Senior Information Security Engineer (Application Security)

6 Months ago • 3-6 Years

About the job

Job Description

Senior Information Security Engineer (Application Security) with 3+ years experience in application security, penetration testing and DevSecOps
Must have:
  • Application Security
  • Penetration Testing
  • DevSecOps
  • Security Code Review
Good to have:
  • Sonarqube
  • Burpsuite, OWASP ZAP
  • Python, bash
  • Kubernetes, Docker
Perks:
  • InMobi Live Your Potential
  • Continuous Learning
Not hearing back from companies?
Unlock the secrets to a successful job application and accelerate your journey to your next opportunity.

Our Story

Building a new company in the recession of 2007 was no ordinary task. Yet with passion and foresight, we charted our course, helping to transform the way consumers engage with their phones.

Over the last 17 years, InMobi has built a global Advertising Platform that powers our customers’ growth by helping them engage their audiences and drive real connections.

InMobi has also built a second unicorn, Glance, which is advancing digital consumption and creating a new wave of disruption. Present on 400M devices across India, SEA, Japan and the US – Glance is one of the largest content platforms globally with~200M daily active users.

 

What does the team do?

Opportunity is part of the evolving cyber security group which is laser-focused on setting up industry benchmarks in managing & guarding against digital risks in a “Cloud Native - DevOps Only” environment. It is a lean-mean-special action group where every cyber sentinel gets an opportunity to work across domains, has the independence to challenge the status quo & evolve cyber practices to the next level of maturity. Our core competencies revolve around “Product & Platform security” , “Cloud Native Risk Management” and “Detection & Response”.

What you will be doing?

  • Conduct Vulnerability Assessments, Penetration Testing, and source code review.
  • Automate Technical tasks in CI/CD through the use of APIs or tools.
  • Perform application source code security reviews for APIs, middle ware, and frontends in Java, Python, Node.JS, etc.
  • Exploit security flaws and vulnerabilities with attack simulations on multiple application platforms like Web, iOS, Android, and cloud platforms.
  • Perform SAST & DAST and improve SDLC.
  • Develop solution architecture and blueprints based on business technology and security objectives.
  • Research and maintain secure coding guidelines.
  • Perform Security Architecture and Low-Level Application Security Design review involving: Data Protection, Authentication and Authorizations, Web Application Security, and Network Security.
  • Collaborate with product teams to build secure products and achieve the cybersecurity objectives of InMobi.
  • Maintain an active understanding of industry practices for secure software development and incident response.

What is expected of you?

  • Zealous to un-learn & re-learn cyber security practices in a “Cloud Native- DevOps Only” environment.
  • 3-6 years experience in application security, penetration testing, DevSecOps.
  • 2-3 years of experience in building and managing security gating in Sonarqube
  • 2-3 years of experience in manual security code review
  • Standardize & maximize automation in the CI/CD pipeline.
  • Excellent skills with application security testing tools such as Burpsuite, OWASP ZAP, SQLMap, Kali, etc.
  • Experience with scripting languages such as Python, bash, PowerShell, etc.
  • Experience in building and deploying opensource security software in production and making it scalable
  • Knowledge of Kubernetes and Docker containers.
  • Knowledge of OWASP Top 10 and SANS Top 25.
  • Red Teamer with proven skills in exploitation.
  • Strong understanding of security fundamentals and general security technologies.
  • Excellent oral and written communication skills and a good team player.
  • Bug bounties, responsible disclosure awards & Hall of Fame are strongly preferred.
  • Certifications such as GWAPT, Offensive Security Certified Professional (OSCP), OSCE, or GIAC Penetration Testing (GPEN) are strongly preferred.

The InMobi Culture

At InMobi, culture isn’t a buzzword; it's an ethos woven by every InMobian, reflecting our diverse backgrounds and experiences.

We thrive on challenges and seize every opportunity for growth. Our core values of thinking big, being passionate, showing accountability, and taking ownership with freedom —guide us in every decision we make.

We believe in nurturing and investing in your development through continuous learning and career progression with our InMobi Live Your Potential program.

InMobi is proud to be an Equal Employment Opportunity and we make reasonable accommodations for qualified individuals with disabilities.

Visit https://www.inmobi.com/company/careers to better understand our benefits, values and more!

 

View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

InMobi builds transformative technologies to positively impact people, businesses, and societies around the world. We power advertisers’ and publishers’ growth with high impact experiences and innovative solutions that help them activate their audiences and drive real connections with today’s consumers.

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

New York, New York, United States (On-Site)

San Mateo, California, United States (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

View All Jobs

Get notified when new jobs are added by InMobi

Similar Jobs

Zynga - Application Security Engineer

Zynga, India (On-Site)

Dream Game Studios - Senior Security Engineer - Red Team

Dream Game Studios, India (On-Site)

brightline - Information Systems Security Engineer

brightline, United States (On-Site)

NBC universal - Staff Cyber Security Engineer (Generative AI)

NBC universal, United States (Remote)

NBC universal - Staff Cyber Security Engineer

NBC universal, United States (Remote)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Aristocrat Gaming - Data Analyst

Aristocrat Gaming, India (Hybrid)

Go Fund Me - Manager, Data Science

Go Fund Me, United States (Hybrid)

Truecaller - Senior Android Engineer

Truecaller, Sweden (On-Site)

paypay - Android Engineer

paypay, (Remote)

ByteDance - Software Engineer, ML System Scheduling

ByteDance, United States (On-Site)

ByteDance - Tech Lead - Global E-Commerce Supply Chain

ByteDance, United States (On-Site)

ByteDance - Research Scientist in Molecular Dynamics

ByteDance, United States (On-Site)

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Aristocrat Gaming - Data Analyst

Aristocrat Gaming, India (Hybrid)

Keywords Studios (Player Support) - Java Full-Stack Developer (Contract for 3 months initially)

Keywords Studios (Player Support), India (Hybrid)

Keywords Studios (Player Support) - The Machine Translation Specialist

Keywords Studios (Player Support), India (Hybrid)

Keywords Studios (Player Support) - Senior Design Manager/Design Manager

Keywords Studios (Player Support), India (Hybrid)

Dream Game Studios - Senior Manager - Administration

Dream Game Studios, India (On-Site)

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Aristocrat Gaming - Affiliate Program Backoffice

Aristocrat Gaming, Malta (Hybrid)

Truecaller - Senior Android Engineer

Truecaller, Sweden (On-Site)

paypay - Android Engineer

paypay, (Remote)

Axinous - Senior Manager, Global CXO Experiences

Axinous, United States (Hybrid)

ByteDance - Software Engineer, ML System Scheduling

ByteDance, United States (On-Site)

ByteDance - Tech Lead - Global E-Commerce Supply Chain

ByteDance, United States (On-Site)

Get notifed when new similar jobs are uploaded