Find jobs
Pricing
Free Resume Checker
Sign in
Sign up
FIND JOBSPRICINGFREE RESUME CHECKERSIGN INSIGN UP
Jobs
/Security Engineer jobs
Ecolab

Senior Security Engineer - Product Security

LocationIND - Karnataka - Bangalore - EDC
Typefull-time
SenioritySenior
Experience6–8 yrs
DepartmentInformation Security
Company size10,000+ people
First seenOct 4, 2026 · 1w ago
Verified live1d ago
At a glanceSummarised by Seekless from the posting.
Must have26
Bachelor’s degree in computer science, information technology or related discipline.
6 - 8 years of experience in the Product Security domain.
Conduct Product Security Risk Assessments for Mobile, Web, API, and IoT applications.
Perform and remediate findings from SAST, DAST, and manual penetration testing.
Simulate attacks and generate detailed vulnerability reports.
Collaborate with internal teams for automated and manual security testing.
Review software applications for potential security flaws.
Guide engineering teams on secure development practices and remediation strategies.
Deliver secure coding training to development and engineering teams.
Perform secure source code reviews and recommend mitigation strategies.
Act as a technical liaison for CI/CD and DevSecOps integration.
Automate security processes and integrate them into development pipelines.
Stay updated on emerging threats, vulnerabilities, and countermeasures.
Build and maintain strong relationships with stakeholders and business partners.
Strong expertise in OWASP Top 10, CWE Top 25, and data protection principles.
Solid understanding of application architecture in multi-cloud and hybrid environments.
Hands-on experience with Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Container Security, and manual penetration testing.
Proficiency in interpreting and writing code in Python, JavaScript/TypeScript, Java, C# (.NET), and Apex.
Deep knowledge of software vulnerabilities, secure design patterns, and threat mitigation strategies.
Experience integrating security into CI/CD pipelines and Developers workflows.
Strong working knowledge of Web Application Firewall (WAF) technologies.
Knowledge on OWASP Top 10 for LLMs and emerging AI security frameworks.
Understanding of Prompt Injection, Data Poisoning, and Model Theft threats.
Experience securing AI APIs, ML pipelines, and LLM-based applications.
Knowledge of API Security, Infrastructure as Code (IaC) Security, and Secrets Management.
Experience in Threat Modelling and Attack Simulation techniques.
Skills
SAST
DAST
Python
JavaScript
TypeScript
Java
C#
.NET
Apex
Snyk
Qualys
Burp Suite
Wiz
Postman
MobSF
Elastic
Fastly
Cloudflare
Akamai
Azure
AWS
GCP
ADO
GitHub
Overview
Ecolab’s Information Security team is seeking a Senior Security Engineer with strong expertise in Product Security to lead and enhance secure software development practices across the organization. This role focuses on integrating security into the Software Development Lifecycle (SDLC), identifying and mitigating application vulnerabilities, and guiding development teams on secure coding and architecture. The ideal candidate will have hands-on experience in application security, penetration testing, secure code reviews, and AI/LLM security.
Minimum Qualification
•
Bachelor’s degree in computer science, information technology or related discipline.
•
6 - 8 years of experience in the Product Security domain.
Roles and Responsibilities
•
Conduct Product Security Risk Assessments for Mobile, Web, API, and IoT applications.
•
Perform and remediate findings from SAST, DAST, and manual penetration testing.
•
Simulate attacks and generate detailed vulnerability reports.
•
Collaborate with internal teams for automated and manual security testing.
•
Review software applications for potential security flaws.
•
Guide engineering teams on secure development practices and remediation strategies.
•
Deliver secure coding training to development and engineering teams.
•
Perform secure source code reviews and recommend mitigation strategies.
•
Act as a technical liaison for CI/CD and DevSecOps integration.
•
Automate security processes and integrate them into development pipelines.
•
Stay updated on emerging threats, vulnerabilities, and countermeasures.
•
Build and maintain strong relationships with stakeholders and business partners.
Technical Skills & Expertise
•
Strong expertise in OWASP Top 10, CWE Top 25, and data protection principles.
•
Solid understanding of application architecture in multi-cloud and hybrid environments.
•
Hands-on experience with Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Container Security, and manual penetration testing.
•
Proficiency in interpreting and writing code in Python, JavaScript/TypeScript, Java, C# (.NET), and Apex.
•
Deep knowledge of software vulnerabilities, secure design patterns, and threat mitigation strategies.
•
Experience integrating security into CI/CD pipelines and Developers workflows.
•
Strong working knowledge of Web Application Firewall (WAF) technologies
•
Knowledge on OWASP Top 10 for LLMs and emerging AI security frameworks.
•
Understanding of Prompt Injection, Data Poisoning, and Model Theft threats.
•
Experience securing AI APIs, ML pipelines, and LLM-based applications.
•
Knowledge of API Security, Infrastructure as Code (IaC) Security, and Secrets Management.
•
Experience in Threat Modelling and Attack Simulation techniques
Security Tools & Technologies
•
Web Application Firewalls (WAF): Fastly, Cloudflare, Akamai
•
Tools: Snyk, Qualys, Burp Suite, Wiz, Postman, MobSF, Elastic, Agentic Scanner
•
Cloud: Azure, AWS, GCP
SCM: ADO, GitHub
More roles at Ecolab
Financial AnalystAssembler IISr. Tax AnalystSr. Account Executive - Purification TechnologiesSoftware Engineering Manager II
Seekless
Seek less: one search across companies' own career pages, instead of a dozen job boards.
Product
Find jobsCompaniesPricingFree Resume CheckerBlog
Legal
AboutPrivacyTermsCookies
© 2026 SEEKLESS. ALL RIGHTS RESERVED.BUILT WITH CARE