Security Engineer (AI) - Powered Security Engineering

Meesho · Bengaluru

  • Experience10–14 yrs
  • SalaryNot disclosed
  • Work modeonsite
  • Levelexecutive
  • Posted3 Sept 2026

About Meesho

Meesho is hiring in Bengaluru in ecommerce retail. This role looks for around 10+ years of experience.

Skills

  • AI security architecture
  • red teaming
  • DevSecOps
  • cloud security
  • threat modeling
  • Infrastructure security
  • Product security
  • System design
  • AWS
  • Google Cloud Platform
  • Docker
  • Containerization
  • Java
  • Node.js
  • Python
  • Source code review
  • Adversarial machine learning
  • Prompt injection defense
  • Zero Trust
  • Identity and access management

The role

A security architect at an e-commerce marketplace designs AI security architecture and red teaming defenses for autonomous AI systems, applying DevSecOps, cloud security, and threat modeling across secure software delivery.

Full job description

We are looking for a highly technical, hands-on Security Architect (individual contributor) to guide and lead our AI-powered security engineering charter. In this role, you will bridge the gap between conventional DevSecOps, infrastructure security, and the rapidly evolving landscape of AI. You will optimize our AI-driven Software Development Lifecycle (SDLC) by designing secure-by-default guardrails for both human developers and AI coding agents. Your mission is to ensure near-zero vulnerabilities from application and data security failures reach production. A significant portion of your focus will involve advanced red teaming, utilizing LLMs to improve Meesho's security posture, and architecting defenses for our autonomous AI systems against prompt injection, data leakage, and jailbreaking attacks.

Responsibilities:

Lead AI Security Architecture: Drive the technical roadmap and high-level design to continuously prevent, detect, and autonomously contain threats across our systems and AI agents.

Hands-on Prototyping and POCs: Build proofs-of-concept for autonomous agent harnesses that automatically detect, analyze, and mitigate security vulnerabilities in real-time.

AI SDLC Optimization: Architect non-bypassable security guardrails across the SDLC for both developers and AI coding agents to ensure production systems are secured by default.

Red Teaming and Adversarial Validation: Proactively execute adversarial testing by simulating real attack scenarios across APIs, AI systems, and infrastructure to validate defense mechanisms.

Protect AI Systems: Design deep technical defenses to protect all AI agents and experimental features from prompt injection, system misuse, manipulation, and unauthorized actions.

Zero-Trust Governance: Architect a Zero Trust Identity Control Plane that eliminates implicit trust, ensuring access for both humans and autonomous agents is time-bound, least-privileged, and continuously verified.

Technical Leadership and Influence: Act as a security expert and IC leader. Mentor security engineers, provide architectural guidance across the organization, and partner closely with ML, DevOps, and Platform teams to evangelize secure coding practices without direct reporting lines.

Requirements:

Experience: 10+ years of hands-on technical experience across different areas of security, including infrastructure security, product security, system design, and DevSecOps.

AI/ML Security Expertise: Proven track record of leveraging coding agents and LLMs for security workflows, red teaming GenAI models, and building defenses against jailbreaking, adversarial ML, and model hallucination risks.

DevSecOps and Cloud Mastery: Deep technical proficiency with cloud platforms like AWS or GCP, including their security tools, Docker, and containerization technologies.

Technical Proficiency: Proficiency in programming languages such as Java, Node.js, and Python, combined with hands-on experience securing production code, developing security tooling, and performing manual source code reviews.

Strategic Vision and Threat Modeling: Ability to architect secure-by-default platform capabilities so all services inherit baseline security automatically, paired with advanced threat modeling skills for AI-native and distributed architectures.

Bonus Points:

Relevant certifications such as GIAC Web Application Penetration Tester (GWAPT) or OffSec's Advanced Web Attacks and Exploitation (WEB-300).

Strong understanding of emerging AI security frameworks (e. g., MITRE ATLAS, NIST AI RMF).

Experience participating in bug bounty programs or speaking at meetups/conferences.

Developing security products and frameworks.