Principal Cyber Security Engineer

4 weeks ago


india QuEST Global Services Pte. Ltd Full time

Quest Global is an organization at the forefront of innovation and one of the world’s fastest growing engineering services firms with deep domain knowledge and recognized expertise in the top OEMs across seven industries. We are a twenty-five-year-old company on a journey to becoming a centenary one, driven by aspiration, hunger and humility.

We are looking for humble geniuses, who believe that engineering has the potential to make the impossible, possible; innovators, who are not only inspired by technology and innovation, but also perpetually driven to design, develop, and test as a trusted partner for Fortune 500 customers.

As a team of remarkably diverse engineers, we recognize that what we are really engineering is a brighter future for us all. If you want to contribute to meaningful work and be part of an organization that truly believes when you win, we all win, and when you fail, we all learn, then we’re eager to hear from you.

The achievers and courageous challenge-crushers we seek, have the following characteristics and skills:
 

In this role you will be responsible for designing, building, testing and implementing systems with the primary goal of security/patient safety across software as a medical device product portfolio in various operating environments. Prevention of breach of Intellectual Property (IP), Attack surface minimization, preventive security and privacy controls, incident/vulnerability management are some of the focal areas for this position.
This role requires a strategic understanding of the business, customer/ patient needs, product technology and the purpose & values of our company to successfully deliver on the group priorities. A hands-on experience and interest in latest security standards, protocols, products and systems is mandatory for the success of this role.
Essential Responsibilities

Support software development teams in building a security by design mindset by supporting implementation and code inline with the Application Security Program mandates. Implement solutions that meet security and privacy requirements defined in the security plans, risk assessments, policies, and procedures. Implement designs in accordance with secure software design guidelines to achieve desired security requirements and controls with the support of development leads, security architects and product owner(s). Implement features in line with the architecture via designs, coding, reviews and tests. Perform Proof of Concept (POC) activities as necessary. Review, Analyze and mitigate SAST, DAST, SCA and penetration test findings in collaboration with the developers for various non-medical and software as medical devices (SaMD) product lifecycles Support development of SBOM across multiple product lines Implement enhancements to software security controls across cloud-based medical products. Participate in post-market product analysis to support vulnerability investigations as required as well as be engaged in continuous security monitoring
Desired Technical skills / experience:
 Security developer able to support software development teams on secure coding practices and application security test report generation and interpretation for various coding languages and environments. Experience with secure software development lifecycle and practices including SAFe/ Agile methodologies for software development Understanding of security by design principles and architecture level security concepts, experienced with threat modeling and assessments Experience in implementing security technologies/techniques in cloud-based systems like Cryptographic Algorithms/Cipher Suites, Public key Infrastructure (PKI)), network security protocols, OAuth, 2-factor authentication, and data at rest encryption standards Experience implementing OWASP Top10 application security guidelines Experience with cloud-based design and security controls ( network security, instance hardening, identify and access control, configuration best practices) Experience with penetration testing methodologies and tools including environmental configuration, security analysis, audits and reviews Knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities. Aware of international privacy requirements & cross industry trends. Desired: Exposure to Healthcare IT or medical device industry Desired: Experience integrating security tools into CI/CD pipelines Desired: Experience with AWS security controls Qualifications and Skills Bachelor's degree in Computer Science, a related field or equivalent demonstrated experience and knowledge Minimum 4+ years of experience in software development or related fields. A minimum 2 years technical experience implementing cybersecurity requirements in cloud/hosted server environment A minimum 2 years working with each of the following:Software development experience using web/application software technologies such as C/C++, Java, .Net, python, etc.Experience analyzing, interpreting and mitigating security findings from multiple sources including SAST, DAST, SCA and penetration security, secure networking, and network hardening strategiesExperience implementing Conditional Access & MFA solutionsPrivileged access management Professional Cyber security certifications: CISSP/OSCP/SSCP are a plus

  • india Cyber Security Council for Operations & Intelligence Full time

    Job Title: Senior Cyber Security Trainer Position Overview: We are seeking an experienced Senior Cyber Security Trainer with a proven track record in corporate training. The ideal candidate will have 6-8 years of hands-on experience in the field of cybersecurity along with exceptional teaching skills. The role involves designing curriculum, delivering...


  • india Fadac Resources Full time

    Job Description Our client is a leading enterprise technology Integrator specialized in the deployment of dynamic and highly scalable ICT Infrastructure Solutions. Due to expansion, they are currently in need of a Cyber Security Engineer. LOCATION : LagosRESPONSIBILITIES: Planning, implementing, managing, monitoring, and upgrading security measures for the...


  • india Agensi Pekerjaan BTC Sdn Bhd Full time

    Job Description Open Position: Principal IT Security Engineering Specialist  (APAC IT Organisation)    An APAC IT Organisation is currently looking for Principal IT Security Engineering Specialist to join the team and be based in the Selangor office.   Key responsibilities include: Good experience in managing Cyber Security Engineering Projects...


  • india Teradyne Full time

    Our Purpose TERADYNE, where experience meets innovation and driving excellence in every connection. We are fueled by creativity and diversity of thought and in our workforce. Our employees are challenged to innovate and learn something new every day. We cultivate a culture of inclusion for all employees that respects their individual strengths, views,...


