Product Security Engineer 3

Adobe Systems
Bengaluru
Workplace: OnsiteFull timeFunction: CybersecurityExperience: 4-6 yearsSkills: ["Written communication","Verbal communication"]

Design and deliver hands-on security testing across AI/LLM systems, web apps, APIs, mobile apps, and cloud infrastructure. Embed DevSecOps security controls into CI/CD pipelines (SAST/DAST/SCA, secrets and container scanning) and build automation across AWS, Azure, and GCP. Use Python/Go/PowerShell and custom tooling to execute penetration testing engagements, report actionable risk findings, and partner with engineering on secure-by-default architecture.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Adobe Systems
Adobe Systems
19 hours ago

Product Security Engineer 3

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 19 hours agoStatus: Live
Reposted: similar role first listed 3 months ago

Job Summary

Design and deliver hands-on security testing across AI/LLM systems, web apps, APIs, mobile apps, and cloud infrastructure. Embed DevSecOps security controls into CI/CD pipelines (SAST/DAST/SCA, secrets and container scanning) and build automation across AWS, Azure, and GCP. Use Python/Go/PowerShell and custom tooling to execute penetration testing engagements, report actionable risk findings, and partner with engineering on secure-by-default architecture.
Location: Bengaluru
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Perform penetration testing on AI/LLM systems, web applications, APIs, mobile apps, cloud infrastructure, containers, and supporting infrastructure.
  • •Identify and exploit vulnerabilities including authentication/authorization flaws, business logic issues, injection, SSRF, deserialization, and chained attacks.
  • •Embed security controls into CI/CD pipelines using SAST, DAST, SCA, secrets scanning, and container/image scanning as pipeline gates.
  • •Build and operate DevSecOps automation across cloud environments using policy-as-code, infrastructure-as-code scanning, and automated security guardrails.
  • •Deliver clear, actionable risk reports, mentor remediation, collaborate on threat modeling and secure-by-default architecture, and manage engagement lifecycle from prioritisation to execution.

Key Requirements

  • •4–6 years combined experience in penetration testing and DevSecOps with meaningful depth in both areas.
  • •Hands-on pentest experience across web apps, APIs, mobile, and cloud environments with the ability to find and exploit vulnerabilities.
  • •Experience incorporating SAST, DAST, SCA, secrets, and container/image scanning into CI/CD pipelines in live production settings.
  • •Understanding of AI/ML security, LLM vulnerabilities, and timely engineering attacks, plus OWASP Top 10 (web/API/LLM).
  • •Programming/scripting in Python, Bash, PowerShell, Go, or JavaScript and the ability to read source code and dynamically exploit vulnerabilities; strong cloud and container security knowledge.
Experience:4-6 years
Skills:Written communicationVerbal communication
Certifications:OSCPOSWEOSEPGXPNGPENGWAPTCRTPEJPTCRESTCISSP
Tech Stack:PythonGoPowerShellBashJavaScriptAWSAzureGCPDockerKubernetesTerraformCloudFormationSASTDASTSCASecrets scanningContainer scanningImage scanningCI/CDOWASP Top 10

Company Brief

Adobe Systems
Provides creative, marketing, and document management software and cloud services, including Photoshop, Illustrator, Acrobat, and the Adobe Experience Cloud, serving creative professionals, enterprises, and governments worldwide.
Industry: SaaS
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: San Jose, United States
Founded: 1982
Glassdoor
Glassdoor: 4.0
WebsiteLinkedInGlassdoor