fbpx

Security Engineer (App)

SKU 3176 Categories ,
Location

Mumbai

Technical area

YoE

, , , , ,

HQ Location

Company Name

Company Size

Description

Technology @Dream11:

Our Tech Team is the core of Dream11?™s mobile-first cross-platform (Android & iOS, Mobile + Desktop PWA) product, serving more than 10 Crore users with over 70 million rpm (requests per minute) at peak with user concurrency of 5.5 million. Our tech stack is hosted on AWS and comprises multiple distributed systems like Cassandra, Aerospike, Akka, Voltdb, Ignite etc.

We have around 100+ micro-services primarily written in Java backed by vert.x framework. They serve isolated product features with discrete architectures to serve the respective use-cases. We have a completely in-house data infrastructure built on top of Kafka, Redshift, Spark, Druid etc. which powers our Machine Learning and Predictive Analytics use-cases. We ingress Terabytes of Data every day, which flows all over our Data pipelines to power a plethora of use-cases.

To know more about Dream11 Tech, visit here .

Security Engineering @Dream11:

?œSecurity First??is the principle on which Dream11 Engineering is based at. Secure SDLC is ingrained into the process and religiously followed upon. Dream11 Security team takes care of all aspects of Application, Cloud and Data/Enterprise Security working as a close knit team. It strongly believes in automating everything that can be. The team strives all the time to have Infrastructure / Configuration as a Code paradigm.

Your Role:

Working closely with development stakeholders to ensure secure design, development, and implementation of applications
Understanding complex technical and architectural issues from the security perspective
Understanding the implications associated with the chosen technical strategy and improvise them to meet security compliances
Performing Application Vulnerability Assessment & Penetration Testing
Writing in-house tools and automated scripts to enhance the security assessment
Contributing to the delivery, automation, and maintenance of Dream11 security policies, controls, and processes as part of the Application Risk Assessment team

Must Have:

5+ experience on Web and Mobile application Vulnerability Assessment & Penetration Testing
Basic knowledge of Secure Code Review and Secure SDLC
Good Understanding of any of the programming languages (Python, Java, GoLang, NodeJS, etc.)
Basic understanding of Infrastructure/Network Vulnerability Assessment and Penetration Testing

Good to Have:

Understanding of database technologies like MySQL, MongoDB, Redis, Cassandra etc.
Knowledge of any cloud based platform like AWS, GCP etc.
Worked on WAF and Log Analytics solutions
Participated in Bug Bounties & Capture The Flag (CTF)
Strong understanding of applications design and architecture

Dream Sports is a sports technology company with brands such as Dream11, FanCode, DreamX, DreamSetGo and DreamPay in its portfolio. Dream Sports is executing its vision of ?˜Make Sports Better??by providing multiple avenues for fans to deeply engage with the sports they love through fantasy sports, content, commerce, experiences and events, among others.

Founded in 2008 by Harsh Jain and Bhavit Sheth, the company has been ranked #7 among India?™s Great Mid-Size Workplaces in 2020 and was recognised as one of the top 10 innovative companies in India by Fast Company in 2019. Kalaari Capital, Think Investments, Multiples Equity, Tencent and Steadview Capital are the marquee investors in Dream Sports.

Technology @Dream11:

Our Tech Team is the core of Dream11?™s mobile-first cross-platform (Android & iOS, Mobile + Desktop PWA) product, serving more than 10 Crore users with over 70 million rpm (requests per minute) at peak with user concurrency of 5.5 million. Our tech stack is hosted on AWS and comprises multiple distributed systems like Cassandra, Aerospike, Akka, Voltdb, Ignite etc.

We have around 100+ micro-services primarily written in Java backed by vert.x framework. They serve isolated product features with discrete architectures to serve the respective use-cases. We have a completely in-house data infrastructure built on top of Kafka, Redshift, Spark, Druid etc. which powers our Machine Learning and Predictive Analytics use-cases. We ingress Terabytes of Data every day, which flows all over our Data pipelines to power a plethora of use-cases.

To know more about Dream11 Tech, visit here .

Security Engineering @Dream11:

?œSecurity First??is the principle on which Dream11 Engineering is based at. Secure SDLC is ingrained into the process and religiously followed upon. Dream11 Security team takes care of all aspects of Application, Cloud and Data/Enterprise Security working as a close knit team. It strongly believes in automating everything that can be. The team strives all the time to have Infrastructure / Configuration as a Code paradigm.

Your Role:

Working closely with development stakeholders to ensure secure design, development, and implementation of applications
Understanding complex technical and architectural issues from the security perspective
Understanding the implications associated with the chosen technical strategy and improvise them to meet security compliances
Performing Application Vulnerability Assessment & Penetration Testing
Writing in-house tools and automated scripts to enhance the security assessment
Contributing to the delivery, automation, and maintenance of Dream11 security policies, controls, and processes as part of the Application Risk Assessment team

Must Have:

5+ experience on Web and Mobile application Vulnerability Assessment & Penetration Testing
Basic knowledge of Secure Code Review and Secure SDLC
Good Understanding of any of the programming languages (Python, Java, GoLang, NodeJS, etc.)
Basic understanding of Infrastructure/Network Vulnerability Assessment and Penetration Testing

Good to Have:

Understanding of database technologies like MySQL, MongoDB, Redis, Cassandra etc.
Knowledge of any cloud based platform like AWS, GCP etc.
Worked on WAF and Log Analytics solutions
Participated in Bug Bounties & Capture The Flag (CTF)
Strong understanding of applications design and architecture

Dream Sports is a sports technology company with brands such as Dream11, FanCode, DreamX, DreamSetGo and DreamPay in its portfolio. Dream Sports is executing its vision of ?˜Make Sports Better??by providing multiple avenues for fans to deeply engage with the sports they love through fantasy sports, content, commerce, experiences and events, among others.

Founded in 2008 by Harsh Jain and Bhavit Sheth, the company has been ranked #7 among India?™s Great Mid-Size Workplaces in 2020 and was recognised as one of the top 10 innovative companies in India by Fast Company in 2019. Kalaari Capital, Think Investments, Multiples Equity, Tencent and Steadview Capital are the marquee investors in Dream Sports.

Download Zigup app to

Explore more features​

Available on Play Store & App Store

Addtional features on Zigup app:

Available on Play Store & App Store

product company jobs - Download Zigup available at Play Store and Appstore

Download Zigup app to

Get referrals for
Top companies

Addtional features on Zigup app:

Available on Play Store & App Store

Filter by jobs

Location
Technical Area