or Go, along with expertise in infrastructure‑as‑code and pipeline work.
  • In‑depth knowledge of DevSecOps: CI/CD security and hands‑on experience with policy‑as‑code using tools like OPA, Conftest, or Kyverno.
  • Foundational understanding of cloud‑native security, particularly in Kubernetes and at least one major cloud provider, along with knowledge of secrets management and identity basics.
  • A builder’s instinct: you create tools that engineers love because they simplify their work.
  • Genuine care for developer experience, always striving to reduce friction rather than adding unnecessary barriers.
  • The discernment to identify which controls are truly worth encoding and which can be set aside.
Nice to have
  • Experience with supply‑chain security: understanding of provenance and signing, as well as software or model bills of materials.
  • Familiarity with zero‑trust and least‑privilege automation, including just‑in‑time access.
  • Experience working in a regulated, enterprise environment.
  • Contributions to open‑source security tooling or relevant certifications.

Our Commitment to Diversity, Equity, Inclusionand Belonging (DEIB)

We believe attracting and retaining the best talent and fostering an inclusive culture strengthens our business. DEIB improves our workforce, enhances trust with our partners and customers, and drives business success. Build your career in a place where diversity, equity, inclusion and belonging aren’t just words on paper – this is what drives our innovation, it’s how we connect, and it contributes to what makes us a market leader. We believe in a hiring and working environment where all people are respected and valued, regardless of gender identity or expression, sexual orientation, religion, ethnicity, age, neurodiversity, disability status, citizenship, or any other aspect which makes people unique. We hire you for who you are, and we want you to bring your authentic self to work every day!

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, perform essential job functions, and receive equitable benefits and all privileges of employment. Please contact us to request accommodation.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer III, Product Security-P4 Senior Vulnerability Remediation Engineer
Security Engineer III, Product Security-P4 Senior Vulnerability Remediation Engineer

Anaplan • Gurugram District

Hybrid
INR 2,500,000 - 4,000,000
Security Engineer III, Product Security-Senior Vulnerability Remediation Engineer
Security Engineer III, Product Security-Senior Vulnerability Remediation Engineer

Anaplan Inc • Gurugram District

Hybrid
INR 2,500,000 - 4,200,000
Hybrid work model
Security Engineer III (Senior Enterprise Security Engineer/Corporate IT Security Engineer)
Security Engineer III (Senior Enterprise Security Engineer/Corporate IT Security Engineer)

Anaplan Inc • Gurugram District

On-site
INR 2,500,000 - 3,500,000
Security Engineer III (~Senior Identity Security Engineer)
Security Engineer III (~Senior Identity Security Engineer)

Anaplan • Gurugram District

On-site
INR 1,800,000 - 2,400,000
Principal Platform Engineer (High Availability & Disaster Recovery)
Principal Platform Engineer (High Availability & Disaster Recovery)

Anaplan • Gurugram District

On-site
INR 5,000,000 - 9,000,000
Security Engineer III -SOC
Security Engineer III -SOC

Anaplan • Gurugram District

On-site
INR 1,500,000 - 2,100,000
Backend Engineer
Backend Engineer

Anaplan • Gurugram District

On-site
INR 2,500,000 - 4,000,000
Security Engineer III (~Senior Identity Security Engineer)
Security Engineer III (~Senior Identity Security Engineer)

Anaplan Inc • Gurugram District

On-site
INR 4,000,000 - 7,000,000
Principal Platform Engineer (High Availability & Disaster Recovery)
Principal Platform Engineer (High Availability & Disaster Recovery)

Anaplan Inc • Gurugram District

On-site
INR 3,500,000 - 7,000,000
Senior QA Engineer - Platform Experience(SDET)
Senior QA Engineer - Platform Experience(SDET)

Anaplan • Gurugram District

On-site
INR 1,200,000 - 1,600,000