SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Security Engineer

Greenlight - Bengaluru, KA, India - In-office - posted 2026-09-09

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Greenlight is a family technology platform with 6.5+ million users, offering a suite of products including a debit card, mobile app, GPS trackers, and family hub to help families manage finances and stay connected. The company is seeking a Senior Security Engineer to lead product security initiatives across their technology stack. In this role, you will execute comprehensive product security strategy aligned with company goals and risk appetite. You'll work hands-on across code, infrastructure, and CI/CD to design and build security automation for the software development lifecycle, including code scanning, dependency risk management, secrets detection, and policy-as-code integrated into CI/CD pipelines. Key responsibilities include performing design and implementation reviews of Greenlight products from a security perspective, establishing and enforcing secure development standards (API security, security patterns, infrastructure-as-code), and serving as a subject matter expert on AI and LLM security. You will lead threat modeling exercises for novel AI systems, perform penetration testing and retesting, triage findings from security researchers, and lead incident response for the product security incident response team (PSIRT). You'll partner closely with engineering, product, and platform teams to embed security-by-design patterns, drive threat modeling, and establish pragmatic guardrails that enable developers. Additional responsibilities include developing software supply chain protections (SBOM generation, artifact signing, provenance enforcement), building automation for static and dynamic analysis, and using data and telemetry to measure control effectiveness and drive continuous improvement. The role requires 5+ years of experience finding security vulnerabilities and conducting security code reviews for modern technology stacks (Node.js, Kotlin, Java, Go, React, AWS). You should have 2-4 years of threat modeling experience, deep knowledge of web and mobile application security, and hands-on experience with security tools (SAST, DAST, IAST, penetration testing). Experience with AI-powered security tools, CI/CD pipeline security, AWS cloud security, and fintech/regulated environments is highly valued.

Similar roles