Product Security Engineer

16 Hours ago • 5-8 Years • Cyber Security

Job Summary

Job Description

Sinch seeks a Product Security Engineer to build secure products. Responsibilities include collaborating with software engineering teams to enforce secure coding standards, creating application threat models and implementing security controls, monitoring application security scanning systems, and remediating identified issues. The role involves planning and delivering application development security training, explaining vulnerabilities and remediation options, and occasionally interacting with customers. This requires 5+ years of web application development experience (Java, C#, Python, Javascript) and 3+ years in application security, including threat modeling, risk assessment, and implementing security controls. Experience with RDBMS and strong understanding of OWASP Top 10 are vital. Strong communication, problem-solving, and collaboration skills are essential.
Must have:
  • 5+ years web application development (Java, C#, Python, Javascript)
  • 3+ years application security experience
  • Threat modeling & security control implementation
  • RDBMS experience (MySQL, MS SQL, DB2, Oracle, PostgreSQL)
  • OWASP Top 10 knowledge
  • Excellent communication & collaboration skills
Good to have:
  • 4+ years SAST/DAST/SCA tooling experience
  • Telecommunications industry experience
  • Experience with Pro and other application security testing tools
  • Public cloud (AWS, GCP, Azure) and cloud security framework experience

Job Details

Description

Sinch is looking for a product security engineer to ensure we are building the most secure products possible. We are looking for someone who has experience with software development and would like to take the next step and specialize in application security. You will be learning to use application security testing tools and will be working closely with team members across engineering and product to help shift security to the left.

The essence of the role

  • Working with software engineering teams to ensure standard methodologies are followed in constructing application code.
  • Creating application threat models and validating that the appropriate security controls are properly implemented.
  • Monitor application security scanning systems output to help identify and remediate issues in applications.
  • Planning and coordinating Application Development Security training including advising and training development teams on secure coding practices.
  • Explain the nature of software vulnerabilities and options to remediate those vulnerabilities.
  • Occasionally work directly with customers.

In order to contribute in this role you have:

  • 5+ years' experience constructing web application software with modern software languages such as Java, C#, Python, and Javascript.
  • 3+ years' experience in an application security role.
  • Experience building application threat models, threat assessments, and providing compensating security controls for those threats.
  • Experience in working with RDBMS such as MySQL, MS SQL Server, DB2, Oracle and PostgreSQL.
  • Excellent understanding of the OWASP Top 10 web application security risks.
  • Excellent communication, innovation, critical thinking, problem-solving, planning, prioritization, project management, collaboration and organization skills.
  • Conflict management and resolution skills.
  • Solid experience with techniques, standards and methods for authentication and authorization, applied cryptography, security vulnerabilities and remediation.
  • Knowledge of Source Code Management systems such as Github or Gitlab.
  • Occasional experience working directly with customers.

Big plus!

  • 4+ years' experience using SAST/DAST/SCA application security tooling.
  • Experience in the telecommunications industry.
  • Experience performing application security assessments using Pro and other application security testing tools.
  • Experience with public clouds such as AWS, GCP, and Azure and cloud security frameworks such as AWS Well-Architected.

Being you at Sinch:

  • We're a worldwide group of people, committed to diversity. We're working to offer an increasingly inclusive workplace wherever you are. No matter who you are, you'll be able to explore new career and growth options - sharing your voice, building your path and making it happen with us.
  • We’re proud to be an equal opportunity employer, and all qualified applicants will be considered to join our team regardless of race, colour, religion, gender identity or expression, sexual orientation, pregnancy, disability, age, veteran status, and more.

Your life at Sinch:

  • Being a Sincher is all about learning and being in pursuit of new challenges. Working in the offices, at home, or in a hybrid model, that means celebrating change and the unknown, rolling up your sleeves and seeing what impact you can have on the world. The only way is up, and you’ll be reaching for the opportunities that match where you want to take your career. It’s closer than you think.
  • It’s time to chase the answers, chase the challenges and chase the dream.

 Are you ready? Join us on our journey!

