Toast Logo

Toast

Senior Product Security Engineer

Reposted 2 Days Ago
Be an Early Applicant
Bangalore, Bengaluru Urban, Karnataka
Senior level
Bangalore, Bengaluru Urban, Karnataka
Senior level
The Senior Product Security Engineer will design, implement, and maintain secure applications, conduct security assessments, manage security protocols, and promote best practices throughout the software development lifecycle. They will also stay updated with security threats and deliver training to engineering teams.
The summary above was generated by AI

At Toast, we are committed to creating innovative solutions that enhance security and leverage the power of artificial intelligence to drive restaurant business growth and help them thrive. We are seeking a highly skilled and versatile engineer who specializes in application security to join our dynamic team.

Job Summary:

The Senior Application Security Engineer will be responsible for designing, implementing, and maintaining secure applications and collaborate closely with development teams to embed security best practices throughout the software development lifecycle (SDLC). This role requires a deep understanding of security principles, cloud architecture, and AI technologies to ensure our systems are robust, scalable, and secure.

Key Responsibilities:

Application Security:

  • Conduct security assessments and code reviews to identify and mitigate vulnerabilities in web, mobile applications and APIs.
  • Identify, analyze, and prioritize security risks and vulnerabilities.
  • Implement and manage security protocols and measures to protect applications from threats.
  • Develop and maintain security tools and frameworks to support secure software development.
  • Develop and execute security testing strategies to validate the effectiveness of security controls.
  • Promote and enforce security best practices throughout the SDLC.
  • Provide guidance on secure coding principles, secure design patterns, and cryptographic techniques.

General Security Practices:

  • Stay current with the latest security threats, vulnerabilities, and technology trends.
  • Develop and deliver security training and awareness programs for engineering teams.
  • Work closely with cross-functional teams to embed security best practices throughout the development lifecycle.

Required Skills and Qualifications:

Experience: 5-8 yrs
Work Mode: Hybrid
Location : Bangalore
Education: Bachelor’s or Master’s degree in Computer Science, Engineering, Information Security, or a related field.

Experience:

  • Experience in application security domain
  • Proven experience with secure software development practices and tools (e.g., SCA, SAST, DAST).
  • Proven experience with pentesting of web applications, mobile applications (Android and IOS) and APIs (REST and GraphQL)

Technical Skills:

  • Strong programming skills in languages such as Python, Java, Kotlin, C++, or similar.
  • Deep understanding of security principles, cryptography, and secure coding practices.
  • Familiarity with DevSecOps practices and CI/CD pipelines.
  • Knowledge of containerization technologies (e.g., Docker, Kubernetes) and their security implications.
  • Experience with AI security testing tools and techniques.

Soft Skills:

  • Excellent problem-solving and analytical skills.
  • Strong communication and collaboration abilities.
  • Ability to work independently and as part of a team in a fast-paced environment.

Preferred Qualifications:

  • Relevant security certifications such as CISSP, CEH, or similar.
  • Knowledge of frameworks such as OWASP, SANS.
  • Knowledge of compliance frameworks such as PCI, ISO, GDPR, or similar.


Diversity, Equity, and Inclusion is Baked into our Recipe for Success

At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry is one of the most diverse, and we embrace that diversity with authenticity, inclusivity, respect, and humility. By embedding these principles into our culture and design, we create equitable opportunities for all and raise the bar in delivering exceptional experiences.

We Thrive Together

We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the restaurant community. To learn more about how we work globally and regionally, check out: https://careers.toasttab.com/locations-toast.

Apply today!

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact [email protected].

Similar Jobs at Toast

3 Days Ago
Bengaluru, Bengaluru Urban, Karnataka, IND
Senior level
Senior level
Cloud • Fintech • Food • Information Technology • Software • Hospitality
The Senior Product Security Engineer will identify and remediate application vulnerabilities, enhance security practices, and collaborate on security solutions to protect products and customer data.
Top Skills: AkamaiAws WafCdn TechnologiesCloudflareDastEdge SecurityModsecuritySastScaTerraformWafWeb Application Vulnerabilities
Yesterday
Bangalore, Bengaluru Urban, Karnataka, IND
Expert/Leader
Expert/Leader
Cloud • Fintech • Food • Information Technology • Software • Hospitality
The Director of Information Security will lead and expand the security team, focusing on cybersecurity programs, compliance, risk management, and strategic planning while collaborating across teams and managing daily operations.
Top Skills: Cloud SecurityCybersecurityIso 27001Nist CsfPci DssSocSox
Yesterday
Bangalore, Bengaluru Urban, Karnataka, IND
Senior level
Senior level
Cloud • Fintech • Food • Information Technology • Software • Hospitality
The Staff Product Security Engineer will design data pipelines, collaborate on security integration, automate processes, and analyze security data to enhance detection and response.
Top Skills: SparkAWSGoogle BigqueryHiveLinuxPythonPyTorchScikit-LearnTensorFlow

What you need to know about the Kolkata Tech Scene

When considering the industries shaping India's tech scene, gaming might not immediately come to mind. However, in the last decade, increased internet usage and greater access to mobile devices have catapulted the industry to new heights, with Kolkata-based companies like Virtualinfocom, Red Apple Technologies and Digitoonz, at the forefront, driving the design and animation of new gaming titles for players.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account