Security Engineer III
AI Summary
A senior individual contributor who owns security outcomes end to end across product areas, leading threat modeling, secure design reviews, advanced security assessments, DevSecOps automation, cloud security, AI/LLM security, and vulnerability management while mentoring earlier-career engineers.
About this role
As a Security Engineer 3, you are a senior individual contributor who owns security outcomes end to end across one or more product areas. You operate with limited supervision, set the technical approach for your workstreams, and are a trusted second voice in design and architecture discussions. Beyond finding and fixing vulnerabilities, you drive security initiatives to closure across engineering teams, raise the bar on how we build securely, and mentor earlier-career engineers on the team. You will combine deep hands-on offensive and defensive skills with the judgment to prioritise what matters most for a platform operating at Meesho's scale.
What you will do
What you will need
Experience: 5-7 years of hands-on experience in product security or application security, with a demonstrated track record of owning security workstreams end to end.
Education: A Bachelor's or Master's degree in Computer Science, Information Security, or a related field is preferred.
Core Technical Depth:
Proven ability to lead threat modeling sessions and drive findings into the SDLC across cross-functional teams.
Strong proficiency performing security assessments on web applications and APIs, with deep command of the OWASP Top 10 (Web and API) and complex authentication, authorization, session management, and business-logic vulnerabilities.
Hands-on manual source code review experience, with the ability to read and reason about code in languages such as Java, Node.js, Python, and React.
Demonstrated experience with DevSecOps, integrating and tuning security tooling in CI/CD pipelines, and building custom security automation.
Proficiency with cloud security on AWS or GCP, including their native security tooling, and working knowledge of Docker and Kubernetes security.
Offensive Security: Demonstrated experience planning and executing red team or purple team exercises, and translating real-world attack paths into concrete defensive improvements.
Mobile Security: Working knowledge of mobile application security assessments for Android and iOS, familiarity with the OWASP MASVS framework and mobile-specific vulnerabilities (insecure webview, insecure deeplink, insecure data storage, flawed cryptography), and exposure to tools such as Frida, Objection, Drozer, and MobSF.
General Skills & Acumen:
Strong analytical and problem-solving skills, with sound judgment on risk prioritisation at scale.
Excellent communication skills, with the ability to explain complex security issues to both technical and non-technical audiences and to influence engineering decisions without direct authority.
Ability to mentor and uplevel earlier-career security engineers.
Bonus Points
Relevant certifications such as OSCP, OSWE, GWAPT, or CKS.
Active participation in public or private bug bounty programs, published CVEs, or security research.
Experience speaking at meetups or conferences.
Exposure to AI/LLM security (prompt injection, RAG security, OWASP LLM Top 10) and software supply-chain security.
Exposure to India regulatory requirements such as the DPDP Act and CERT-In directions.
Skills
Explore related jobs
More jobs at Meesho
Similar AI/LLM Security jobs
- QSenior Product Security Engineer - AI & LLMQube Research & Technologies · Wrocław
- PSenior /Principal AI Engineer, Security Automation & LLM Integration (Cortex)Palo Alto Networks, Inc. · Office - Israel - Tel Aviv
- PPrincipal Security Researcher – AI (Cybersecurity LLM Post-Training, Evals, and Environments)Palo Alto Networks, Inc. · Santa Clara, United States of America
Browse these categories
Market data for security engineer roles
All reports →- SeriesRole reportsOne role family at a time: how many openings, what changed this week, who is hiring, what it pays.
- SeriesSalary reportsWhat employers publish in job postings, by level and workplace. Not self-reported pay.
- Market overviewState of tech hiring, September 2026: up 4.8%Tech hiring rose 4.8% month over month in September 2026, with 411,122 new listings. Customer support and account executive roles led the growth.
