24 Sep
|
Jupiter
|
Bengaluru
The idea was simple: why should personal finance be the one experience that isn't customer-centric? Today, 2.8 million+ users trust Jupiter to manage their finances — from automated spending insights across all their savings accounts, to the Edge CSB Bank RuPay credit card, to No-Penalty SIPs and Daily SIPs starting at ₹10.
We've built this on cutting-edge technology, strong data analytics, and a diverse team of creative thinkers and domain experts who share a vision for accessible, transparent, and inclusive finance. We're looking for a Security Engineer 3 with hands-on experience in web and Android penetration testing, DevSecOps pipeline hardening, and security automation. You should be current with the evolving threat landscape and skilled at leveraging AI to improve security tooling and workflows.
Security Engineering & Automation
Design and implement security automation frameworks for threat detection, remediation, and compliance validation across cloud and application layers
Develop tools and scripts to enhance security visibility across AI model pipelines, APIs, and data integrations
Integrate security controls into CI/CD workflows, including SAST, DAST, SCA, and IaC scanning
Lead periodic VAPT (Vulnerability Assessment & Penetration Testing) for web apps, mobile apps, agentic AI platforms, and connected services
Cloud & Infrastructure Security
Secure AWS environments using native and third-party tooling
Build and maintain IaC security baselines with automated configuration drift detection
Enforce secrets management, IAM policies, and container security best practices across production workloads
AI & Data Security
Conduct internal security training and phishing simulations
Apply AI model security and data privacy principles to protect sensitive data flows
Contribute to the implementation and maintenance of ISO 27001, SOC 2, DPDPA, and PCI DSS controls
6+ years of experience in product security or a related field
~ Proven hands-on experience with security assessments, threat modeling, code reviews, and penetration testing
~ Strong understanding of secure coding practices and secure SDLC principles
~ Proficiency in scripting languages such as Python, Bash, or similar
~ Working knowledge of OWASP, static/agile analysis tools, and common security frameworks (CWE, CVSS)
~ Ability to manage multiple projects and prioritize effectively
~ A genuine passion for building secure products and fostering a security-first culture
~ Experience with AWS infrastructure security
~ Hands-on experience securing PII and sensitive content
~ Experience in a fintech or startup environment
Certifications such as OSCP, AWS/GCP Security Specialty, CEH, CISSP, or CKS
Exposure to multi-cloud environments including AWS and GCP
Ownership mindset — We value people who see projects through to completion
Meaningful problems — We tackle real challenges and craft delightful customer experiences
📌 AWS Security Engineer (Bengaluru)
🏢 Jupiter
📍 Bengaluru