1,115,425open jobs
64,401companies
189,702added this week
Browse all
Salary
≈ $14k – $35k per year (Estimated)
Location
In office (Mumbai)
Seniority
Middle · 5+ years exp

Confirmed on the employer's own hiring board on Oct 2, 2026. First seen by Alion on Aug 25, 2026.

Overview
Company
Impact
Profile match
Interactive Brokers is an automated global electronic brokerage headquartered in Greenwich, Connecticut, giving individual traders, advisors and institutions direct access to stocks, options, futures, currencies and bonds on markets worldwide. Founded by Thomas Peterffy in 1978 and listed on Nasdaq, it builds most of its trading and clearing technology in-house and runs offices in Chicago, Zug, Budapest, Tallinn, Dublin, Mumbai, Hong Kong and London, as well as the ForecastEx event contract exchange. Hiring covers software and platform engineers, client services associates, AML and KYC analysts, finance controllers, quant analysts and interns.
Backed by TCV

Role Overview

The Security Engineer III – SaaS Security leads structured threat modeling across the firm's SaaS applications, cloud-native platforms, APIs, and third-party SaaS integrations to identify design level risk before it reaches production. This is a hands on, technical contributor role for someone who thinks like an adversary, understands modern multi-tenant SaaS and cloud architecture deeply, and can turn complex technical exposure into clear, prioritized, business-relevant risk. You will partner closely with product and platform engineering to drive secure-by-design outcomes across high-risk systems such as trading platforms, client portals, and the APIs and integrations that connect them.

Key Responsibilities

End to End Threat Modeling (core focus)

Lead threat modeling across the full deployment gamut of SaaS, cloud native, on premise, hybrid, and third-party systems, including applications, infrastructure, microservices, monoliths, APIs, network architecture, and data flows, using methodologies such as STRIDE, PASTA, or attack trees, supported by data flow diagrams (DFDs).

Map attack surface, trust boundaries, and abuse cases across cloud, data center, network, and endpoint layers, drawing on threat knowledge bases (MITRE ATT&CK including Enterprise, Cloud/SaaS, ICS, and Containers matrices, CAPEC, OWASP Top 10 and API Security Top 10).

Model environment specific risk across the ecosystem, including:

SaaS and multi-tenant: tenant isolation, data segregation, token and secrets management, and API authorization (e.g., BOLA/IDOR, broken function level authorization).

Identity and access: authentication and federation flows (OAuth 2.0 / OIDC, SAML/SSO, SCIM provisioning, Kerberos/Active Directory, LDAP), privileged access, and lateral movement paths.

Cloud native (AWS, Azure, GCP): IAM and over permissioned roles, exposed storage, containers/Kubernetes, serverless, and infrastructure as code, within the relevant shared responsibility model.

On premise and hybrid: data center and network segmentation, east west traffic, legacy and end of life systems, physical and virtualized infrastructure, on premise to cloud connectivity, and the trust boundaries between them.

Translate technical findings into documented, prioritized business risk exposure with clear risk ratings, irrespective of where a system is hosted or how it is deployed.

Secure by Design and Engineering Partnership

Embed threat modeling into the SDLC and architecture lifecycle, and shift security left into design and architecture reviews for new builds, migrations, and modernization of existing on-premises estates.

Partner with product, platform, and infrastructure engineering to recommend mitigations, secure design patterns, and reference architectures across cloud and on-premises environments.

Build and maintain reusable threat model libraries, templates, and security patterns to scale coverage across diverse deployment models.

Support adoption of threat modeling tooling and threat modeling as code and validate that recommended controls are implemented.

Integration, Supply Chain, and Ecosystem Risk

Threat model integrations across the ecosystem, including third party SaaS, on premise and vendor systems, data flows, authentication, API exposure, webhook and OAuth scope risk, and supply chain and system to system paths (SaaS to SaaS, cloud to on premise, and B2B connectivity).

Evaluate vendor and partner architectures where they intersect the firm's threat models and trust boundaries.

