JobHabor

Expert Security Engineer - Offensive Security

Finastra
Location
Bengaluru · Pune
Workplace
Hybrid
Employment
Salary
Apply on the employer’s site

Posted 1mo ago

Who are we?

At Finastra, we’re a global leader in financial services software, dedicated to expanding access to financial services and shaping what’s next for the industry. Our technology powers mission‑critical solutions across Lending, Payments and Universal Banking, supporting over 7,000 customers, including 80% of the world’s top 50 banks, in more than 110 countries.

What will you contribute?

As an Expert Offensive Security Engineer within the Cyber Defense Team, you'll lead offensive security assessments that strengthen our defense capabilities. Working closely with the larger InfoSec team, detection engineers, and external engineering partners, you'll identify security weaknesses, validate detection mechanisms, and provide actionable recommendations to enhance our security posture. You'll collaborate with various architecture and engineering teams to continuously validate and improve our security controls and detection capabilities, with a strong focus on developing repeatable testing frameworks and metrics-driven security improvements.

Responsibilities & Deliverables

You will be responsible for the following

Lead offensive security assessments

conduct full-stack security assessments across our entire technology stack.

Drive detection engineering partnerships

collaborate with detection engineers through purple team exercises, attack simulations, and threat emulation to improve detection coverage.

Develop custom tools and frameworks

build and maintain security testing tools, frameworks, and automation scripts that enable repeatable testing and quantifiable security improvements.

Build security metrics

design and implement frameworks to measure security control effectiveness, detection coverage, and improvement over time through consistent testing methodologies.

Research and innovate

stay current with the latest attack techniques, tools, and methodologies while building out both offensive and defensive security improvements.

Mentor and collaborate

share knowledge across security teams and foster a culture of continuous security improvement.

Required Experience

5+ years

professional experience in offensive security, with demonstrated experience in red team and purple team exercises, penetration testing, and detection engineering teamwork.

Development experience

proficiency in Python or other programming language for building security tooling and automation.

Security assessment expertise

performing full-stack security assessments of web and mobile applications, APIs, on-prem and cloud infrastructure, and backend systems..

Deep understanding

common attack techniques; exploit development; post-exploitation methodologies; security assessment frameworks (MITRE ATT&CK, PTES); and modern detection stack components (EDR, SIEM, XDR).

Knowledge

of networking, operating systems, security protocols, security concepts including reverse engineering, cloud security (AWS/Azure), container security, CI/CD pipeline security, API security, and security metrics development.

Certifications

such as OSCP, OSCE, GXPN, or equivalent practical experience.

Interpersonal skills

strong analytical and problem-solving abilities.

Excellent technical writing for detailed reports; ability to clearly communicate complex technical concepts; self-motivated with a passion for offensive security and detection engineering.

We are proud to offer a range of incentives to our employees worldwide. These benefits are available to everyone, regardless of grade, and reflect the values we stand for:

Flexibility

Enjoy unlimited vacation, subject to local regulations and business priorities. Benefit from hybrid working arrangements and inclusive policies such as paid time off for voting, bereavement, and sick leave.

Well‑being

Access confidential one‑to‑one support through our Employee Assistance Program, connect with our network of Wellbeing Champions and Gather Groups, and take part in monthly events and initiatives designed to help you thrive—inside and outside of work.

Health & Financial Security

Medical, life and disability insurance, retirement plans, lifestyle, and other benefits.*

Sustainability

Paid time off for volunteering and donation‑matching opportunities to support causes that matter to you.

Inclusion

Get involved in our inclusion communities, such as Count Me In, Culture@Finastra, Proud@Finastra, Disabilities@Finastra, and Women@Finastra—open to everyone who wants to participate and contribute.

Career Development

Access online learning and accredited courses through our Skills & Career Navigator tool.

Recognition

Take part in our global recognition program, Finastra Celebrates, and share your voice through regular employee surveys that help shape our culture and ways of working.

*Specific benefits may vary by location.

At Finastra, each individual is unique—bringing their own ideas, perspectives, cultural backgrounds, and experiences. We learn from one another, value what makes us different, and create an environment where everyone feels included, supported, and able to be their authentic selves.

Be unique. Be exceptional. Help us make a difference at Finastra.

Skills

  • Python
  • EDR
  • SIEM
  • AWS
  • Azure

More jobs at Finastra

All 82

Similar roles