Jobs Companies Greenlight Senior Security Engineer

Sobre este puesto de Senior Security Engineer en Greenlight

Greenlight · Híbrido · Bengaluru, Karnataka

Greenlight is a family technology company on a mission to help families raise financially smart kids and navigate life together. Its suite of products — including the Greenlight app, debit card, Safe Family GPS trackers, and Family Hub — brings together financial tools, safety features, and everyday family management in one connected experience. Designed for busy families who want convenience without compromise, Greenlight continues to innovate alongside the evolving needs of modern life. Today, more than 6.5 million family members trust Greenlight to stay in sync.

At Greenlight, we're here to make the day-to-day easier and futures brighter, so families can spend less time managing life, and more time living it. That's why we get out of bed every morning.


We are seeking a Senior Product Security Engineer to join our growing security team. This role will be critical in ensuring the security of our products across the entire software development lifecycle (SDLC) and provide support on different security initiatives. You will work closely with engineering, product, and operations teams to embed security best practices from design through to deployment. You will play a critical role in shaping our security posture, embedding security into our development lifecycle, and protecting our customers' data. 

Technologies we use:

  • Backend: Node.js, Kotlin, Java, Go
  • Frontend: React, Redux, Swift, Kotlin
  • REST, gRPC, graphQL
  • AWS
  • MySQL, DynamoDB, Redis
  • Kubernetes, Ambassador, Helm, Rancher
  • What you will be doing:

  • Support in executing a comprehensive product security strategy that aligns with the company's goals and risk appetite.
  • You will work hands on across code, infrastructure, and CI/CD to create agents, services and pipelines that detect, prevent and remediate risks leveraging AI where it adds value. 
  • Design, build and operate security automation for the SDLC (code scanning, dependency risk management, secrets detection, policy-as-code) integrated into CI/CD. 
  • Perform Manual Design and Implementation Reviews of Greenlight products and services from a security perspective.
  • Establish and enforce secure development standards (i.e. API security, Security patterns, IaC, etc.)  and best practices across the organization.  
  • Serve as SME on the practical security of our AI and LLM ecosystem. Lead threat modeling exercises for novel AI systems applying advanced security and privacy best practices. 
  • Leverage automations and tools to continuously test, fuzz and validate products and platform components for security issues.
  • Perform Penetration testing and retesting to validate fixes.
  • Responsible for triaging findings from security researchers and leading incident response for PSIRT.
  • OnCall support for incident response and lead product-related security events and vulnerabilities.
  • Partner with engineering, product, and platform teams to embed security by design patterns, drive threat modeling and land pragmatic guardrails that unblock developers.
  • Provide guidance and education to developers that help prevent the authoring of vulnerabilities. 
  • Partner closely with engineering, product, and platform teams to prioritize and remediate security vulnerabilities in a timely and efficient manner.
  • Develop and maintain software supply chain protections including SBOM generation/verification, artifact signing/attestation, and provenance enforcement. 
  • Build automation for  static and dynamic analysis and frameworks that enable Greenlight to scale consistently across all our products. 
  • Use data and telemetry to measure control effectiveness, build dashboards and alerts that turn signals into action. 
  • Document runbacks and API, mentor engineers and champion secure engineering practices.
  • Foster a culture of security awareness and ownership across the Engineering and Product organizations.
  • Stay current with the latest security threats, vulnerabilities, and industry best practices to continuously evolve our security controls and processes.
  • What you should bring

  • 5+ years of experience finding security vulnerabilities, security code reviews  and knowledge of secure code development for the technology stack at Greenlight.
  • 2-4 years experience with the threat modeling process and ability to find design problems based on technical architecture and data flow diagrams.
  • Experience with exploiting common security vulnerabilities 
  • Deep technical knowledge of web and mobile application security, common vulnerabilities, secure coding practices, common exploit mitigations and secure architecture patterns.
  • Experience integrating or building AI-powered tools to assist with vulnerability detection, code review or threat modeling. 
  • Experience creating software that enables security processes especially those leveraging AI/ML for automation or augmentation. 
  • End to end experience on implementing and managing tools for Product Security (i.e. API Security, Mobile Protection, SAST, runtime scanning, etc.)
  • Experience with software development and automation that enables security processes. Deep technical knowledge of CI/CD pipelines and relevant tools for web and mobile applications. 
  • Hands-on experience with security tools for SAST, DAST, IAST, and penetration testing. Fuzzing skills are good to have. 
  • Skilled in scripting, automation and exploit writing. 
  • Strong understanding of cloud security principles in AWS environments.
  • Strong communication skills with the ability to articulate complex security concepts to both technical and non-technical audiences. 
  • Strong product sense for rapid iteration and refinement based on data, combined with a collaborative mindset to work closely with engineers, product managers, and security analysts in a fast-paced environment.
  • Nice to have:

  • Strong at abstraction turning bespoke engagements into reusable patterns and reference implementation.

