🎁 Before you apply, rehearse this interview. Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card. I want my training →
Responsibilities: Examine the products in detail to discover vulnerabilities and collaborate with the other security engineers to practically demonstrate the exploitability and risk factors. Be on the forefront of emerging vulnerabilities/threats that could affect Cashfree products through independent research and study. Engage with the developers in developing workarounds/mitigation plans and ensure they are implemented per policy. Threat Modelling: Engage with the development teams to conduct secure design reviews/threat modeling exercise to enumerate threats and mitigation strategies. Enable the developers with knowledge of threat modeling by conducting focused workshops. Secure Coding: Priorities critical defects and ensure these are identified and mitigated during the sprint. Integration and automation of SAST in the DevOps pipeline. Build secure coding principles and propagate them across the development community. Be the to-go person for developers in solving critical issues relating to secure product development. Build and enhance secure coding / security assessments training contents for developers and QA team. Deliver training programs at various levels in the organizations. Conduct workshops/security tech-talks to disseminate security knowledge and awareness. Qualifications. Good knowledge in multiple classes of vulnerabilities that includes cross-site scripting, SQL Injection, CSRF, cryptographic related weakness, and code injection. Good knowledge of any programming/scripting languages such as Java, Ruby, and Python. Good knowledge relating to services/technology relating to the cloud. Ability to automate security testing and improve productivity in security assessments. Ability to communicate and interpret security vulnerabilities to various audiences such as development and management teams. Requirements: You have great interpersonal skills, deep technical ability, and a history of successful execution in the assessments industry. If you enjoy discussing anything from procedural linking tables in kernels to remote code execution in JVMs, then we want you on the team. Familiarity with industry-standard threat modeling, risk modeling, and vulnerability classification. Experience with pre-assessment architectural and API analysis to scope and prepare white-box and grey-box assessments. Experience working with in-house engineering organizations, S-SDLC/CICD software lifecycle and QA processes B. Tech. in Computer Science, Electrical, or Computer Engineering, or equivalent work experience as a software engineering or security practitioner. 3+ years of relevant engineering or security assessment experience, experience in application security. Possess a broad knowledge of attack vectors, exploits, and mitigations that work at scale or may be linked together for chained attacks. Experience with Java, Go, Python, or Node.js (bonus points for more than one). Experience with assessing Cloud-native services, service meshes, and K notes-platform-based micro-services. Be able to apply unconventional thinking and problem-solve on the boundary of your knowledge base, learning new technologies or languages as needed to complete pen-test tasks. Be able to think both offensively (like a hacker) and defensively (evaluating product security and design) Autofill from resume Save time by uploading your resume. (Only PDF or DOCX format supported) Loading. .
Here's how to pick the right one and stand out in your application.
144.883Jobs
31.687IN
81%EN
That number is real. WorkMundi's database shows 144,883 open engineer roles across the world. India has the most with 31,687 jobs, followed by the United States with 30,084. If you just finished reading one job ad and felt paralyzed by choice, you're not alone—but this scale is actually an advantage. It means you can afford to be selective.
Start by geography and language. The majority of engineer ads—117,837 of them—have the job posting text written in English. Use that as one filter, but remember: the ad text language tells you nothing about whether the role actually requires you to speak English day-to-day. Read the job description carefully. Then check which countries have the volume you're targeting. Singapore, Poland, and Australia round out the top five after India and the US.
Next, learn who's hiring. Accenture has posted 2,801 engineer roles. andurilindustries, speechify, and jobgether are also actively recruiting. If you're applying to one of these names, research their hiring patterns and interview style before you apply. That homework pays off.
When you interview, expect the question every engineer hears: 'Tell me about a time you had to debug a problem that wasn't in your job description.' Have a specific story ready—not a general one. Name the tools, the deadline pressure, and what you learned. Hiring managers listen for whether you see problem-solving as part of the role itself, not a favour.