Current jobs related to Senior Principal Product Cybersecurity Architect - Bengaluru - Johnson Controls


  • Bengaluru, India Johnson Controls Full time

    What you will do The future is being built today, and Johnson Controls is making that future more productive, more secure and more sustainable. We are harnessing the power of cloud, data analytics, the Internet of Things, and user design thinking to deliver on the promise of intelligent buildings and smart cities that connect communities in ways that...


  • Bengaluru, India CYFIRMA Full time

    CYFIRMA is the fastest-growing cybersecurity start-up delivering a complete near real-time view of external cyber threats and risks. We are an external threat landscape management platform company. We combine cyber intelligence with attack surface discovery and digital risk protection to deliver an early warning, personalized, contextual, outside-in, and...


  • Bengaluru, India CYFIRMA Full time

    CYFIRMA is the fastest-growing cybersecurity start-up delivering a complete near real-time view of external cyber threats and risks. We are an external threat landscape management platform company. We combine cyber intelligence with attack surface discovery and digital risk protection to deliver an early warning, personalized, contextual, outside-in, and...

  • Product System

    4 months ago


    Bengaluru, Karnataka, India Aptiv plc Full time

    **Help shape the future of mobility.** Imagine a world with zero vehicle accidents, zero vehicle emissions, and wireless vehicle connectivity all around us. Every day, we move closer to making that world a reality. Aptiv’s passionate team of engineers and developers creates advanced safety systems, high-performance electrification solutions and data...


  • Bengaluru, Karnataka, India Johnson Controls International Full time

    **What you will do** The future is being built today, and Johnson Controls is making that future more productive, more secure and more sustainable. We are harnessing the power of cloud, data analytics, the Internet of Things, and user design thinking to deliver on the promise of intelligent buildings and smart cities that connect communities in ways that...


  • Bengaluru, India Aptiv Full time

    Help shape the future of mobility. Imagine a world with zero vehicle accidents, zero vehicle emissions, and wireless vehicle connectivity all around us. Every day, we move closer to making that world a reality. Aptiv’s passionate team of engineers and developers creates advanced safety systems, high-performance electrification solutions and data...


  • Bengaluru, Karnataka, India Volvo Group Full time

    Transport is at the core of modern society. Imagine using your expertise to shape sustainable transport solutions for the future? If you seek to make a difference on a global scale, working with next-gen technologies and the sharpest collaborative teams, then we could be a perfect match. **Who we are and what we believe in** **Group Trucks Technology** are...


  • Bengaluru, India Scalene works Full time

    Description As Sr Principal Engineer, own and direct the cybersecurity design and analysis of multiple medical devices. Resolve difficult problems, from conception to final design with team input. Plan, lead, and deliver project assignments in the evaluation, selection and adaptation of various cybersecurity engineering techniques, procedures, and criteria...

  • Principal Architect

    3 months ago


    Bengaluru, India Palo Alto Networks Full time

    Company Description **At Palo Alto Networks® everything starts and ends with our mission**: Being the cybersecurity partner of choice, protecting our digital way of life. We have the vision of a world where each day is safer and more secure than the one before. These aren’t easy goals to accomplish - but we’re not here for easy. We’re here for better....

  • Principal Architect

    3 months ago


    Bengaluru, India Palo Alto Networks Full time

    Company Description **Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...


  • Bengaluru, India Dell International Services India Pvt Ltd (7451) Full time

    Cybersecurity Principal Software Engineer - IT The Software Engineering IT team delivers next-generation software application enhancements and new products for a changing world. Working at the cutting edge, we design and develop software for platforms, peripherals, applications and diagnostics — all with the most advanced technologies, tools, software...

  • Principal Architect

    4 months ago


    Bengaluru, Karnataka, India Palo Alto Networks Full time

    **Company Description** Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...


  • Bengaluru, India Palo Alto Networks Full time

    Company Description **Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...

