23 Sep
|
Medianet
|
Bengaluru
23 Sep
Medianet
Bengaluru
About Media.net
Media.net is a leading global ad-tech company that builds innovative products and solutions for advertisers and publishers. We create transparent and efficient pathways for advertising budgets to generate publisher revenue while delivering meaningful value to advertisers, publishers, app developers, and users across the open web.
As one of the world's largest independent contextual advertising businesses, Media.net has one of the industry's most comprehensive advertising technology portfolios. We power major publishers and ad-tech platforms across display, video, mobile, native, search, and local advertising.
Our platform manages high-quality advertising inventory across more than 500,000 websites and is licensed by leading publishers, advertising networks, and technology partners worldwide.
Beyond our core advertising business, Media.net operates at scale across performance-driven consumer acquisition, application development and distribution, and strategic technology investments. These initiatives are supported by one of the world's largest independent software-development engines, enabling us to innovate rapidly and build products for global markets.
Media.net is home to more than 1,300 employees, with key operations across North America, Europe, and Asia. Our US headquarters is in New York, and our global headquarters is in Dubai. Across 50+ demand partners, 21,000+ publishers, and a growing portfolio of products and services, we take pride in delivering trusted, transparent, and scalable outcomes.
What Is the Role Like
At Media.net, we operate large-scale Kubernetes clusters comprising thousands of nodes across multiple cloud and on-premises regions.
As part of the Security team, you will deploy and manage security tooling and promote secure engineering practices across the organisation. You will work closely with Platform SRE, DevOps, Security Operations Centre, and application-development teams to embed security across our infrastructure, cloud-native platforms, and software-development lifecycle.
The role requires a strong DevOps or SRE foundation, hands-on experience with Kubernetes and cloud-native technologies, exposure to Security Operations Centre environments, and experience using agentic penetration-testing and automated security-scanning tools such as PentAGI, Strix, or similar platforms.
Your work will cover SDLC security, Software Bill of Materials, Security Information and Event Management, runtime security, vulnerability management,
compliance, incident response, and digital forensics.
Key Responsibilities
- Define and strengthen security practices across engineering, DevOps, SRE, and infrastructure teams.
- Build security controls into infrastructure, applications, tools, services, deployment pipelines, and operational processes.
- Work with Platform SRE and application-development teams to implement and improve DevSecOps practices.
- Deploy and manage agentic penetration-testing and automated vulnerability-scanning tools such as PentAGI, Strix, or similar platforms.
- Develop automated workflows for vulnerability discovery, attack-path analysis, security validation, prioritisation, and remediation.
- Review findings generated by autonomous security tools, validate potential vulnerabilities, reduce false positives, and drive remediation with the relevant teams.
- Conduct or support vulnerability assessments and penetration testing across applications, APIs, Kubernetes clusters, cloud infrastructure, and internal systems.
- Design, deploy, and support security tooling across cloud-native and on-premises environments.
- Build and maintain security pipelines covering SDLC security, SBOM, SIEM, runtime protection, vulnerability management, and forensic readiness.
- Monitor, investigate, and respond to security alerts and incidents in collaboration with SOC teams.
- Support incident triage, containment, remediation, root-cause analysis, and forensic investigations.
- Develop security policies, procedures, and standards that strengthen the organisation's overall security posture.
- Implement and maintain security controls required for audits and compliance.
- Automate manual security, monitoring, and compliance activities.
- Build dashboards to track CVEs, vulnerabilities, remediation progress, internal security events, and other key security metrics.
- Evaluate emerging threats, attack techniques, and security technologies relevant to large-scale distributed systems.
Who Should Apply
- A B.Tech, M.Tech, or equivalent qualification in Computer Science, Information Technology, Cybersecurity,
or a related discipline.
- 2 - 5 years of experience managing or securing services in large-scale distributed systems.
- A solid background in DevOps or Site Reliability Engineering.
- Hands-on production experience with Kubernetes and cloud-native technologies.
- Experience managing or securing workloads across public-cloud, private-cloud, or hybrid-cloud environments.
- Experience with agentic penetration testing, autonomous security testing, or AI-enabled security-scanning tools such as PentAGI, Strix, or similar platforms.
- Experience working in or closely with a Security Operations Centre.
- Familiarity with SOC processes, including alert monitoring, triage, escalation, incident investigation, containment, and remediation.
- A deep understanding of networking concepts, including TCP/IP, routing, network topologies, network hardware, and software-defined networking.
- Strong knowledge of container security, Kubernetes security, and cloud-native security practices.
- Programming or scripting experience using Python, Go, Ruby, or a comparable language.
- Experience implementing security automation and integrating security tools into CI/CD pipelines.
- Experience with Infrastructure as Code and configuration-management tools such as Terraform and Ansible.
- Knowledge of relational and NoSQL databases.
- Experience with security tools such as Wazuh, Trivy, Falco, DefectDojo, or similar platforms.
- Experience with CI tools such as Jenkins and GitOps/CD tools such as Argo CD or Flux.
- Experience with centralised logging, monitoring, and observability tools such as Loki, Prometheus, and Grafana.
- The ability to independently own complex security problem statements from design and implementation through operational support.
- Strong communication, interpersonal, and cross-functional collaboration skills.
- The ability to work in a fast-paced environment and adjust priorities based on business needs.
Good to Have
- Experience in red teaming, ethical hacking, or advanced penetration testing.
- Experience evaluating or deploying AI-powered offensive-security tools.
- Knowledge of threat modelling, attack-path analysis, and adversarial simulation.
- Experience supporting security audits or regulatory-compliance programmes.
- Familiarity with digital forensics and threat-hunting practices.
- Relevant certifications in cloud security, Kubernetes, DevOps, SRE, SOC operations, or offensive security.
📌 Site Reliability Engineer - Security (Bengaluru)
🏢 Medianet
📍 Bengaluru