Senior Information Security Engineer (Application Security)

Bengaluru, Karnataka, India

Applications have closed

InMobi

InMobi Mobile Marketing Platform to grow your business. Take leverage of InMobi's intelligence to identify, engage and acquire your best customers for your business.

View company page

Our Story

Building a new company in the recession of 2007 was no ordinary task. Yet with passion and foresight, we charted our course, helping to transform the way consumers engage with their phones.

Over the last 17 years, InMobi has built a global Advertising Platform that powers our customers’ growth by helping them engage their audiences and drive real connections.

InMobi has also built a second unicorn, Glance, which is advancing digital consumption and creating a new wave of disruption. Present on 400M devices across India, SEA, Japan and the US – Glance is one of the largest content platforms globally with~200M daily active users.

 

What does the team do?

Opportunity is part of the evolving cyber security group which is laser-focused on setting up industry benchmarks in managing & guarding against digital risks in a “Cloud Native - DevOps Only” environment. It is a lean-mean-special action group where every cyber sentinel gets an opportunity to work across domains, has the independence to challenge the status quo & evolve cyber practices to the next level of maturity. Our core competencies revolve around “Product & Platform security” , “Cloud Native Risk Management” and “Detection & Response”.

What you will be doing?

  • Conduct Vulnerability Assessments, Penetration Testing, and source code review.
  • Automate Technical tasks in CI/CD through the use of APIs or tools.
  • Perform application source code security reviews for APIs, middle ware, and frontends in Java, Python, Node.JS, etc.
  • Exploit security flaws and vulnerabilities with attack simulations on multiple application platforms like Web, iOS, Android, and cloud platforms.
  • Perform SAST & DAST and improve SDLC.
  • Develop solution architecture and blueprints based on business technology and security objectives.
  • Research and maintain secure coding guidelines.
  • Perform Security Architecture and Low-Level Application Security Design review involving: Data Protection, Authentication and Authorizations, Web Application Security, and Network Security.
  • Collaborate with product teams to build secure products and achieve the cybersecurity objectives of InMobi.
  • Maintain an active understanding of industry practices for secure software development and incident response.

What is expected of you?

  • Zealous to un-learn & re-learn cyber security practices in a “Cloud Native- DevOps Only” environment.
  • 3-6 years experience in application security, penetration testing, DevSecOps.
  • 2-3 years of experience in building and managing security gating in Sonarqube
  • 2-3 years of experience in manual security code review
  • Standardize & maximize automation in the CI/CD pipeline.
  • Excellent skills with application security testing tools such as Burpsuite, OWASP ZAP, SQLMap, Kali, etc.
  • Experience with scripting languages such as Python, bash, PowerShell, etc.
  • Experience in building and deploying opensource security software in production and making it scalable
  • Knowledge of Kubernetes and Docker containers.
  • Knowledge of OWASP Top 10 and SANS Top 25.
  • Red Teamer with proven skills in exploitation.
  • Strong understanding of security fundamentals and general security technologies.
  • Excellent oral and written communication skills and a good team player.
  • Bug bounties, responsible disclosure awards & Hall of Fame are strongly preferred.
  • Certifications such as GWAPT, Offensive Security Certified Professional (OSCP), OSCE, or GIAC Penetration Testing (GPEN) are strongly preferred.

The InMobi Culture

At InMobi, culture isn’t a buzzword; it's an ethos woven by every InMobian, reflecting our diverse backgrounds and experiences.

We thrive on challenges and seize every opportunity for growth. Our core values of thinking big, being passionate, showing accountability, and taking ownership with freedom —guide us in every decision we make.

We believe in nurturing and investing in your development through continuous learning and career progression with our InMobi Live Your Potential program.

InMobi is proud to be an Equal Employment Opportunity and we make reasonable accommodations for qualified individuals with disabilities.

Visit https://www.inmobi.com/company/careers to better understand our benefits, values and more!

 

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Android APIs Application security Automation Bash Burp Suite CI/CD Cloud DAST DevOps DevSecOps Docker Exploit GIAC GPEN GWAPT Incident response iOS Java Kali Kubernetes Network security Node.js Offensive security OSCE OSCP OWASP Pentesting PowerShell Python Risk management SANS SAST Scripting SDLC SonarQube Vulnerabilities

Perks/benefits: Career development

Region: Asia/Pacific
Country: India
Job stats:  4  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.