  • india DriveSec Technologies Full time

    Company Description DriveSec Technologies is a leading organization that empowers and enables companies to drive security and enhance workplace, infrastructure, and technological security processes. Our mission is to bridge the gap between technical teams and business teams, fostering a shift-left culture and mindset for secure growth. We prioritize a...


  • india techcarrot FZ LLC Full time

    Job Description Manage and co-coordinate cyber security activities regarding governance of ENOC information and cyber security efforts towards protecting the organization information assets and critical infrastructure. Manage and maintain the development of cyber security policies, monitor compliance directly or in coordination with the cyber security...

  • Cyber Security Engin

    4 weeks ago


    India Whiteforce Full time

    **Employment Information**: - Industry - ** Cyber Security** - Job level - *** - Salary - ** -** - Experience - ** -** - Pay-Type- Close-date- JOB-ID - **JB-19831** - Location - **India** **Job Descriptions**: Careem is looking for an experienced SOC L2 analyst as we are ramping up the Cyber Fusion Center. The person working in the SOC L2 team operates the...


  • india Black Box Full time

    Join Our Cyber Security Dream Team! Are you a fresh graduate with a passion for cyber security? Ready to kickstart your career and protect the digital world from evolving threats? We have the perfect opportunity for you! We Are Hiring Cyber Security Freshers! Positions Available: Security Operations Center (SOC) Analyst Vulnerability Assessment...


  • india ValueSec Technology and Consulting Pvt Ltd Full time

    About the Company Valuesec supports companies with highly personalized, niche and custom cyber security services primarily in four key domains i.e., offensive security, defensive security, managed services and compliances. Valuesec is driven by a mission to make every part of our client business more resilient & help them to discover new capabilities by...


  • india L A Technologies Pvt Ltd Full time

    Company Description L.A Technologies is a specialized group of IT professionals based in Mumbai Metropolitan Region. We provide top-notch services in Networking, Securities, Wireless, and Server platforms for Internet and business applications. Our team includes certified professionals in Cisco, Microsoft, Certified Auditors, and Linux, as well as a network...


  • india Minutes to Seconds Pty Ltd Full time

    Job Description About the jobAt Minutes to Seconds, we match people having great skills with tailor-fitted jobs to achieve well-deserved success. We know how to match people to the right job roles to create that perfect fit. This changes the dynamics of business success and catalyzes the growth of individuals. Our aim is to provide both our candidates and...


  • india Mrwebsecure Infosolutions Private Limited Full time

    *Job Description: Cyber Security Trainer*Position: Cyber Security TrainerLocation: Mumbai (Andheri West )Company Overview:Mrwebsecure Infosolutions Private Limited is a leading provider of cybersecurity solutions dedicated to educating individuals and organizations about the importance of cybersecurity practices. We are committed to fostering a secure...


  • india TAC Security Full time

    Job Title: Senior Security Engineer - VAPT Location: Pune, India Company Description TAC Security is a global leader in vulnerability management that specializes in protecting Fortune 500 companies, leading enterprises, and governments worldwide. With its AI-based Vulnerability Management Platform ESOF (Enterprise Security in One Framework), TAC Security...


  • india Pro5.ai (formerly Mangtas) Full time

    About the job :Responsibilities :- Serve as the subject matter expert (SME) for the security systems managed by the Information Security Team.- Ensure the optimal use of security systems.- Plan, identify, assess, design, operationalize, and maintain various security-related software and hardware.- Recommend and lead cyber security solutions and initiatives...


  • india Novalink Solutions LLC Full time

    Job Description The Security Cloud Engineer will assist the Cybersecurity Team by supporting Gwinnett County Security staff in their efforts to protect county systems. This position will be responsible for developing and maturing Microsoft Defender products and various other Cloud based products.  Minimum Qualifications: ·        Previous experience...


  • india Tech Mahindra Full time

    Job Description: Job Description - Senior Okta Engineer (OffSite) Primary Skill: IAM/OKTA Location: Bangalore/Hyderabad NP: Immediate to 30days Responsibilities, authorities, and accountabilities • Implementing and supporting of the Identity and access management Controls to manage authentication for internal and external users. • Detecting and...


  • india ShieldByte Infosec Pvt. Ltd. Full time

    Company Description ShieldByte Infosec is India's leading cyber security company that provides cybersecurity, data privacy, information security consulting, and compliance audit services. With a global clientele spanning over 20+ countries, we are committed to delivering the highest quality professional private security services based on trust and...


  • india Exide Energy Solutions Ltd Full time

    We are seeking a highly skilled and experienced Cyber Security Manager to join our state of the art manufacturing company who is subject matter expert of Cyber Security & Information Security domain and Lead the IT Security portfolio of Exide Energies Main Responsibilities IT Security Roadmap & Projects • To build strategy on implementing security...

  • Senior Red Team Lead

    2 weeks ago


    india Security Lit Full time

    Job Description: We are looking for a skilled and experienced professional to join our Information Security Governance team as a Senior Infrastructure, Application & Cloud Offensive Security Assessment expert. This role involves leading and executing comprehensive security assessments, including web application security testing, vulnerability assessment, and...


  • india Agensi Pekerjaan BTC Sdn Bhd Full time

    Job Description Open Position: Cyber Security Threat Hunter, Analyst (MNC Company) A well-known MNC company is currently hiring Cyber Security Threat Hunter, Analyst to join them in their Kuala Lumpur office.Key responsibilities include: • Must possess at least diploma or degree in IT or any related area.• Identifying and prioritizing emerging threats...