Logo for Majesco

Senior Lead Engineer, Information Security

Role overview

Responsibilities

  • Design, implement, and maintain enterprise security controls across cloud, infrastructure, and application environments.
  • Evaluate emerging threats and technologies and recommend improvements to the organization's security architecture.
  • Develop security standards, engineering patterns, and technical guidance to improve the overall security posture.
  • Design and develop security automation solutions that improve operational efficiency and reduce manual effort.
  • Integrate security controls and validation activities into CI/CD pipelines and software delivery workflows.
  • Lead security engineering efforts focused on protecting internally developed applications and APIs.
  • Partner with development teams to identify, prioritize, and remediate security risks.
  • Design, implement, and maintain Web Application Firewall (WAF) capabilities.
  • Conduct application red team exercises and adversarial security assessments.
  • Partner with engineering, infrastructure, and cloud teams to implement secure solutions.

Key facts

Hard skills

Other skills

  • Collaboration

About the company

Majesco logo

Majesco

Majesco is the partner P&C and L&A insurers choose to create and deliver outstanding experiences for customers. We combine our technology and insurance experience to anticipate what’s next, without losing sight of what’s important now. Over 350 insurers, reinsurers, brokers, MGAs, and greenfields/startups rely on Majesco’s SaaS platform solutions of core, digital, data & analytics, distribution, and a rich ecosystem of partners to create their next now. As an industry leader, we don’t believe in managing risk by avoiding change. We embrace change, even cause it, to get and stay ahead of risk. With 900+ successful implementations we are uniquely qualified to bridge the gap between a traditional insurance industry approach and a pure digital mindset. We give customers the confidence to decide, the products to perform, and the follow-through to execute. For more information, please visit www.majesco.com.

Company details

Company typeLarge
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Key Responsibilities

Security Engineering & Architecture

  • Design, implement, and maintain enterprise security controls across cloud, infrastructure, and application environments.
  • Evaluate emerging threats and technologies and recommend improvements to the organization's security architecture.
  • Develop security standards, engineering patterns, and technical guidance to improve the overall security posture.

Security Automation & DevSecOps

  • Design and develop security automation solutions that improve operational efficiency and reduce manual effort.
  • Integrate security controls and validation activities into CI/CD pipelines and software delivery workflows.
  • Build and maintain GitHub Actions and related automation to support secure development practices.
  • Automate vulnerability management, policy enforcement, reporting, and remediation tracking activities.

Application Security

  • Lead security engineering efforts focused on protecting internally developed applications and APIs.
  • Perform and coordinate: 
    • Threat modeling
    • Secure design and architecture reviews
    • Secure code reviews
    • Static Application Security Testing (SAST)
    • Dynamic Application Security Testing (DAST)
    • Software Composition Analysis (SCA)
    • Open-source dependency and supply chain security reviews
    • Secret and credential exposure detection
    • API security testing and assessments
    • CI/CD pipeline security reviews
    • Security validation of application deployments
  • Partner with development teams to identify, prioritize, and remediate security risks.

Web Application Firewall (WAF) & Edge Security

  • Design, implement, and maintain Web Application Firewall (WAF) capabilities.
  • Develop and tune security rules, attack detection logic, bot mitigation, rate limiting, and application-layer protections.
  • Continuously monitor and improve protections against OWASP Top 10 and emerging web application threats.

Offensive Security & Penetration Testing

  • Conduct application red team exercises and adversarial security assessments.
  • Perform manual and automated penetration testing of web applications, APIs, and supporting services.
  • Simulate real-world attack techniques to identify weaknesses in application design, authentication, authorization, and deployment architectures.
  • Document findings, provide remediation guidance, and validate corrective actions.

Collaboration & Security Operations Support

  • Partner with engineering, infrastructure, and cloud teams to implement secure solutions.
  • Support incident response investigations involving applications, cloud services, and development platforms.
  • Provide technical leadership and mentorship on security engineering practices and security tool adoption.

Success Measures

  • Increased automation and efficiency of security processes.
  • Successful integration of security controls into engineering and CI/CD workflows.
  • Reduction of application and cloud security risks.
  • Effective implementation and management of WAF protections.
  • Timely identification and remediation of vulnerabilities.
  • Successful execution of penetration testing and red team activities.
  • Improved security posture across applications, APIs, and software delivery platforms.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Product Security Engineer Related jobs

Other jobs at Majesco

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.