Product Security Engineer

Security and Risk Management Hyderabad, India


Join us as we pursue our new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, our team is committed to our work, customers, having fun and most importantly to each other’s success. Learn more about Splunk careers and how you can become a part of our future!

About The Role

Do you enjoy securing products which have a world impact? As a security engineer you will lead security and vulnerability assessments in collaboration with the product team to assure the secure release of Splunk products! You will partner closely with product and engineering organizations to drive secure products across the Splunk portfolio.

Responsibilities

  • Conduct threat modeling and act as a point of contact for teams to discover insecure design patterns and threats in Splunk’s products for web applications, mobile applications and hybrid Cloud software.
  • Lead the remediation of vulnerabilities discovered through vulnerability assessments involving SAST, DAST and SCA findings
  • Develop and own high complexity security automation tools, and CICD integration, familiar with revision control systems git, svn), merge request and deployment of artifact/libraries.
  • Lead security design discussions, threat assessments, proposes and discusses solutions to security tools, CICD pipeline changes and pen testing that are directly related to their area of focus.

Requirements:

  • Software development experience is a plus
  • Knowledge of common application & network protocols, cryptographic technologies, authentication & authorization protocols, common security threats, such as attack-techniques, evasive techniques, and preventative & defensive methods
  • Experience with authentication and authorization protocols including OAuth, OIDC, SAML
  • Understanding of security features in Container and Container Orchestration technologies (Docker, Kubernetes, etc)
  • Knowledge of cloud operational models and secure SaaS architecture in a world of containerized microservices
  • Bachelors Degree in Computer Science or equivalent experience 


We value diversity, equity, and inclusion at Splunk and are an equal employment opportunity employer. Qualified applicants receive consideration for employment without regard to race, religion, color, national origin, ancestry, sex, gender, gender identity, gender expression, sexual orientation, marital status, age, physical or mental disability or medical condition, genetic information, veteran status, or any other consideration made unlawful by federal, state, or local laws. We consider qualified applicants with criminal histories, consistent with legal requirements.  

This is a test line.