  • Security assessment of IoT hardware/firmware
  • Contribution to security community including public research, bug bounty, presentations, blogs, etc
  • Experience at Fintech or similar regulated companies
  • Startup Agility and stay curious mindset

  • Who we are:
    It takes a talented team to aim for a mission like ours. We're looking for people who ask "is it bold enough?" People who bring their real selves to the table and push the people around them to do the same. We win by never hesitating to jump in, offer a hand, or share the credit, because we know we're stronger together than apart. And through all of it, the mission stays the thing we measure ourselves against: are we doing right by the families counting on us? If that sounds like your kind of team, we'd love for you to apply. 
     
    Greenlight is an equal opportunity employer and will not discriminate against any employee or applicant based on age, race, color, national origin, gender, gender identity or expression, sexual orientation, religion, physical or mental disability, medical condition (including pregnancy, childbirth, or a medical condition related to pregnancy or childbirth), genetic information, marital status, veteran status, or any other characteristic protected by federal, state or local law.
     
    Greenlight is committed to an inclusive work environment and interview experience. If you require reasonable accommodations to participate in our hiring process, please reach out to your recruiter directly or email [email protected]
     
    ¿Listo para postularte en Greenlight?
    Postúlate en Greenlight

    Empleos similares

    Cyderes
    Senior Security Engineer, SailPoint ISC
    Cyderes
    ⚡ Postúlate pronto Bengaluru, Karnataka Híbrido
    ● Nuevo 👁 Visto ✓ Postulado hace 6d
    Thomson Reuters
    Lead Security Engineer
    Thomson Reuters
    ⚡ Postúlate pronto India, Bengaluru, Karnataka Híbrido
    ● Nuevo 👁 Visto ✓ Postulado hace 1sem
    Altera
    FPGA Post Silicon Validation Engineer - Security
    Altera
    ⚡ Postúlate pronto Bengaluru, Karnataka, India Presencial
    ● Nuevo 👁 Visto ✓ Postulado hace 1sem
    Altera
    FPGA Post Silicon Validation Engineer - Security
    Altera
    ⚡ Postúlate pronto Bengaluru, Karnataka, India Presencial
    ● Nuevo 👁 Visto ✓ Postulado hace 1sem
    Netskope
    Staff Engineer DevOps, Data Security (DLP)
    Netskope
    ⚡ Postúlate pronto Bengaluru, Karnataka, India Híbrido
    ● Nuevo 👁 Visto ✓ Postulado hace 2sem
    Harness
    Senior Security Engineer - Customer Engineering
    Harness
    ⚡ Postúlate pronto Bengaluru, Karnataka, India Presencial
    ● Nuevo 👁 Visto ✓ Postulado hace 3sem
    Kobie
    Sr Security Engineer
    Kobie
    ⚡ Postúlate pronto Bengaluru, Karnataka Híbrido
    ● Nuevo 👁 Visto ✓ Postulado hace 1 mes
    Seekho
    Founding Security Engineer (Product Security)
    Seekho
    ⚡ Postúlate pronto Bengaluru, Karnataka, India Presencial
    ● Nuevo 👁 Visto ✓ Postulado hace 1 mes
    Caxton Associates
    Windows Security Engineer
    Caxton Associates
    ⚡ Postúlate pronto Bengaluru, Karnataka, India Presencial
    ● Nuevo 👁 Visto ✓ Postulado hace 2 meses

    Regístrate para recibir sugerencias adaptadas a los empleos que abres y las búsquedas que guardas.

    Más empleos en Greenlight

    Ver todos los empleos en Greenlight →

    Postúlate ahora
    🤖

    Un momento — para

    JobsRadar se creó para personas reales que están pasando un mal momento en su búsqueda de empleo — no para solicitudes automatizadas. Estás haciendo clic demasiado rápido y ahora estás bloqueado temporalmente.

    Vuelve más tarde. Si de verdad estás buscando empleo, cuentas con nosotros — solo compórtate como una persona.

    Catch your next role the second it’s posted.

    Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

    Create free account

    Free forever · takes 30 seconds · already have one?

    Toma ventaja en tu búsqueda de empleo.

    Únete a nuestro canal de Telegram para lo que te ayuda a conseguir el puesto — referencias salariales, el pulso semanal del mercado y avisos de nuevas funciones. Sin spam, solo señal.

    Únete al canal — es gratis