Senior Cybersecurity Engineer / Cybersecurity Lead (Hyderabad)

Senior Cybersecurity Engineer / Cybersecurity Lead (Hyderabad)

02 Oct
|
Dhaniti™ Fintech Solutions Private
|
Hyderabad

02 Oct

Dhaniti™ Fintech Solutions Private

Hyderabad

About Dhaniti™Dhaniti™ Fintech Solutions Private Limited is a financial technology company building digital financial infrastructure that makes financial services more accessible, responsible, and technology-led for individuals, businesses, and institutions.

With a payments-first, credit-enabled, inclusion-led approach, Dhaniti leverages India's Digital Public Infrastructure, including UPI and emerging digital rails. Our platforms include DhanitiPay™ for UPI-led consumer payments and responsible credit, GlocalPe™ for B2B cross-border payments and financial infrastructure, and institutional solutions spanning cards and education finance.

Dhaniti emphasizes secure, scalable, API-driven technology, with a robust focus on trust, compliance, transparency, and customer protection.

About the RoleWe are looking for an experienced Senior Cybersecurity Engineer / Cybersecurity Lead to strengthen Dhaniti's security posture across applications, infrastructure, cloud, networks, endpoints, identities, and development processes.

This is a hands-on role with end-to-end ownership across preventive, detective, and corrective security controls. You will work closely with Engineering, DevOps, Product, IT, and Management to identify risks, strengthen controls, support secure product development, and respond effectively to security incidents.

Key Responsibilities

- Design and improve cybersecurity controls across applications, infrastructure, cloud, networks, endpoints, and production environments.
- Conduct security assessments, vulnerability assessments, penetration-testing coordination, and security reviews; prioritize and drive remediation.
- Establish security policies, standards, procedures, baselines, risk registers, and security documentation.
- Embed application security throughout the SDLC; review APIs, microservices, authentication, authorization, and third-party integrations.
- Apply OWASP Top 10 and API security practices; support SAST, DAST, SCA, container security, and secure code reviews.
- Secure AWS/Azure/GCP environments, including IAM, network controls, logging, encryption, containers, Kubernetes, APIs, databases, and storage.
- Work with DevOps to implement DevSecOps practices and integrate security checks into CI/CD pipelines.
- Monitor security events and manage incident triage, investigation, containment, recovery, root-cause analysis, and preventive actions.
- Manage IAM, RBAC, privileged access, MFA/SSO, service accounts, secrets, certificates, and least-privilege controls.
- Support network security including firewalls, WAF, VPN, IDS/IPS, segmentation, TLS/SSL, DNS, and DDoS protection.
- Manage vulnerability findings through closure and evaluate third-party/vendor security risks.
- Support security audits, compliance assessments, and evidence requirements; work with auditors and external security-testing teams.
- Maintain incident records, audit evidence, runbooks, and security documentation; support security awareness across Engineering and IT.

Must-Have Qualifications




- 5+ years of hands-on professional cybersecurity experience covering application, infrastructure, cloud, or production security.
- Strong practical experience in cloud security, application/API security, vulnerability management, IAM, security monitoring, and incident response.
- Hands-on experience securing production applications and infrastructure, including cloud and/or containerized environments.
- Strong understanding of OWASP Top 10, API security, authentication/authorization, encryption, secrets management, and secure development practices.
- Practical experience with SIEM/security monitoring, vulnerability assessment, security testing, and incident response.
- Strong network and infrastructure security fundamentals, including firewalls, WAF, segmentation, TLS/SSL, DNS, and HTTP/HTTPS.
- Scripting/automation skills using Python, Bash, PowerShell, or similar.
- Ability to identify risks, prioritize remediation, and work effectively with engineering teams.
- Strong communication, documentation, analytical, and problem-solving skills.
- Must be based in Hyderabad or within a reasonable commuting distance, with ability to work on-site.

