Cyber Security Engineer
welldoc· Product Engineering
About this role
Job Description -
We are looking for a Security Engineer with less than six years of cybersecurity experience who has a solid grasp of the CIA Triad and hands-on experience with Threat Modeling and Risk Assessments. You should have a deep understanding of the OWASP Top 10 and the MITRE ATTACK framework.
JOB DUTIES:
- Secure Architecture & Threat Modeling
Conduct Threat Modeling and Risk Assessments using the STRIDE methodology during the design phase of the SDLC.
Develop and maintain Security Architectural Diagrams that define network segmentation, trust boundaries, and data flow across cloud environments.
Apply the CIA Triad (Confidentiality, Integrity, and Availability) to every architectural decision, balancing security with system performance. - Vulnerability Management & Remediation
Execute and oversee SAST and DAST programs (utilizing tools like Veracode) to identify code-level and runtime flaws.
Perform deep-dive analysis of CVEs and third-party library risks; spearhead the creation of the SBOM (Software Bill of Materials).
Partner with development teams to document security issues and provide a clear, actionable & Plan to Fix & for identified flaws. - Identity & Access Management (CIAM)
Design and implement secure authentication and authorization flows using SAML 2.0 and OpenID Connect (OIDC).
Provide subject matter expertise on CIAM best practices to ensure seamless yet secure user experiences and APIs security. - DevSecOps & Automation
Automate security scanning and policy enforcement within the DevOps CI/CD pipeline. - Coordinate with Development and QA team
Understands the concept of CVE, CWE and CVSS and can work on prioritizing the security related issues with high-risk scores and work with development and QA team to fix the security issues and execution of security test cases.
YOU MUST HAVE:
- Excellent documentation and communication skills
- Deep understanding of Threat modeling and Risk Assessment
- Good understanding of cloud environments and security
- Certifications: CEH, CISSP, AZ500
Frequently Asked Questions
Is the salary disclosed for the Cyber Security Engineer position at welldoc?
The salary for this Cyber Security Engineer role at welldoc is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Cyber Security Engineer position at welldoc located?
This Cyber Security Engineer role at welldoc is based in Bangalore, Karnataka, India, Hybrid. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Cyber Security Engineer role at welldoc full-time or part-time?
This is listed as a Full Time position. It is posted as a Cyber Security Engineer role in the Product Engineering department at welldoc.
Which team or department does the Cyber Security Engineer at welldoc belong to?
This Cyber Security Engineer position is part of the Product Engineering department at welldoc. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Cyber Security Engineer position at welldoc?
Click the "Apply Now" button on this page. You will be redirected to welldoc's official application portal hosted on bamboohr where you can submit your application directly.
When was the Cyber Security Engineer job at welldoc posted?
This Cyber Security Engineer position at welldoc was posted on May 20, 2026. Apply as soon as possible — early applications are often reviewed first.
Cyber Security Engineer
welldoc
You'll be redirected to welldoc's official application page on bamboohr.