Lead Security Engineer - Application Security

Mumbai

āš ļø We'll shut down after Aug 1st - try foošŸ¦ for all jobs in tech āš ļø

Dream Sports

Dream Sports is one of India's top sports tech conglomerates with brands such as Dream11, FanCode, DreamSetGo and KheloMore in its portfolio.

View all jobs at Dream Sports

Apply now Apply later

Technology @Dream11:Technology is at the core of everything we do. Our technology team helps us deliver a mobile-first experience across platforms (Android & iOS) while managing over 700 million rpm (requests per minute) at peak with a user concurrency of over 16.5 million.
At Dream11, we have over 190+ micro-services written in Java and backed by a Vert.x framework. These work with isolated product features with discrete architectures to cater to the respective use cases. We work with terabytes of data, the infrastructure for which is built on top of Kafka, Redshift, Spark, Druid, etc. and it powers a number of use cases like Machine Learning and Predictive Analytics. Our tech stack is hosted on AWS, with distributed systems like Cassandra, Aerospike, Akka, Voltdb, Ignite, etc.
We don’t just create for the users of today, but are driven to innovate for the sports fans of tomorrow. If you like to build with clean, resilient, and scalable code, this is the place for you. Check out some of our recent developments, all built with the same philosophy in mind.

Your Role:

  • Embed security across the SDLC by working closely with development, DevOps, and product teams.
  • Lead secure architecture/design reviews and perform deep-dive assessments for web and mobile apps.
  • Conduct manual and automated vulnerability testing, including penetration tests.
  • Promote secure coding and threat modeling through training and best practice guidance.
  • Build and automate security tools/workflows, ideally using GenAI.
  • Support incident response efforts for application-layer threats, and plan relevant short/long-term remediations

Qualifiers:

  • 7+ years in AppSec, with 4+ years in mobile/web security testing and secure code reviews.
  • Participation in bug bounty programs, CTFs, or open-source security projects.
  • Strong knowledge of OWASP Top 10, SANS 25, and scalable mitigation strategies.
  • Skilled in at least one language (e.g., Python, Java, Golang), with experience in building security automation, custom tools, or guardrails.
  • Familiarity with WAFs, SIEM/log analytics solutions, and incident response workflows.
About Dream Sports:
Dream SportsĀ is India’s leading sports technology company with 280 million+ users, housing brands such asĀ Dream11, the world’s largest fantasy sports platform,Ā FanCode, a premier sports content & commerce platform andĀ DreamSetGo, a sports experiences platform.
Dream Sports is based in Mumbai and has a workforce of close to 1,000 ā€˜Sportans’. Founded in 2008 by Harsh Jain and Bhavit Sheth, Dream Sports’ vision is to ā€˜Make Sports Better’ for fans through the confluence of sports and technology.
Dream11Ā is the world’s largest fantasy sports platform with 260 million+ users playing fantasy cricket, football, kabaddi, basketball, hockey, volleyball, handball, rugby, futsal, American football & baseball, on it. Dream11 is the flagship brand of Dream Sports, India’s leading Sports Technology company and has partnerships with several national & international sports bodies and cricketers.
Checked outĀ Dream Locker RoomĀ yet? Head over to our official blog to get a glimpse into our culture, and how we ā€˜Make Sports Better’, together.
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index šŸ’°

Job stats:  0  0  0

Tags: Analytics Android Application security Automation AWS Cassandra Confluence DevOps Generative AI Golang Incident response iOS Java Kafka Machine Learning OWASP Python SANS SDLC SIEM

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.