Risk Communication & Governance

Produce high-quality threat models and recommendations and tailor communication for both technical and non-technical audiences.

Brief leadership with concise, decision ready risk insights, and escalate high risk design flaws with context and recommended actions.

Align threat models with enterprise frameworks (NIST CSF, ISO 27001, CSA Cloud Controls Matrix) and applicable financial services obligations (e.g., DORA, NYDFS 500, RBI guidance).

Track and report key risk indicators such as threat model coverage across the estate and finding closure rates.

Required Qualifications

Typically, 5 to 8 years in cybersecurity (or equivalent demonstrated depth) with a focus on threat modeling, application/product security, or security architecture across cloud, SaaS, and on-premise environments.

Demonstrated, hands on threat modeling of modern and traditional systems using a structured methodology (e.g., STRIDE, PASTA) with DFDs.

Strong understanding of both cloud native and on-premise architectures: multi tenancy, APIs, microservices, network and infrastructure design, and identity/authentication flows (OAuth/OIDC, SAML/SSO, Active Directory/Kerberos).

Working knowledge of AWS, Azure, or GCP and their shared responsibility models, plus familiarity with data centers, networks, and hybrid infrastructure security.

Familiarity with OWASP (Top 10 and API Security Top 10) and MITRE ATT&CK / CAPEC.

Ability to translate technical risk into clear business terms, with strong written and verbal communication.

Bachelor's degree in a related field or equivalent practical experience.

Preferred Qualifications

Experience in financial services or another regulated industry (e.g., DORA, NYDFS 500, RBI guidelines).

Hands-on with threat-modeling tooling / threat-modeling-as-code (e.g., IriusRisk, OWASP Threat Dragon, Microsoft Threat Modeling Tool, ThreatModeler).

Experience with DevSecOps, secure SDLC, infrastructure-as-code (Terraform), containers/Kubernetes, or secure code review.

Exposure to AI/ML or LLM application threat modeling and other emerging technology risks.

Certifications such as CSSLP, CCSP, CISSP, or a cloud-security specialty (e.g., AWS Certified Security – Specialty, Azure Security Engineer).

Core Competencies

Adversarial and systems thinking.

Deep technical understanding of cloud, SaaS, and on-premise architecture across the ecosystem.

Secure by design, shift left mindset.

Clear communication across technical and business audiences.

Strong collaboration with engineering, platform, and infrastructure teams.

Ownership and accountability for deliverables.

Company Benefits & Perks:

• Competitive salary package.• Performance based annual bonus (cash and stocks).• Group Medical & Life Insurance.• Modern offices with free amenities & fully stocked cafeterias.• Monthly food card & company paid snacks.• Hardship/shift allowance with company provided pickup & drop facility*• Attractive employee referral bonus.• Frequent company sponsored team building events and outings.* Depending upon the shifts.