  • Information Security

    4 months ago


    Bengaluru, Karnataka, India JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** As an experienced professional in our cybersecurity organization, you will find innovative new ways to protect our data. To do that, you’ll focus on analyzing, designing, developing and delivering solutions built to stop adversaries and strengthen our security posture. You’ll use your skills to help secure complex environments, guide...


  • Bengaluru, India Alp Consulting Ltd. Full time

    Job Titles: Senior Principal Cloud Security ArchitectExperience Level:13+ years in Cybersecurity5+ years in Cloud Security ArchitectureKeywords:Cloud Security ArchitectureCloud Security EngineeringAWS Security/Azure Security/GCP Security etcSecurity Reference ArchitecturesCloud Security Posture Management (CSPM)Cloud Workload Protection Platforms (CWPP)Cloud...


  • Bengaluru, India Alp Consulting Ltd. Full time

    Job Titles: Senior Principal Cloud Security ArchitectExperience Level:13+ years in Cybersecurity5+ years in Cloud Security ArchitectureKeywords:Cloud Security ArchitectureCloud Security EngineeringAWS Security/Azure Security/GCP Security etcSecurity Reference ArchitecturesCloud Security Posture Management (CSPM)Cloud Workload Protection Platforms (CWPP)Cloud...


  • Bengaluru, India NETSACH GLOBAL Full time

    Greetings from Netsach - A Cyber Security Company.Job Summary: We are looking for DevSec Cybersecurity Architect with strong Application Security experience, Cybersecurity (CISM or CISSP preferred), Experience with AI / ML /IoT & 2g /3g/4g/5g experience and DevOps. Cybersecurity Architect with Application Security experience. Job Title: DevSecOps...

  • Principal Architect

    2 weeks ago


    Bengaluru, India Multinational Company Full time

    Role: Principal Architect / Principal Solution ArchitectExperience: 13 to 18 YearsWork Location: Bangalore/PuneReports to: Business leaderWorking area: Middleware product developmentTechnical and domain skills: Must have hands on development experience in C++, LinuxMust have handled large development programs (with team size of 50+)Must have working...

  • Principal Architect

    3 months ago


    Bengaluru, India Fulfillment IQ Full time

    Role Title: Principal Architect Job Location: Bangalore Job Type: Full Time About Fulfillment IQ (FIQ) At Fulfillment IQ, we are revolutionizing the way companies approach supply chain and logistics. We are an award-winning supply chain tech company, specializing in providing solutions to D2C brands, retailers, and 3PLs. Our dedicated team of supply chain...

  • Principal Architect

    3 months ago


    Bengaluru, India Fulfillment IQ Full time

    Role Title: Principal Architect Job Location: Bangalore Job Type: Full Time About Fulfillment IQ (FIQ) At Fulfillment IQ, we are revolutionizing the way companies approach supply chain and logistics. We are an award-winning supply chain tech company, specializing in providing solutions to D2C brands, retailers, and 3PLs. Our dedicated team of supply chain...

