Security Engineer 2
We're looking for a Security Engineer 2, Security Engineering to join Procore's Cybersecurity department. In this role, you'll be responsible for ensuring Procore's security infrastructure is maintained at the highest level of protection and efficiency. As a Security Engineer, you’ll be a key member of the Governance, Risk & Compliance department within our Security Team. You’ll partner with various teams across Procore, including GRC, IT, Security, Infrastructure, Product Engineering and Security Engineering teams to develop, automate and maintain compliance with existing control standards, as well as pursue new ones.
This is a chance to make a significant impact in a company that values the safety and integrity of its data - Join us to be a part of our security-forward culture.
This position will report into the Senior Manager, GRC Security Engineering and has the opportunity to be based in our Bangalore office (Hybrid) in India. We’re looking for someone to join us immediately.
What you'll do / Key responsibilities:
Collaborate with GRC and Security Engineering teams to design, implement and maintain security automation solutions.
Develop and automate evidence collection, Identity & Access Reviews & Change management validations
Work closely with GRC and Security Engineering teams through day-to-day operations
Integrate secure coding standards into SDLC & manage Github Advance Security features including Secret scanning, push protection etc
Integrate applications and cloud security practices with compliance requirements such as ISO 27001 and SOC 2 to support product audit readiness and regulatory obligations.
Configure & implement vulnerability exception handling and act as a security partner embedded in the SDLC
Stay current on evolving regulations, threats, and best practices in information security and compliance
Be a part of promoting a culture of security awareness within the company
What we're looking for / Qualification:
Bachelor’s degree in computer science, Information Systems or equivalent experience
3-5 years of total experience including 2+ years of minimum experience in Security engineering with hands-on experience in writing scalable, maintainable, and efficient code in Python for automation and integration.
Excellent communication skills, Detail-oriented, proactive, and a strong team player
Strong knowledge of cybersecurity principles, cloud architecture, networking, and security best practices.
Experience with cloud technologies like AWS & GRC tools such as Drata, Lumos and Veza is preferred.
Familiarity with CI/CD pipelines and DevOps practices. Terraform experience for infrastructure automation is a plus.
Familiarity with compliance standards such as ISO 27001, SOC1/2, NIST CSF, NIS2, Cyber Essentials etc.
CEH & CompTIA Security+ certification is a plus
Preferred Skills:
Python, AWS, Terraform, CI/CD pipelines, Experience with containerization technologies (e.g., Docker, Kubernetes),SAST/DAST tools
Procore Technologies is building the software that builds the world. We provide cloud-based construction management software that helps clients more efficiently build skyscrapers, hospitals, retail centers, airports, housing complexes, and more. At Procore, we have worked hard to create and maintain a culture where you can own your work and are encouraged and given resources to try new ideas. Check us out on Glassdoor to see what others are saying about working at Procore.
We are an equal-opportunity employer and welcome builders of all backgrounds. We thrive in a dynamic and inclusive environment. We do not tolerate discrimination against candidates or employees on the basis of gender, sex, national origin, civil status, family status, sexual orientation, religion, age, disability, race, traveler community, status as a protected veteran or any other classification protected by law.
Alternative methods of applying for employment are available to individuals unable to submit an application through this site because of a disability. Contact our benefits team here to discuss reasonable accommodations.
At Procore, we believe in supporting our employees to help them thrive both personally and professionally. We offer a comprehensive range of benefits and perks for full-time employees, including generous paid time off and leave options, healthcare coverage, and career development programs. Discover more about our offerings and how we empower our global team to succeed.
| Commercial Sales Development Representative | Austin, Texas, United States |
| Executive Assistant (Remote) | Carpinteria, California, United States |
| Revenue Operations Business Partner | US - Remote TX, Texas, United States |
| Senior Manager, Corporate Development | Austin, Texas, United States |
| Security Engineer 2 | Bengaluru, Karnātaka, India |
Learn about our applicant and candidate privacy policy and about creating a profile on My Settings.
This website uses cookies to improve your browsing.
We use cookies to personalize content such as job recommendations, and to analyse our traffic. You consent to our cookies if you click "I Accept". If you click on "Manage Cookies", then you can decline the use of performance cookies but you may have a deteriorated user experience. You can change your settings by clicking on the Settings link on the top right of the device.
Procore does not sell Personal Data in the traditional sense, please see our Do Not Sell Policy.
A one-time (for page view) session cookie is necessary to provide protection against a security attack called "Cross-site scripting (XSS)".
This cookie is mandatory, short lived (one page interaction) and contains no personally identifiable information.
This website uses 2 performance cookies.
The first is a long term cookie (13 months) used to remember you as a candidate and maintain your preferences.
The second is a temporary session cookie (lasts for 15 minutes or when your session ends) used to tie activity such as form submissions and page views with location data (city, country) and present a more localized and relevant job recommendations and other career related content.