OffCampusJobs

Navi Security Engineer I | Bengaluru


Job Description

Navi is one of India's fastest-growing financial services companies, offering innovative digital products across Personal Loans, Home Loans, UPI, Insurance, Mutual Funds, and Gold. Founded by Sachin Bansal and Ankit Agarwal, Navi is on a mission to make financial services simple, accessible, and affordable through technology and AI-driven solutions.

Navi is looking for passionate and technically curious candidates to join its Product Security team as a Security Engineer I. This role is ideal for fresh graduates and early-career professionals interested in Application Security, Vulnerability Assessment & Penetration Testing (VAPT), Security Automation, and Product Security. You'll work closely with development teams, identify security vulnerabilities, build automation tools, and help strengthen the security posture of products used by millions of customers.

Company: Navi Technologies
Role: Security Engineer I
Location: Ibbaluru, Bellandur, Bengaluru, India
Job Type: Full-Time
Experience Required: 0–2 Years

Roles & Responsibilities

• Conduct Vulnerability Assessment and Penetration Testing (VAPT) for web applications, mobile applications, and APIs.

• Perform security testing on Android and iOS applications.

• Identify, validate, and document security vulnerabilities.

• Develop automation scripts and security tools using Python, Go, Bash, or similar technologies.

• Automate vulnerability scanning, reporting, and security workflows.

• Analyze and validate findings from SAST and DAST security tools.

• Eliminate false positives and prioritize security risks.

• Collaborate with software development teams to remediate vulnerabilities.

• Provide security recommendations based on OWASP Top 10 guidelines.

• Configure and maintain security testing tools within CI/CD pipelines.

• Prepare detailed penetration testing reports and proof-of-concept documentation.

• Support continuous security improvement initiatives across products.

Qualifications & Eligibility

• 0–2 years of experience in Application Security, Penetration Testing, Cybersecurity, or Software Engineering.

• Internship, bug bounty, cybersecurity training, or hands-on security project experience is highly valuable.

Skills Required

• Strong understanding of OWASP Top 10 vulnerabilities.

• Ability to manually identify and exploit common vulnerabilities such as:

Cross-Site Scripting (XSS)
SQL Injection (SQLi)
Insecure Direct Object References (IDOR)
Authentication and Authorization flaws

• Strong programming and scripting skills in:

Python
Go
Bash
Ruby (optional)

Preferred skills

• Burp Suite

• OWASP ZAP

• Postman

• Nmap

• MobSF

• REST API Security Testing

• GraphQL Security Testing

• Mobile Application Security

• Security Automation

• Secure SDLC

• CI/CD Security

• Bug Hunting & Responsible Disclosure
• Understanding of APIs, automation, and data processing.

• Good analytical and problem-solving skills.

• Strong communication and documentation abilities.

Technical Knowledge Required

• HTTP / HTTPS Protocols

• TCP/IP Networking

Why Join Navi?

• Work with one of India's fastest-growing fintech companies.

• Gain hands-on exposure to real-world product security challenges.

• Build expertise in VAPT, Application Security, and Security Automation.

• Collaborate with experienced security and engineering professionals.

• Work on products used by millions of customers.

• Learn modern security practices in a fast-paced technology environment.

• Accelerate your cybersecurity career through continuous learning and innovation.

What Makes a Navi_ite?

Perseverance, Passion & Commitment

• Passion for Navi's mission and vision.

• High ownership and accountability.

• Willingness to go beyond assigned responsibilities.

Obsession with High-Quality Results

• Deliver exceptional outcomes for customers and stakeholders.

• Focus on excellence and continuous improvement.

• Maintain high standards of execution.

Resilience & Adaptability

• Adapt quickly to changing priorities and technologies.

• Demonstrate agility and problem-solving ability.

• Thrive in dynamic environments.

Who Should Apply?

• Fresh graduates interested in Cybersecurity and Application Security.

• Candidates with VAPT knowledge and hands-on security projects.

• Bug bounty hunters and ethical hacking enthusiasts.

• Developers looking to transition into security engineering.

• Individuals passionate about identifying and fixing security vulnerabilities.

• DNS Fundamentals

• API Architectures

• Mobile Application Architecture (APK/IPA)

• Authentication & Authorization Concepts

• Secure Coding Practices

• Vulnerability Management

Apply for this Position

Apply Now
Navi  Security Engineer I | Bengaluru Job Opening