Senior Security Engineer -Application Security

Glance · Bengaluru

  • Senior
  • Full-time
  • Posted 2026-07-09
  • Confirmed live on 25 September 2026

Apply at Glance

Job description

Glance

Glance is an intelligent shopping agent, redefining the commerce experience. Powered by proprietary agentic intelligence and generative AI, Glance delivers a hyper-personalized consumer experience across mobile and TV — shaping the new era of shopping. Glance is operated by Glance InMobi Pte. Ltd., a non-consolidated subsidiary of global technology leader InMobi, and is backed by Mithril Capital, Google and Jio Platforms. To learn more, visit glance.com.

InMobi

InMobi Group is a global technology company shaping the future of agentic commerce and advertising. Through its ecosystem of businesses — including InMobi Advertising and flagship consumer platform Glance — InMobi leverages data, machine learning, and generative AI to help brands reach audiences more precisely and consumers discover products more intuitively. Glance, which is pioneering new models of agentic commerce, is owned and operated by Glance InMobi Pte. Ltd., a non-consolidated subsidiary of InMobi Pte. Ltd.

InMobi Advertising

InMobi Advertising, part of global technology company InMobi, is an agentic advertising platform helping brands and merchants achieve their business outcomes. Through its proprietary intelligence, AI-led solutions, and vast consumer reach — including flagship consumer platform Glance — InMobi Advertising delivers the omnichannel performance defining what's next in advertising and commerce. Glance is owned and operated by Glance InMobi Pte. Ltd., a non-consolidated subsidiary of InMobi Pte. Ltd. To learn more, visit advertising.inmobi.com.

About the Role

We are looking for an experienced and hands-on Sr. Security Engineer to drive application security initiatives across Glance AI's rapidly evolving technology landscape.

This role will partner closely with Engineering, Product, Platform, AI/ML, and Infrastructure teams to embed security into every stage of the software development lifecycle. You will serve as a trusted security advisor, helping teams design secure solutions, proactively identify risks, and build resilient systems at massive scale.

The ideal candidate combines deep technical expertise with strong architectural thinking and the ability to influence stakeholders across the organization.

What You'll Do

Security Architecture & Design

• Partner with engineering and platform teams to design secure and scalable solutions.

• Conduct architecture and security design reviews for applications, APIs, cloud services, and infrastructure.

• Identify security gaps, weaknesses, trust boundaries, and exposure points in solution architectures.

• Develop and maintain security architecture documentation, including data flows, trust models, security controls, and risk assessments.

• Define security guardrails, standards, and reference architectures for enterprise-wide adoption.

Threat Modeling & Risk Assessment

• Lead threat modeling exercises using methodologies such as STRIDE, PASTA, and ATT&CK-based approaches.

• Identify realistic attack paths and abuse scenarios across applications, cloud platforms, APIs, and AI systems.

• Translate security findings into actionable design and engineering recommendations.

• Drive risk-based decision-making aligned with business objectives.

Application Security & Secure SDLC

• Embed security throughout the Software Development Lifecycle (SDLC).

• Guide development teams on secure coding practices and security-by-design principles.

• Review application security findings from SAST, DAST, SCA, penetration testing, and code reviews.

• Drive remediation efforts and establish secure development standards.

• Support security requirements for APIs, mobile applications, web applications, and microservices.

Perimeter Defense & Security Controls

• Provide strategic oversight and tuning recommendations for:

• Web Application Firewalls (WAF)

• API Gateways

• Bot Mitigation Platforms

• DDoS Protection Services

• CDN Security Controls

• Ensure effective protection against:

• OWASP Top 10 threats

• API attacks

• Credential abuse

• Automated bot attacks

• Layer 7 attacks

Vulnerability & Exposure Management

• Oversee vulnerability management programs across applications, cloud environments, and infrastructure.

• Lead penetration testing initiatives and coordinate remediation efforts.

• Drive attack surface reduction programs.

• Partner with engineering teams to prioritize and address security risks.

Incident Response & Security Operations

• Act as a senior advisor during security incidents.

• Support containment, investigation, root cause analysis, and remediation activities.

• Participate in post-incident reviews and strategic improvement initiatives.

AI & Emerging Technology Security

• Design and implement security controls for AI/ML platforms and applications.

• Evaluate AI-specific risks such as:

• Prompt Injection

• Data Leakage

• Model Abuse

• Unauthorized Model Access

• Supply Chain Risks

• Establish security guardrails aligned with OWA

Prepare for the interview

Nothing collected for this employer yet. The Blind 75 is what technical screens draw from; practise it here, with a coach, in Java or Python.

More at Glance

All open software jobs