Cyber Security Engineer
Security Strategy & Roadmap
Owns the end-to-end security capability roadmap — covering vulnerability classes, detection methods, and verification techniques — and continuously reviews the competitive landscape across both commercial and open source security tools to keep the product's approach current.
Selects and embeds the security testing frameworks and methodologies the product aligns to, tracking emerging attack classes and testing techniques and deciding when and how they should be incorporated into the product.
Owns the product's overall security thesis and represents it externally to stakeholders, customers, and the wider community, while also setting the security requirements for the harness itself.
Detection Quality & Measurement
Owns detection quality across all specialist analysis lenses, ensuring consistency and reliability of results.
Designs and curates the benchmark corpus — a structured set of seeded and labelled vulnerabilities used to validate detection performance.
Owns the measurement methodology and safeguards the integrity of all published detection figures.
Adjudicates whether findings are genuine, setting and maintaining the triage standard used across the team.
Runs the standing evaluation program benchmarking competing tools and techniques against the corpus.
Reviews external contributions and changes to the harness for potential security impact before they're merged.
Hands-On Execution & Support
Essential functions
Takes detection specs from the security team and ships them as versioned lenses and rule packs, with a prompt registry and a way for customers to add their own.
Implements chunking that cuts at function boundaries and packs by real token counts, using the tree-sitter call graph, to the senior engineer's design.
Builds read-only retrieval over Confluence, ADRs and design docs that keeps the source permissions and cites what it used.
Builds the reviewer feedback loop (labels stored against fingerprints, suppression, precision reporting) and the exports to GRC and ASPM tools.
Qualifications
Model runtime & prompt engineering, diff-based scanning & fingerprinting, tree-sitter / code parsing, RAG / retrieval systems, Git/GitHub/GitLab automation, Jira/CI-CD integrations, credential management, SBOM/SCA/secrets scanning, KEV/EPSS feeds, observability & tracing, release engineering (containers, signed builds), GRC/ASPM tooling.
We offer
- Opportunity to work on bleeding-edge projects
- Work with a highly motivated and dedicated team
- Competitive salary
- Flexible schedule
- Benefits package - medical insurance, sports
- Corporate social events
- Professional development opportunities
- Well-equipped office
About us
Grid Dynamics (NASDAQ: GDYN) is a leading provider of technology consulting, platform and product engineering, AI, and advanced analytics services. Fusing technical vision with business acumen, we solve the most pressing technical challenges and enable positive business outcomes for enterprise companies undergoing business transformation. A key differentiator for Grid Dynamics is our 8 years of experience and leadership in enterprise AI, supported by profound expertise and ongoing investment in data, analytics, cloud & DevOps, application modernization and customer experience. Founded in 2006, Grid Dynamics is headquartered in Silicon Valley with offices across the Americas, Europe, and India.Apply to the position
Thank you!
You applied for the position Cyber Security Engineer successfully. We will get back to you soon. Have a great day!
Something went wrong...
There are possible difficulties with connection or other issues. Please try to use another browser (it's recommended to use the latest version of Google Chrome browser). If the problem still persists, please send your application to cv@griddynamics.com
Something went wrong...
Please double-check the information filled in the form, and make sure to provide valid data.
Don’t see the right opportunity?
Contact us anyway and let’s talk! To apply, send your resume and cover letter to jobs@griddynamics.com
Grid Dynamics is an equal opportunity employer. We are committed to creating an inclusive environment for all employees during their employment and for all candidates during the application process.
All qualified applicants will receive consideration for employment without regard to, and will not be discriminated against based on, age, race, gender, color, religion, national origin, sexual orientation, gender identity, veteran status, disability or any other protected category. All employment is decided on the basis of qualifications, merit, and business need.
