Senior Cybersecurity & AI Security Engineer
Location: India
Employment Type: Full-time
Experience: 5+ years
About Symosis Security
Symosis Security is a cybersecurity consulting and engineering firm focused on penetration testing, AI security, security engineering, risk assessments, and security automation.
About the Role
We are seeking a hands-on Senior Cybersecurity & AI Security Engineer who can independently deliver penetration tests, risk assessments, AI security assessments, and practical security engineering projects.
This is a senior, delivery-focused role—not a training position. The successful candidate should be able to contribute from day one, own client deliverables, communicate directly with clients, and build basic security tools or products.
Responsibilities
- Lead web application, API, network, cloud, and infrastructure penetration tests.
- Conduct cybersecurity risk assessments, control-gap reviews, and compliance assessments.
- Prepare technical reports, executive summaries, risk registers, and remediation plans.
- Assess LLM applications, AI agents, RAG systems, APIs, and AI integrations.
- Identify risks such as prompt injection, data leakage, insecure tool use, excessive agency, and weak authorization.
- Build security automation, scripts, dashboards, proof-of-concept tools, and basic products.
- Use Python, JavaScript, APIs, databases, and cloud services to develop practical solutions.
- Present findings and recommendations to clients and senior stakeholders.
- Contribute to security methodologies, templates, and reusable delivery capabilities.
- Review work and provide technical guidance to other team members when required.
Required Qualifications
- 5+ years of qualified experience in penetration testing, security engineering, or cybersecurity consulting.
- Proven experience independently delivering penetration tests and risk assessments.
- Strong knowledge of web, API, network, cloud, and infrastructure security.
- Experience with tools such as Burp Suite, Nmap, Metasploit, and Nessus or similar platforms.
- Strong understanding of OWASP, authentication, authorization, APIs, databases, and vulnerability remediation.
- Experience with AWS, Azure, or Google Cloud.
- Strong Python, JavaScript, or comparable scripting/programming experience.
- Demonstrated ability to build automation, proof-of-concept tools, or basic security products.
- Strong technical writing, communication, and client-facing skills.
- Ability to manage deliverables independently with limited supervision.
Preferred Qualifications
- Experience with LLM security, AI agents, RAG, AI APIs, prompt-injection testing, or AI governance.
- Familiarity with the OWASP Top 10 for LLM Applications.
- OSCP, OSWE, OSEP, CISSP, CISA, Security+, or cloud-security certifications.
- Experience with Docker, Git, CI/CD, databases, REST APIs, or cloud-native development.
- Experience serving enterprise or regulated-sector clients.
Certifications and Technical Experience
- At least one recognized penetration-testing certification is required. Acceptable certifications include CEH, OSCP, OSWE, OSEP, GIAC GPEN, or GIAC GWAPT.
- Additional preferred certifications include CISSP, CISM, AWS Certified Security – Specialty, Microsoft Cybersecurity Architect Expert, or Google Professional Cloud Security Engineer.
- Strong practical experience with Python, FastAPI, Node.js, TypeScript, React, PostgreSQL, Redis, pgvector, LangChain or LangGraph, OpenAI or Anthropic APIs, Docker, CI/CD, cloud-native development, and security automation.
- Demonstrated experience building security tools, APIs, dashboards, proof-of-concept products, or AI-security solutions.
What We Offer
- Work across penetration testing, AI security, security engineering, and risk advisory.
- Direct exposure to enterprise and regulated-sector clients.
- Opportunity to build practical cybersecurity tools and products.
- Significant ownership in a growing cybersecurity engineering firm.
- Competitive compensation based on experience and capabilities.
How to Apply Apply through LinkedIn and email the following to
[email protected] for next steps:
1. Current resume
2. CEH certification details
3. Location and availability
4. Current and expected compensation
5. Notice period
6. Brief summary of two relevant projects:
- One penetration test or risk assessment
- One security automation, AI security, or product-development project
1. Links to GitHub, technical writing, research, or portfolio work, where available
📌 Senior Cybersecurity & AI Security Engineer (India)
🏢 Symosis Security
📍 India