 

Similar Jobs

Token Metrics - DevOps/Site Reliability Engineer (Remote)

Token Metrics

Bengaluru, Karnataka, India (Remote)
3 Months ago
Grizmo Labs 🌐 - DevOps Engineer

Grizmo Labs 🌐

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Autodesk - Senior Principal Engineer - MarTech

Autodesk

Novi, Michigan, United States (Hybrid)
4 Months ago
Tech Solve Engine - Support & Linux System Engineer

Tech Solve Engine

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Trend Micro - Enterprise Account Manager

Trend Micro

Amsterdam, North Holland, Netherlands (On-Site)
4 Months ago
Varonis  - Strategic Evangelist

Varonis

United States (On-Site)
3 Months ago
Egnyte - Sr. Customer Success Manager, S&G Specialist

Egnyte

India (Remote)
1 Month ago
ION - IT Internal Auditor, Italy

ION

Italy (Hybrid)
4 Months ago
Infoblox - Staff Software Engineer

Infoblox

Washington, United States (Hybrid)
2 Months ago
Canva - Physical Security Specialist - Protective Security (Sydney Campus)

Canva

Sydney, New South Wales, Australia (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Warner Bros Games - Staff Machine Learning Engineer - Search & Personalization

Warner Bros Games

Hyderabad, Telangana, India (Hybrid)
1 Month ago
Passion Gaming - AWS DevOps Engineer

Passion Gaming

Gurugram, Haryana, India (On-Site)
8 Months ago
Quizizz - Platform Engineer

Quizizz

Bengaluru, Karnataka, India (On-Site)
1 Week ago
My Fitness Pal - Staff Machine Learning Engineer

My Fitness Pal

United States (Remote)
1 Week ago
CommerceIQ - DevOps Engineer-III

CommerceIQ

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
IGN - Senior Full Stack Software Engineer

IGN

New York, New York, United States (Hybrid)
3 Months ago
LSEG (London Stock Exchange Group) - DevOps Engineer

LSEG (London Stock Exchange Group)

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
ByteDance - Site Reliability Engineer

ByteDance

Dublin, County Dublin, Ireland (On-Site)
3 Months ago
Patterned Learning Career - Senior Backend Java Developer

Patterned Learning Career

(Remote)
1 Day ago
Super - Senior Full-Stack Software Engineer

Super

Canada (Remote)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in India

Vanderlande - Senior QA Engineer

Vanderlande

Pune, Maharashtra, India (Hybrid)
3 Months ago
Wells Fargo - Lead Systems Quality Assurance Analyst

Wells Fargo

Hyderabad, Telangana, India (On-Site)
3 Months ago
DNEG - Assistant Manager - HR Operations

DNEG

Mumbai, Maharashtra, India (On-Site)
2 Months ago
NetSPI - Senior Software Engineer

NetSPI

Pune, Maharashtra, India (On-Site)
3 Months ago
Warner Bros Games - Senior Manager, FP&A, Content Networks & DTC

Warner Bros Games

Hyderabad, Telangana, India (Hybrid)
1 Week ago
Aristocrat Gaming - Sr Technical Lead

Aristocrat Gaming

Gurugram, Haryana, India (Hybrid)
2 Weeks ago
Shyft Labs - Apache Druid Engineer

Shyft Labs

Gurugram, Haryana, India (Hybrid)
4 Months ago
Flutter Entertainment - Lead Data Scientist

Flutter Entertainment

Hyderabad, Telangana, India (Hybrid)
2 Months ago
Madoveradsofficial - Instagram Content Creator and Social Media Manager

Madoveradsofficial

Hyderabad, Telangana, India (On-Site)
4 Months ago
PwC - IN_Director _Contract lifecycle Management_Contract and compliance_TRS–Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Digital Forensic and Electronic Discovery Expert – Senior Associate

PwC

Zürich, Zurich, Switzerland (On-Site)
4 Months ago
Google - Cloud Technical Solutions Engineer, Security

Google

(On-Site)
2 Months ago
Microsoft - Digital Technology Specialists - Security - French Speaker

Microsoft

Dublin, County Dublin, Ireland (Hybrid)
1 Month ago
PwC - IN-Senior Associate_Tech Lead_FS Tech_Advisory _Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
2 Months ago
Terralogic - THREAT HUNTER

Terralogic

Mumbai, Maharashtra, India (On-Site)
4 Months ago
ByteDance - Global SRE Lead, Security Engineering

ByteDance

Singapore (On-Site)
3 Months ago
ByteDance - Security Engineer (Penetration Tester) - 2025 Start

ByteDance

Singapore (On-Site)
3 Months ago
Interactive Brokers - Senior Cloud Security Engineer

Interactive Brokers

Greenwich, Connecticut, United States (Hybrid)
4 Months ago
Microsoft - Software Engineer - Cloud and Enterprise Security

Microsoft

(On-Site)
2 Weeks ago

Get notifed when new similar jobs are uploaded

About The Company

United States (Remote)

United States (Remote)

United States (Remote)

Mandaluyong, Metro Manila, Philippines (Remote)

Stockholm, Stockholm County, Sweden (Hybrid)

Paris, Île-de-France, France (Remote)

New Zealand (Remote)

Mandaluyong, Metro Manila, Philippines (Remote)

Philippines (Remote)

View All Jobs

Get notified when new jobs are added by Sinch

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug