Product Security Engineer

2 weeks ago


Delhi, India QuEST Global Services Pte. Ltd Full time
Quest Global is an organization at the forefront of innovation and one of the world’s fastest growing engineering services firms with deep domain knowledge and recognized expertise in the top OEMs across seven industries. We are a twenty-five-year-old company on a journey to becoming a centenary one, driven by aspiration, hunger and humility.We are looking for humble geniuses, who believe that engineering has the potential to make the impossible, possible; innovators, who are not only inspired by technology and innovation, but also perpetually driven to design, develop, and test as a trusted partner for Fortune 500 customers.As a team of remarkably diverse engineers, we recognize that what we are really engineering is a brighter future for us all. If you want to contribute to meaningful work and be part of an organization that truly believes when you win, we all win, and when you fail, we all learn, then we’re eager to hear from you.The achievers and courageous challenge-crushers we seek, have the following characteristics and skills:

Job ResponsibilitiesIn this role you will be responsible for designing, building, testing and implementing systems with the primary goal of security/patient safety across medical device product portfolio in various operating environments. Some of the focus areas for this position include: Prevention of breach of Intellectual Property (IP), Attack surface minimization, preventive security and privacy controls, incident/vulnerability management.This role requires experience with security technologies and implementation experience for products with varying levels of capabilities and diverse user environments for both internal and external customers. A hands-on experience and interest in latest security standards, protocols, products and systems is mandatory for the success of this role.Roles and Responsibilities:Work directly with embedded software developers in building a security by design mindset by defining implementations and coding inline with the Application Security Program mandatesImplement embedded secure code solutions, design patterns, and coding guidelines that meet security and privacy requirements defined in the security plans, risk assessments, policies, and proceduresSupport security project governance through scheduling activities, planning and prioritizationProactively drive security solutions implementation in-alignment with the development leads, security architects and product owner(s)Drive feature implementations in line with the architecture via designs, coding, reviews and tests. Perform Proof of Concept (POC) activities as necessaryReview, Analyze and mitigate SAST, DAST, SCA and penetration test findings in collaboration with the developers for various electromechanical medical devices product lifecyclesReview current software security control measures and implement security enhancements across multiple medical devicesParticipate in post-market product analysis to support vulnerability investigations as required as well as be engaged in continuous security monitoringRequired Skills (Technical Competency)

:

Experienced security developer able to interpret and guide software development teams on secure coding practices and application security test report interpretation for various coding languages and operating environmentsStrong knowledge of secure software development lifecycle and practices including SAFe/ Agile methodologies for software developmentUnderstanding of security by design principles and architecture level security conceptsSound understanding and experience in implementing security technologies/techniques such as, Cryptographic Algorithms/Cipher Suites, Public key Infrastructure (PKI), Hardware/embedded authentication protocols, Secure Boot, and data-at-rest encryption methodsExperience implementing OWASP Top10 application security guidelines in embedded systemsKnowledge of embedded system architecture and security controls (e.g., firewall and border router configurations, wireless communication architectures, messaging authentication protocolsExperienced in generating, defining, and reviewing penetration test results through knowledge standard methodologies and tools including environmental configuration definition, security analysis, threat modeling, and system security auditsKnowledge of current and emerging security threats and techniques for exploiting security vulnerabilitiesExposure to international privacy requirements & cross-industry trends

Qualifications and Skills

Bachelor's degree in Computer Science, Computer Engineering, a related field or equivalent demonstrated experience and knowledgeMinimum 8+ years of experience in software development or related fields.Minimum 5 years technical experience working with product security design/development for embedded systems3 years working with each of the following:Experience with C/C++, Python, Linux and/or security design within real-time operating systemsExperience analyzing, interpreting, and mitigating security findings from multiple sources including SAST, DAST, SCA and penetration testsEmbedded data at rest security implementations including Code Signing, Secure boot, and flash encryption implementationsEmbedded/IoT wired and wireless secure networking implementations within multiple layers of the OSI stackIoT/Embedded PKI solutions and implementation.

  • Delhi, India QuEST Global Services Pte. Ltd Full time

    Quest Global is an organization at the forefront of innovation and one of the world’s fastest growing engineering services firms with deep domain knowledge and recognized expertise in the top OEMs across seven industries. We are a twenty-five-year-old company on a journey to becoming a centenary one, driven by aspiration, hunger and humility.We are looking...


  • Delhi, India precisely Full time

    Precisely is the leader in data integrity. We empower businesses to make more confident decisions based on trusted data through a unique combination of software, data enrichment products and strategic services. What does this mean to you? For starters, it means joining a company focused on delivering outstanding innovation and support that helps customers...


  • Delhi, India precisely Full time

    Precisely is the leader in data integrity. We empower businesses to make more confident decisions based on trusted data through a unique combination of software, data enrichment products and strategic services. What does this mean to you? For starters, it means joining a company focused on delivering outstanding innovation and support that helps customers...


  • Delhi, India AlphaSense Full time

    About AlphaSense:AlphaSense is a market intelligence and search platform used by the world's leading companies and financial institutions. Since 2011, our AI-based technology has helped professionals make smarter business decisions by delivering insights from an extensive universe of public and private content—including equity research, company filings,...


  • Delhi, India Vertex Inc Full time

    Description:This position is responsible for defining and implementing Vertex’s product security strategy, partnering closely with product development, IT, legal and other organizations to oversee and drive critical cyber risk programs from start to finish. You will lead a team of talented and experienced Information Security professionals delivering who...

  • Security guards

    4 weeks ago


    Delhi, India 24 Hour Security Full time

    Job Requirements Job Title: Security GuardCompany Name: 24 HOUR SECURITYLocation: Delhi, DelhiSalary: ₹18000 - ₹27500/monthQualification: 10th Standard / SSLCJob Type: Full TimeJob Description:Step into a dynamic security career with 24 HOUR SECURITY as a Security Guard in Delhi. As a Security Guard, you will be a vital part of our team, ensuring...

  • Security guards

    3 weeks ago


    Delhi, Delhi, India 24 Hour Security Full time

    Job Requirements Job Title: Security GuardCompany Name: 24 HOUR SECURITYLocation: Delhi, DelhiSalary: ₹ ₹27500/monthQualification: 10th Standard / SSLCJob Type: Full TimeJob Description:Step into a dynamic security career with 24 HOUR SECURITY as a Security Guard in Delhi. As a Security Guard, you will be a vital part of our team, ensuring the safety and...

  • Security Engineer

    3 weeks ago


    Delhi, India Zoho Full time

    Zoho is one of the world's most prolific software companies. With 55+ applications in nearly every major business category, including sales, marketing, customer service, accounting and back office operations, and an array of productivity and collaboration tools built from the ground up, Zoho has the depth and breadth to solve even the most complex business...


  • delhi, India Confluent Full time

    We are looking for an experienced engineer to join our cloud security team and lead efforts in up-leveling Confluent’s cloud security maturity. In this role, you will have a unique opportunity to leverage your software engineering and cloud security experience to build some of the foundational services and controls that keep our infrastructure secure....


  • Delhi, India Apollo Full time

    Your Role& MissionTheSenior Application Security Engineerwill work with product and engineering to create a secure SDLC, design security features and implement tools, education and processes to reduce risk of security issues in the tech stack.ResponsibilitiesSelect or build tooling to help developers build secure codeProvide overall security architectural...


  • Delhi, India Advanced Sterilization Products Full time

    Responsibilities:Working with internal stakeholders across numerous technical functions.Operate as a SME for product teams regarding secure development practices and technical matters.Coordinate shared product security assessment roadmap on an annual basis.Facilitate and manage third party product assurance engagements.Track and coordinate product security...


  • Delhi, India Deltek Full time

    09-Apr-2024Security Quality Assurance AnalystIndia-Remote9256BRCompany SummaryAs the recognized global standard for project-based businesses, Deltek delivers software and information solutions to help organizations achieve their purpose. Our market leadership stems from the work of our diverse employees who are united by a passion for learning, growing and...


  • Delhi, India Foresiet Full time

    Product EngineerCompany DescriptionForesiet is an AI-enabled SaaS-based cybersecurity company that has developed an innovative One Click Digital Risk Protection platform. Our platform proactively detects, monitors, and secures identity, data, and asset threats from the surface, deep, and dark web. Combining human intelligence and applied research, we protect...


  • Delhi, India QuEST Global Services Pte. Ltd Full time

    Quest Global is an organization at the forefront of innovation and one of the world’s fastest growing engineering services firms with deep domain knowledge and recognized expertise in the top OEMs across seven industries. We are a twenty-five-year-old company on a journey to becoming a centenary one, driven by aspiration, hunger and humility.We are looking...


  • Delhi, India 3M Consultancy Full time

    Job DescriptionThis is a remote position.Job Title: Senior Security Engineer.Location: Washington, DC (Remote)Duration: Full-Time.Role Specific Duties:Provide network IDS monitoring, cyber threat intelligence, security log analysis and forensics, and web application security scanning and analysis.Protect users by performing internal security assessments,...


  • Delhi, India Alp Consulting Ltd. Full time

    Job Title: Infrastructure Security EngineerHi Applicants!!!Hiring for Job in a Reputed Organization (Leading Product Based Company)Here is a Gateway to it, through ALP Consulting.Recruiting for Senior Engineering specialistEmployment Type: PermanentEssential FunctionsA bachelor’s degree from an accredited institution in computer science, computer systems,...


  • Delhi, India Starkflow Full time

    Lead IT Administration & Security Engineer Theclint is India's most trusted Bitcoin & cryptocurrency exchange built by a team of hardcore traders and passionate blockchain enthusiasts. The world is on the cusp of the crypto revolution and our team has been at the forefront of it in India. We're on a mission to make crypto accessible for all and build an...


  • Delhi, India Funding Societies | Modalku Group Full time

    Funding Societies | Modalku is the largest SME digital financing platform in Southeast Asia. We are licensed in Singapore, Indonesia, Thailand, and registered in Malaysia. We are backed by Sequoia India and Softbank Ventures Asia Corp amongst many others and provides business financing to small and medium-sized enterprises (SMEs), which is crowdfunded by...


  • Delhi, India Funding Societies | Modalku Group Full time

    Funding Societies | Modalku is the largest SME digital financing platform in Southeast Asia. We are licensed in Singapore, Indonesia, Thailand, and registered in Malaysia. We are backed by Sequoia India and Softbank Ventures Asia Corp amongst many others and provides business financing to small and medium-sized enterprises (SMEs), which is crowdfunded by...


  • Delhi, India Halodoc Full time

    About This RoleHalodoc is looking for an individual who can adopt the mindset of an attacker to proactively identify security vulnerabilities and collaborate closely with cross-functional teams to promptly address them. This role involves taking charge of the end-to-end secure development requirements, discovering vulnerabilities and security...