Principal Product Security Engineer
Core
Drive innovation in application security through AI, automation, and secure-by-design practices for Retail Banking technology at enterprise scale.
Role type
Principal Product Security Engineer (Offensive Security & Application Security)
Builds
Secure engineering practices, automated security tooling, and resilient customer experiences for millions of users.
Domain
Retail Banking / Application Security / Cloud-Native
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
web application penetration testing, secure code review, threat modelling, secure architecture design, automation/scripting, stakeholder engagement, secure software engineering principles, cloud-native security, DevSecOps practices
Preferred skills
offensive security expertise, AI-driven security capabilities, mentoring security practitioners, building security programs
Technologies
Next.js, React, Node.js, Java, .NET, Go, GraphQL, REST APIs, microservices, CI/CD pipelines, infrastructure-as-code
Responsibilities
Lead complex application security engagements across diverse product portfolios; perform advanced web application penetration testing and security assessments; conduct in-depth secure code reviews; partner with engineering teams to embed secure-by-design principles; provide expert guidance on security risks and architecture decisions; drive threat modelling activities; develop and enhance security tooling and automation; mentor engineers and security practitioners; contribute to the evolution of security standards and methodologies.
Seniority
Principal, hands-on IC with strategic influence and mentorship
