Leads enterprise security engineering across cloud, infrastructure, applications, APIs, and CI/CD environments. Designs security architecture, automation, DevSecOps controls, WAF protections, vulnerability management, and application security testing. Conducts penetration testing and red team exercises, supports incident response, partners with engineering teams, and mentors security practitioners.
Key Responsibilities
Security Engineering & Architecture
- Design, implement, and maintain enterprise security controls across cloud, infrastructure, and application environments.
- Evaluate emerging threats and technologies and recommend improvements to the organization's security architecture.
- Develop security standards, engineering patterns, and technical guidance to improve the overall security posture.
Security Automation & DevSecOps
- Design and develop security automation solutions that improve operational efficiency and reduce manual effort.
- Integrate security controls and validation activities into CI/CD pipelines and software delivery workflows.
- Build and maintain GitHub Actions and related automation to support secure development practices.
- Automate vulnerability management, policy enforcement, reporting, and remediation tracking activities.
Application Security
- Lead security engineering efforts focused on protecting internally developed applications and APIs.
- Perform and coordinate:
- Threat modeling
- Secure design and architecture reviews
- Secure code reviews
- Static Application Security Testing (SAST)
- Dynamic Application Security Testing (DAST)
- Software Composition Analysis (SCA)
- Open-source dependency and supply chain security reviews
- Secret and credential exposure detection
- API security testing and assessments
- CI/CD pipeline security reviews
- Security validation of application deployments
- Partner with development teams to identify, prioritize, and remediate security risks.
Web Application Firewall (WAF) & Edge Security
- Design, implement, and maintain Web Application Firewall (WAF) capabilities.
- Develop and tune security rules, attack detection logic, bot mitigation, rate limiting, and application-layer protections.
- Continuously monitor and improve protections against OWASP Top 10 and emerging web application threats.
Offensive Security & Penetration Testing
- Conduct application red team exercises and adversarial security assessments.
- Perform manual and automated penetration testing of web applications, APIs, and supporting services.
- Simulate real-world attack techniques to identify weaknesses in application design, authentication, authorization, and deployment architectures.
- Document findings, provide remediation guidance, and validate corrective actions.
Collaboration & Security Operations Support
- Partner with engineering, infrastructure, and cloud teams to implement secure solutions.
- Support incident response investigations involving applications, cloud services, and development platforms.
- Provide technical leadership and mentorship on security engineering practices and security tool adoption.
Success Measures
- Increased automation and efficiency of security processes.
- Successful integration of security controls into engineering and CI/CD workflows.
- Reduction of application and cloud security risks.
- Effective implementation and management of WAF protections.
- Timely identification and remediation of vulnerabilities.
- Successful execution of penetration testing and red team activities.
- Improved security posture across applications, APIs, and software delivery platforms.
Similar Jobs
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Leads incentive compensation strategy, quota-setting, recognition programs, analytics, governance, implementation, and continuous improvement across Pfizer’s international markets. Partners with business leaders and cross-functional teams to design compliant, motivating, and financially responsible programs, deliver data-driven recommendations, oversee payouts and operational timelines, and maintain audit readiness. The role requires strong quantitative analysis, commercial operations expertise, project management, stakeholder influence, and experience supporting pharmaceutical or healthcare organizations.
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Leads marketing channel delivery and medical samples services across Malaysia, Indonesia, Singapore, and the Philippines. Oversees sample planning, logistics, compliance, campaigns, HCP portal strategy, social communications, ePermission governance, and omnichannel reporting. Partners with marketing, digital, commercial, legal, compliance, and delivery teams to implement services, manage performance, train stakeholders, maintain audit readiness, and drive process improvement and AI-enabled innovation.
Top Skills:
AIEmail MarketingOmnichannel Reporting DashboardsPfizerpro
Automotive
Designs, develops, and supports scalable SAP solutions using ABAP, RAP, CDS, OData, and S/4HANA extensibility. Responsibilities include API-led integrations, Fiori/UI5 backend services, BTP extensions, testing, debugging, performance optimization, code reviews, architecture discussions, and Agile delivery. The role requires maintaining custom SAP developments across S/4HANA and ECC while following clean core principles, enterprise security standards, and SAP best practices.
Top Skills:
Abap Development Tools (Adt)Api ManagementCloud Application Programming Model (Cap)Core Data Services (Cds)EclipseGitIdocsObject-Oriented AbapOdata V2Odata V4Rest ApisRestful Abap Programming Model (Rap)RfcsSap AbapSap Btp Abap EnvironmentSap Business Technology Platform (Btp)Sap EccSap FioriSap GatewaySap Integration SuiteSap S/4HanaSoapUi5Web Services
What you need to know about the Chennai Tech Scene
To locals, it's no secret that South India is leading the charge in big data infrastructure. While the environmental impact of data centers has long been a concern, emerging hubs like Chennai are favored by companies seeking ready access to renewable energy resources, which provide more sustainable and cost-effective solutions. As a result, Chennai, along with neighboring Bengaluru and Hyderabad, is poised for significant growth, with a projected 65 percent increase in data center capacity over the next decade.