Senior Principal Product Cybersecurity Architect

4 months ago


Bengaluru, India Johnson Controls Full time
What you will do
The future is being built today, and Johnson Controls is making that future more productive, more secure and more sustainable. We are harnessing the power of cloud, data analytics, the Internet of Things, and user design thinking to deliver on the promise of intelligent buildings and smart cities that connect communities in ways that make people’s lives – and the world – better.
In this career defining opportunity within the Global Product Security organization, you will drive continuous improvement initiatives aligned to our cybersecurity maturity framework and roadmap, ensuring proactive management of security and data privacy risk across the full lifecycle of our products, platforms, and service offerings. You will apply your expertise in secure software development practices to ensure security and privacy by design requirements are fulfilled and that products are released to market with strong cybersecurity as a core feature. In this role, you will play a pivotal role in managing cybersecurity risk, differentiating Johnson Controls, and enabling business success.
How you will do it
Provide cybersecurity expertise and guidance to product development teams, security champions, and business leaders throughout all phases of the software development life cycle.
Drive policy compliance and high quality for secure SDLC activities -- security requirements, security architectures, threat and attack models, supply chain security, code reviews, SAST, DAST, IAST, penetration testing, and security hardening.
Architect security and privacy by design and secure-by-default into software applications for mobile, embedded systems, and cloud.
Periodically assess security policies, standards, and metrics to drive improvements that help Johnson Controls adapt to evolving regulatory, customer, and threat environments.
Drive efforts to quantify residual product risk and identify appropriate security controls.
Drive efforts to advance innovative security features, capabilities, and practices.
Review product architectures for security design gaps and vulnerabilities and consult with product teams to remediate or mitigate cyber risk.
Assist coordination of third party penetration testing vendor engagements with product teams.
Help engineers and product managers identify solutions to meet cybersecurity requirements.
Help business unit leaders understand security risks and participate in project resource planning.
Maintain current knowledge of security threats and vulnerabilities that could impact products.
Support incident response operations, training, and exercises, including exploitation analysis and countermeasure testing.
Assist coordination and tracking of vulnerability remediation activities.
Raise security awareness and drive security training and certification for people and products.
Support periodic reporting to senior executive leadership on health and status of the product security program, cybersecurity risks, risk mitigations, and trends.
Use agile project management to manage resources and track milestones and deliverables.
Support company response to customer audits and inquiries pertaining to product security.
Support internal audits and assessments to identify risks and determine mitigation actions.
Identify cybersecurity opportunities that enhance the developer and customer experience.
Support product security committees, boards, councils and working groups.
Support cybersecurity risk and technology assessments.
Speak at customer-facing events and present at conferences.
What we look for
Technical and operational excellence, thought leadership, and integrative thinking.
Expert knowledge and practical product and software security experience, including secure SDLC practices, security and privacy by design architectures, and secure by default configurations.
Strong problem-solving skills to analyze cybersecurity issues and requirements (legal/regulatory, policy, customer, industry standards) and relate them to appropriate security controls.
Experience supporting software security governance and compliance activities, i.e. metrics, assessments, audits, exercises, risk frameworks, and maturity models.
Demonstrated ability to lead change initiatives that intelligently manage software cyber risks.
Proven ability to deliver results using agile methodologies and tools (e.g. Scrum/Kanban, Jira).
Understanding of Product Security Incident Response Team (PSIRT) processes and activities.
Understanding of agile software development and continuous integration/deployment.
Practical experience with Linux OS, programming and scripting languages (e.g. Java, Python, Perl), and security tools (e.g. Kali, Nessus, Netsparker, openVAS, BurpSuite, Metaspolit).
Understanding of embedded systems architectures (e.g. ARM, Cortex), embedded systems tools/emulators, RTOS/Linux, network protocols and programming languages (such as C/C++).
Understanding of penetration testing, reverse engineering, software attack vectors, fault injection, device fingerprinting, and tamper resistance.
Understanding TPM, Secure Boot, OTP, PKI, SPI/I2C bus analyzers, JTAG probing.
Knowledge of current security threats and techniques for exploiting software vulnerabilities.
Understanding of web and mobile application secure design principles such as OWASP.
Understanding of data protection, secure cloud, and network infrastructure design principles.
Familiarity with technology risk management related frameworks such as RMF, NIST 800-53, ISA/IEC 62443, UL CAP, ISO 27001, GDPR, CSL, CSA, SOC 2 and other comparable.
Experience with Operational Technologies (e.g. Controls Systems, Building Management) a plus.
Superior interpersonal, organizational, written/verbal communication, and presentation skills.
Ability to build trust with stakeholders and explain complex security topics to all audiences.
Active participation in hackathons, cybersecurity competitions, and exercises are a plus.
CSSLP, CISSP, CCSP, OSCP, CEH or related cybersecurity certifications.
Bachelors degree in Cybersecurity, Computer Science, Engineering, Information Systems, or related technical degree. Masters degree is preferred.
Minimum of 10 years of experience with at least 6 years in software or product cybersecurity.
Travel is occasional at approximately 10%, including international.