Preferred Qualifications
- Experience securing AWS, Azure, or GCP production environments.
- Experience with SAST, DAST, SCA, container security, CSPM, or comparable security tooling.
- Experience with SIEM platforms such as Splunk, Microsoft Sentinel, ELK/OpenSearch, QRadar, or equivalent.
- Experience with EDR/XDR, penetration testing, vulnerability assessments, and secure code reviews.
- Experience with Kubernetes, microservices, API gateways, WAF, and cloud-native architectures.
- Experience with ISO 27001, PCI DSS, SOC 2, NIST CSF, CIS Benchmarks, or relevant data protection/privacy requirements.
- Experience working with auditors, compliance teams, and external security-testing partners.
- Fintech, banking, payments, financial services, or other regulated-industry experience.

Additional Advantage / Future-Ready Skills
- Experience with Zero Trust, CSPM/CNAPP, cloud-native security, or security automation.
- Experience with threat hunting, threat intelligence, detection engineering, or advanced security analytics.
- Experience with DevSecOps automation, policy-as-code, or AI-assisted security operations.

Certifications — An AdvantageCISSP, CISM, CCSP, OSCP, CEH, Security+, AWS Security Specialty, Azure Security Engineer, or GIAC certifications. Certifications are an advantage; strong practical experience is given significant importance.

What Success Looks Like

- Strong security controls across applications, infrastructure, cloud, identities,



and production environments.
- Security risks and vulnerabilities are identified, prioritized, tracked, and remediated effectively.
- Security is integrated into the SDLC and deployment lifecycle.
- Effective monitoring, detection, and incident-response capabilities are established.
- Audit and compliance requirements are supported by reliable controls and evidence.
- Engineering teams adopt practical security-by-design and DevSecOps practices.
- Security processes and operational maturity scale with the business.

Who Will Thrive in This Role
- Hands-on, analytical, and comfortable investigating real security issues.
- Able to balance security rigor with practical engineering and product requirements.
- Takes ownership from risk identification through remediation.
- Comfortable across application, infrastructure, cloud, and operational environments.
- Communicates security risks clearly to technical and business stakeholders.
- Enjoys building security practices in an evolving technology environment.

Why Join Dhaniti™Work on technology supporting digital payments, financial services, responsible credit, cross-border payments, and financial infrastructure, where security, privacy, resilience, compliance, and customer protection are fundamental. As Dhaniti grows, there will be opportunities for broader security ownership, architecture responsibilities, specialization, and leadership, aligned with capability and contribution.

What to Expect if Shortlisted

- Initial screening: Recruitment discussion covering experience, technical areas, and logistics.
- Technical assessment: Practical cybersecurity scenario or technical discussion focused on real-world security and problem-solving.
- Technical panel: Discussion covering application/API security, cloud security, IAM, incident response, vulnerability management, DevSecOps, and security architecture.
- Leadership discussion: Conversation covering ownership, risk judgment, communication, and collaboration.
- Offer & onboarding: For selected candidates.

How to ApplyPlease apply with:
- An updated resume highlighting your hands-on cybersecurity experience, security domains, production environments secured, and technologies used.
- Brief details of significant security, cloud, application/API security, incident-response, or DevSecOps projects personally handled.
- Relevant certification details, where applicable.
- GitHub, technical blog, portfolio, or relevant work sample, wherever available.
- Your current notice period and earliest possible joining date.

Please ensure that the technologies, certifications, projects, and responsibilities in your application accurately reflect your actual hands-on experience and individual contribution. Key Focus AreasCloud Security | Application Security | API Security | Network Security | IAM | SIEM & Security Monitoring | Incident Response | Vulnerability Management | DevSecOps | Security Testing | Security Architecture | Compliance | Risk Management

📌 Senior Cybersecurity Engineer / Cybersecurity Lead (Hyderabad)
🏢 Dhaniti™ Fintech Solutions Private
📍 Hyderabad

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior cybersecurity engineer / cybersecurity lead (hyderabad) / hyderabad

Subscribe to this job alert:

Get the latest job offers by email for: senior cybersecurity engineer / cybersecurity lead (hyderabad) / hyderabad