Lenskart.com
Product Security Engineer (Devsec Ops)
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Lenskart.com
Lenskart.com is an Indian eyewear company founded in 2010 by Peyush Bansal, Amit Chaudhary, and Sumeet Kapahi. It is recognized as India's fastest-growing eyewear business, featuring a strong online presence and over 1,400 physical stores. Lenskart offers a unique 'Home Eye Check-up' service, where trained professionals conduct eye tests at customers' homes, making eye care more accessible. The company provides a range of eyewear products, including prescription glasses, sunglasses, and contact lenses. Lenskart operates on a vertically integrated model, manufacturing its own lenses and selling directly to consumers, which helps maintain quality and affordability. Customers can shop online or visit physical stores for personalized fittings, with all products backed by a 1-year warranty and authenticity card. Lenskart serves over 100,000 customers monthly in India and has expanded to international markets such as Singapore, the UAE, and the United States. The company has experienced significant growth, attracting investments from notable investors and achieving a valuation of $5 billion as of mid-2024.
Security at Lenskart.com
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- Lenskart is committed to maintaining the safety and integrity of our products.
- They work closely with engineering, DevOps, and product teams to integrate security throughout the SDLC, and use tools like automatic code analyzers to block the deployment of bad code.
- The company's risk philosophy frames security as product safety and integrity.
- A stated goal is to reach testing immediately after a new release is done.
Security Team
- Org structure & reporting line: Public sources describe tech organization pod structure but do not provide an explicit AppSec reporting line to CISO/CTO or show whether AppSec is centralized or embedded.
- Evidence: "we've divided our 200+ tech team into mission-specific 15 pods"and "6 pods which are ONLY working on scalability & security"– Lenskart blog ⚠️ .
Key Initiatives
"Shift Left"in practice: "Collaborate with development teams to embed security controls in CI/CD pipelines"– LinkedIn job posting . "To block the deployment of bad code: we use tools like automatic code analyzers"– Lenskart blog ⚠️ .
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.