Senior Information Security Platform Engineer, ITC

Nike

3.7

(41)

India

Why you should apply for a job to Nike:

  • 60% say women are treated fairly and equally to men
  • 56% say the CEO supports gender diversity
  • Ratings are based on anonymous reviews by Fairygodboss members.

    #21272_R-71212

    Position summary

    hould be comfortable navigating ambiguity, learning on the fly, and leveraging emerging technologies-including GenAI services-to accelerate and automate security data pipelines.

    The candidate needs to have strong Information Security knowledge, extremely strong written and verbal communication skills and a demonstrated ability to communicate across all areas and levels of the business. They should also be able to comprehend complex business initiatives, leveraging excellent analytical and problem-solving skills. We are seeking a motivated self-starter who is has a track record of taking ownership of information security challenges and driving them to resolution.

    • Bachelor's degree in Computer Science, Information Security, or Business Information Management, or equivalent work experience.

    • 5+ years of progressive experience in information security, application security engineering, or cybersecurity consulting.

    • Deep expertise in Application Security Testing (AST) tools, prefrebly including SAST, DAST, SCA, SBOM analysis, and Mobile AST.

    • Strong experience integrating security into CI/CD pipelines using tools like GitHub Actions and Jenkins.

    • Proficiency in Python scripting, API development, and working with structured, semi-structured, and unstructured data.

    • Hands-on experience with SQL, NoSQL, and platforms such as MongoDB and Databricks; solid understanding of ETL fundamentals and API-based data ingestion.

    • Familiarity with cloud-native and serverless architectures, including event-driven patterns and AWS services such as EKS, ECS, Lambda, Bedrock, DocumentDB, DynamoDB, and RDS.

    • Knowledge of threat modeling and secure design review methodologies.

    • Demonstrated ability to communicate effectively across technical and executive audiences, adjusting style and approach as needed.

    • Strong analytical and problem-solving skills with a track record of resolving complex challenges.

    • Ability to lead cross-functional collaboration, build stakeholder relationships, and drive consensus in a global, matrixed environment.

    • Familiarity with security standards, regulatory frameworks, and cloud security best practices.

    • Adaptability to evolving threats and technologies in a fast-paced cybersecurity landscape.

    • Security certifications such as CISSP, CSSLP, CCSP, CISM, or CRISC are preferred but not required.

    WHAT YOU'LL WORK ON

    If this is you, you'll be working with the Application Security Consulting SecureCode team to perform these key tasks:

    • Design and implement cybersecurity metrics (KPIs/KRIs) to measure control effectiveness and program reach.
    • Build centralized reporting capabilities and integrate metrics into dashboards using Tableau, PowerBI, and Databricks.
    • Analyze large, complex datasets to identify trends, anomalies, and actionable insights.
    • Collaborate with global engineering and DevOps teams to integrate security tooling into CI/CD pipelines.
    • Prepare executive-level reports and committee summaries on security posture and risk trends.
    • Maintain documentation and process repositories to support compliance and continuous improvement.
    • Stay current with industry trends, regulatory requirements, and best practices in application security metrics and reporting.

    Why you should apply for a job to Nike:

  • 60% say women are treated fairly and equally to men
  • 56% say the CEO supports gender diversity
  • Ratings are based on anonymous reviews by Fairygodboss members.