 **The benefits package is subject to change at the management's discretion.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,115,425 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Mumbai
≈ $17k – $36k per year (Estimated) • In office • 8+ years exp • Noida
DevOps
Splunk
Windows
Cybersecurity
Nessus
CyberArk
Qualys Cloud Platform
IBM QRadar
BeyondTrust
SIEM
Apply
≈ $19k – $42k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Bengaluru
SQL
PowerShell
DevOps
Rest API
Azure
IAM
Linux
Windows
Cybersecurity
Zero Trust
Least Privilege
Microsoft Entra ID
Active Directory
Apply
≈ $19k – $42k per year (Estimated) • Hybrid • 5+ years exp • Gurgaon
AI/ML
ISO 42001
Cybersecurity
ISO 27001
Apply
≈ $16k – $38k per year (Estimated) • Hybrid • 3+ years exp • Gurgaon
AI/ML
ISO 42001
Cybersecurity
ISO 27001
Apply
≈ $20k – $42k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Bengaluru
DevOps
Incident Management
SLI/SLO/SLA
Cybersecurity
DLP
Management
ITIL
Apply
$44k – $48k per year • In office • Bachelor's Degree • Dayton
Python
JavaScript
SQL
C++
C++
TensorFlow C++
PyTorch C++
AI/ML
Scikit-learn
Computer Vision
TensorFlow
PyTorch
Machine Learning
DevOps
GCP
Azure
AWS
Apply
≈ $69k – $174k per year (Estimated) • In office • TS/SCI • Bethesda
Python
Databases
RabbitMQ
MinIO
ElasticSearch
Apache Kafka
AI/ML
Scikit-learn
TensorFlow
Machine Learning
DevOps
Ansible
OpenShift
Helm
CloudFormation
GitLab CI
Azure
CI/CD
Jenkins
AWS
Kubernetes
SaltStack
Configuration Management
Amazon S3
Linux
Analytics
Apache NiFi
Management
Agile
Apply
Sr. IT Engineer 1 day ago
≈ $79k – $162k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Fridley
PowerShell
DevOps
Terraform
Azure
Bicep
VPN
Apply
$54k per year • In office • Internship • Bachelor's Degree • North Richland Hills
Python
JavaScript
SQL
Node JS
DevOps
Azure
CI/CD
Git
Analytics
Power BI
ETL/ELT
Management
Power Automate
Apply
≈ $85k – $178k per year (Estimated) • In office • 3+ years exp • Associate's Degree • United States
DevOps
Azure
Cybersecurity
SIEM
Apply
≈ $16k – $39k per year (Estimated) • Hybrid • 5+ years exp • Mumbai
Python
Go
JavaScript
PHP
TypeScript
SQL
C#
Node JS
AI/ML
Red Teaming
Cybersecurity
Burp Suite
Metasploit
Cobalt Strike
ISO 27001
Sliver
OWASP Top 10
PCI DSS
SOC 2
CWE
Active Directory
LDAP
QA
Postman
Apply
≈ $14k – $34k per year (Estimated) • Hybrid • 10+ years exp • Mumbai
DevOps
GCP
Azure
AWS
Cloudflare
Akamai
TCP/IP
DNS
Cybersecurity
ISO 27001
OWASP Top 10
PCI DSS
Zero Trust
Defense in Depth
Least Privilege
Threat Modeling
AWS WAF
Apply
≈ $97k – $270k per year (Estimated) • In office • Internship • Greenwich
AI/ML
Red Teaming
Apply
≈ $121k – $252k per year (Estimated) • Equity • Hybrid • 6+ years exp • Chicago
Cybersecurity
SIEM
Apply
≈ $110k – $215k per year (Estimated) • Equity • Hybrid • 7+ years exp • Greenwich
Cybersecurity
NIST CSF
Apply
≈ $16k – $39k per year (Estimated) • Hybrid • 5+ years exp • Mumbai
Python
Go
JavaScript
PHP
TypeScript
SQL
C#
Node JS
AI/ML
Red Teaming
Cybersecurity
Burp Suite
Metasploit
Cobalt Strike
ISO 27001
Sliver
OWASP Top 10
PCI DSS
SOC 2
CWE
Active Directory
LDAP
QA
Postman
Apply
≈ $14k – $34k per year (Estimated) • Hybrid • 10+ years exp • Mumbai
DevOps
GCP
Azure
AWS
Cloudflare
Akamai
TCP/IP
DNS
Cybersecurity
ISO 27001
OWASP Top 10
PCI DSS
Zero Trust
Defense in Depth
Least Privilege
Threat Modeling
AWS WAF
Apply
In office • Full-Time • Master's Degree • Mumbai
ABAP
Databases
SAP BW
Apply
Hybrid • 2+ years exp • Bachelor's Degree • Mumbai
Python
Java
SQL
Databases
MySQL
Oracle
Apache Kafka
DevOps
Rest API
Jenkins
Linux
Unix
Apply
≈ $13k – $29k per year (Estimated) • In office • 5+ years exp • Mumbai
DevOps
Windows
Management
Confluence
Apply
See all jobs
This is one of many
1,115,425 more open roles from verified company boards, updated every day.