Overview
Company
Profile match
Impact
Conditions
Benefits
Hiring process
Similar jobs

TruEra

TruEra provides AI-based solutions to help enterprises analyze machine learning, improve model quality, faster deployment, and build trust by addressing unfair bias and ensuring governance and compliance.

We are seeking a Senior Security Engineer to strengthen the security posture of our cloud infrastructure and applications. As a Senior Security Engineer, you will partner closely with DevOps, platform, and application teams to embed security into day-to-day engineering workflows. You will help shift security left, reduce operational risk, and enable teams to move fast without compromising security.

Responsibilities:

  • Integrated Security: Embed automated security testing (SAST/DAST) into CI/CD pipelines to identify vulnerabilities and their resolution early.
  • Secure Infrastructure: Implement safeguards across infrastructure-as-code, containers, and cloud environments to minimise risk from misconfigurations or unintended use.
  • Threat Management: Automate vulnerability scans and real-time threat responses to reduce risks. Participate in the security triage and vulnerability management process.
  • Compliance: Ensure adherence to standards like SOC 2 or GDPR within DevOps processes.
  • Efficiency: Automate manual security tasks, accelerate development, and reduce delays caused by late-stage fixes.
  • Resilience: Build robust defences against evolving threats with incident response playbooks and threat intelligence.

Requirements:

  • 4+ years of experience as a Security Engineer or in a similar role with a strong foundation in CI/CD, automation, and cloud infrastructure.
  • Strong understanding of cloud security principles (AWS, GCP, or Azure).
  • Experience securing CI/CD pipelines (e. g., GitHub Actions, GitLab CI, Jenkins, Harness).
  • Familiarity with infrastructure-as-code and related security tools.
  • Proficiency in scripting languages (Python, Bash, etc. )
  • Hands-on experience with container security (e. g., Docker image scanning, Kubernetes best practices.
  • Knowledge of IAM, secrets management, and secure key handling.
  • Experience with vulnerability scanning, remediation workflows, and risk prioritisation.
  • Ability to identify and mitigate misconfigurations in cloud and IaC environments.
  • Comfortable collaborating with DevOps, platform, and application teams.

Nice to Have:

  • Familiarity with compliance frameworks (SOC 2 ISO 27001 NIST, HIPAA, GDPR, etc. )
  • Experience with security monitoring and incident response processes.
  • Exposure to SIEM or EDR tools.
  • Experience with SAST/DAST and dependency scanning tools.
  • Familiarity with zero-trust networking concepts.
  • Knowledge of threat modelling and risk assessment practices.
Career impact
Discover how this job can transform your career
Get a personal career forecast for this job - salary uplift, next-level role, skill boost and a 3-year financial impact, all calculated from your profile.
Personal salary uplift vs. your current pay
Your 3-year career trajectory
Skills you will level up in this role
3-year financial impact in dollars
Create free account
Free forever • Less than a minute • No credit card

Work setup

Location
Bengaluru