Search Jobs

Search by job, company or skills

Cyber Security Engineer

Cyber Security Engineer

Grid Dynamics
Early Applicant
  • Posted 17 hours ago
  • Be among the first 20 applicants

Job Description

Security Strategy & Roadmap

Owns the end-to-end security capability roadmap — covering vulnerability classes, detection methods, and verification techniques — and continuously reviews the competitive landscape across both commercial and open source security tools to keep the product's approach current.

Selects and embeds the security testing frameworks and methodologies the product aligns to, tracking emerging attack classes and testing techniques and deciding when and how they should be incorporated into the product.

Owns the product's overall security thesis and represents it externally to stakeholders, customers, and the wider community, while also setting the security requirements for the harness itself.

Detection Quality & Measurement

Owns detection quality across all specialist analysis lenses, ensuring consistency and reliability of results.

Designs and curates the benchmark corpus — a structured set of seeded and labelled vulnerabilities used to validate detection performance.

Owns the measurement methodology and safeguards the integrity of all published detection figures.

Adjudicates whether findings are genuine, setting and maintaining the triage standard used across the team.

Runs the standing evaluation program benchmarking competing tools and techniques against the corpus.

Reviews external contributions and changes to the harness for potential security impact before they're merged.

Hands-On Execution & Support

Responsibilities

  • Takes detection specs from the security team and ships them as versioned lenses and rule packs, with a prompt registry and a way for customers to add their own.
  • Implements chunking that cuts at function boundaries and packs by real token counts, using the tree-sitter call graph, to the senior engineer's design.
  • Builds read-only retrieval over Confluence, ADRs and design docs that keeps the source permissions and cites what it used.
  • Builds the reviewer feedback loop (labels stored against fingerprints, suppression, precision reporting) and the exports to GRC and ASPM tools.

Requirements

Model runtime & prompt engineering, diff-based scanning & fingerprinting, tree-sitter / code parsing, RAG / retrieval systems, Git/GitHub/GitLab automation, Jira/CI-CD integrations, credential management, SBOM/SCA/secrets scanning, KEV/EPSS feeds, observability & tracing, release engineering (containers, signed builds), GRC/ASPM tooling.

We offer

  • Opportunity to work on bleeding-edge projects
  • Work with a highly motivated and dedicated team
  • Competitive salary
  • Flexible schedule
  • Benefits package - medical insurance, sports
  • Corporate social events
  • Professional development opportunities
  • Well-equipped office

About Us

Grid Dynamics (NASDAQ: GDYN) is a leading provider of technology consulting, platform and product engineering, AI, and advanced analytics services. Fusing technical vision with business acumen, we solve the most pressing technical challenges and enable positive business outcomes for enterprise companies undergoing business transformation. A key differentiator for Grid Dynamics is our 8 years of experience and leadership in enterprise AI, supported by profound expertise and ongoing investment in data, analytics, cloud & DevOps, application modernization and customer experience. Founded in 2006, Grid Dynamics is headquartered in Silicon Valley with offices across the Americas, Europe, and India.

More Info

Job Type:
Industry:
Employment Type:

Key Skills

CI-CD integrations

SBOM

credential management

diff-based scanning

observability

secrets scanning

ASPM tooling

tree-sitter code parsing

RAG retrieval systems

model runtime prompt engineering

signed builds

KEV

EPSS feeds

Containers

About Company

Similar Jobs

2-4 yrs
Hyderabad, India
Skills:
Ethical HackingApisMetasploitBurp SuiteApplication Security TestingPenetration Testingsecurity tools and methodologiesadvanced hacking techniquesautomation and scriptingReverse Engineeringred team operationswireless security testingcustom security testing toolsSecurity Assessmentsmobile security testingcloud security testingexploit developmentCobalt Strike