Security Engineer 3
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
Jupiter is hiring a Security Engineer 3 with hands-on experience in web and Android penetration testing, DevSecOps pipeline hardening, and security automation.
The role involves applying current threat intelligence and AI-assisted approaches to improve security tooling and workflows.
Key Skills for This Role
Full Job Posting
About Jupiter
Jupiter is a personal finance platform founded in 2019 and launched in 2021.
The company builds technology and financial products focused on accessible, transparent, and customer-centric personal finance.
The Role
Jupiter is hiring a Security Engineer 3 with hands-on experience in web and Android penetration testing, DevSecOps pipeline hardening, and security automation.
The role involves applying current threat intelligence and AI-assisted approaches to improve security tooling and workflows.
Security Engineering and Automation
- Design and implement security automation for threat detection, remediation, and compliance validation across cloud and application layers.
- Develop tools and scripts to improve security visibility across AI model pipelines, APIs, and data integrations.
- Integrate SAST, DAST, SCA, and IaC scanning into CI/CD workflows.
- Lead VAPT for web apps, mobile apps, agentic AI platforms, and connected services.
Cloud and Infrastructure Security
- Secure AWS environments using native and third-party tools.
- Build and maintain IaC security baselines with automated configuration drift detection.
- Configure WAF rules for DDoS mitigation and bot protection.
- Enforce secrets management, IAM policies, and container security practices across production workloads.
AI and Data Security
- Collaborate with engineering teams to remediate vulnerabilities and enforce secure SDLC practices.
- Conduct internal security training and phishing simulations.
- Apply AI model security and data privacy principles to protect sensitive data flows.
Compliance and Governance
- Contribute to the implementation and maintenance of ISO 27001, SOC 2, DPDPA, and PCI DSS controls.
Required Qualifications
- At least 6 years of experience in product security or a related field.
- Hands-on experience with security assessments, threat modeling, code reviews, and penetration testing.
- Strong understanding of secure coding and secure SDLC principles.
- Proficiency in Python, Bash, or a similar scripting language.
- Experience with AWS infrastructure security and protection of PII and sensitive content.
- Understanding of RBI, NPCI, SOC 2, DPDPA, and ISO 27001 compliance frameworks.
Additional Qualifications
- Experience in fintech or startup environments is a plus.
- Knowledge of red teaming, multi-cloud environments, or certifications such as OSCP, AWS/GCP Security Specialty, CEH, CISSP, or CKS is desirable.
Why Jupiter
- The company values ownership, meaningful problem-solving, healthy debate, continuous growth, and commitment to completion.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career