Overview
Work as a Security Engineer helping ensure the security of Splunk-based applications through structured threat modeling, AI-powered security analysis, and secure development guidance.
What you'll do
- Conduct regular threat modeling exercises for Splunk applications to identify potential design flaws and architectural weaknesses.
- Leverage existing AI-driven security tools to automate attack-vector discovery, streamline data-flow analysis, and accelerate identification of common vulnerabilities.
- Interpret AI security tool findings, validate results, and translate them into actionable security tasks for engineering teams.
- Participate in design reviews for Splunk applications and provide guidance on secure coding principles and threat mitigations.
- Document identified threats, track remediation efforts, and ensure security design requirements are met within the development cycle.
- Partner with developers, product owners, and stakeholders to communicate security risks and provide practical solutions that maintain development velocity.
- Stay current on evolving security trends, particularly AI-assisted analysis, and help refine local processes for threat discovery and documentation.
What you'll need
- A Bachelor's degree and 3 years of related experience or a Master's degree and 2 years of related experience.
- Working knowledge of application security principles and the Secure Development Lifecycle (SDL).
- Experience or strong interest in threat modeling frameworks, such as STRIDE, and application architecture.
- Comfort utilizing automated security scanning or AI-assisted analysis tools to improve security efficiency.
- Basic understanding of Splunk application architecture and distributed systems.
Nice to have
- Hands-on experience performing threat models for complex software or cloud-based applications.
- Familiarity with AI or ML-based security tooling for static/dynamic analysis or architectural review.
- Strong analytical skills with the ability to interpret technical reports and prioritize remediation efforts based on risk.
- Ability to communicate technical security risks to technical and non-technical team members.
Details
- Location: Hyderabad, India.
Read the full description and apply on the company’s own careers page.