Staff Product Security Representative

3 weeks ago


Bengaluru Karnataka, India GE HEALTHCARE Full time

**Job Description Summary**: Responsible for hunting, detecting and responding to digital security threats. Demonstrates technical leadership abilities and strong comprehension of malware, emerging threats and calculating risk.

GE HealthCare is a leading global medical technology and digital solutions innovator. Our purpose is to create a world where healthcare has no limits. Unlock your ambition, turn ideas into world-changing realities, and join an organization where every voice makes a difference, and every difference builds a healthier world.

**Summary**

The Product Security Engineer is a product team’s cybersecurity focal point for secure product development and maintenance of released product. The Product Security Engineer is an experienced member of the product engineering team with influence to drive product privacy and cybersecurity features and enhancements. The Product Security Engineer must have deep product knowledge to ensure the clinical functionality, expected operating environment, and interoperability to accurately determine a product’s privacy and security risks.
GE HealthCare is a leading global medical technology and digital solutions innovator. Our purpose is to create a world where healthcare has no limits. Unlock your ambition, turn ideas into world-changing realities, and join an organization where every voice makes a difference, and every difference builds a healthier world.

**Essential Responsibilities**:
GE Healthcare have devised a Design Engineering Privacy and Security Procedure to ensure compliance to the special cybersecurity needs of the Healthcare industry across the continuum of the Secure Development Life Cycle.

**Roles and Responsibilities**:
1.Provide privacy and security technical expertise in support of the product

team throughout product development, design change, and life-cycle

management.

2. Work with the Product Security Leader (PSL) to support the product team

with process expertise for the GE HealthCare-GEHC Product Cybersecurity

Standard and life-cycle management.

3.Product cybersecurity development responsibilities:

- Assess the privacy and cybersecurity state of the product and define product roadmap features/enhancements with stakeholder approval.
- Responsible for security architecture and coordination of product development for cybersecurity features and enhancements
- Assess product components and SBoM integrated into the product
- Perform defect management for cybersecurity issues
- Identify operational responsibilities and adherence to cloud standards for cloud
- based products.
- Responsible for Product and Security Manual and MDS2 documentation.

4. In coordination with the PSL, own and deliver GEHC Product Cybersecurity

Standard artifacts, which includes:

- Design input activities to identify, evaluate, roadmap, and drive cybersecurity and privacy features and enhancements within product development programs
- Create Design Engineering Privacy and Security (DEPS) artifacts for privacy and security risk assessments to engage in domain-specific product threat modeling, attack surface analysis, risk management and reduction
- Coordinates with the PSL to support the product team in scheduling and performing vulnerability scans and cybersecurity assessments
- Lead product Security Technical Design Reviews
- Along with the product LSD, responsible for the GEHC Product Cybersecurity Standard compliance and other pertinent standards and process.

5.Stay current on healthcare privacy trends and regulatory environment (i.e.

FDA, HIPAA, GDPR, etc ) to effectively communicate privacy awareness with

the product team.

6.Works with the GEHC Product Security team and QARA on

released product life-cycle, including:

- Participate in post-market product vulnerability monitoring
- Participate as an Subject Matter Expertise to determine product vulnerability impact, investigation, and risk assessment.
- Responsible for product vulnerability mitigation and design change.
- Responsible for GEHC vulnerability tool update to ensure accurate customer communication.

7.Address customer and Sales RFP privacy and security feedback/questions. 8. 8. Provide technical expertise on customer concerns, complaints, and CSO escalations.

9. Create/Maintain responsible product records within GEHC product cyberse

curity tools.

10.Active involvement in DoD RMF submission process and maintenance.

**Educational Qualifications**:

- Bachelor's Degree in a relevant field (e.g. Computer Engineering, Computer Science, Information Security) or in a STEM major (Science, Technology, Engineering, or Math)
- 3+ years of progressive experience as a development/cybersecurity engineer or scientist/researcher working with a cybersecurity skill set.

**Desired Characteristics**:

- Sound technical and domain experience in at least two cybersecurity functional technology areas.

**Inclusion and Diversity**

GE Healthcare is an Equal Opportunity Employer where inclusion matters.



  • Bengaluru, Karnataka, India Menlo Security Full time

    Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense. Menlo is well-funded for growth and our investors...


  • Bengaluru, India RSA Security Full time

    Responsibilities • Work on any number of security and identity related areas and products • Build systems for detecting anomalous activities within the product • Develops and administers software engineering procedures and training for vulnerability scans and static code analysis • Analyse vulnerability report of various SCA and SAST scan tools...


  • Bengaluru, India RSA Security Full time

    Responsibilities • Work on any number of security and identity related areas and products • Build systems for detecting anomalous activities within the product • Develops and administers software engineering procedures and training for vulnerability scans and static code analysis • Analyse vulnerability report of various SCA and SAST scan tools...


  • Bengaluru, Karnataka, India RSA Security Full time

    Responsibilities Work on any number of security and identity related areas and products Build systems for detecting anomalous activities within the product Develops and administers software engineering procedures and training for vulnerability scans and static code analysis Analyse vulnerability report of various SCA and SAST scan tools like, Black Duck,...


  • Bengaluru, Karnataka, India GE HEALTHCARE Full time

    **Job Description Summary**: Product Security Architect will be responsible for providing technical security leadership to global development teams for GEHC Life Care Solutions Digital products. In this role, you will be part of LCS Digital group focusing on advanced technology developments for Visualization, Tele health, IOT Connectivity and Edge solutions...


  • Bengaluru, Karnataka, India GE HEALTHCARE Full time

    **Job Description Summary**: GE HealthCare is seeking a seasoned Senior Cyber Security Engineer capable of developing cutting-edge cyber security detection solutions. This role will also be a driving force behind the adoption of new detection technologies based on behavioral analytics and machine learning. This position is responsible for leading the...


  • Bengaluru, Karnataka, India Menlo Security Full time

    Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense.Menlo is well-funded for growth and our investors...


  • Bengaluru, Karnataka, India Insight Global Full time

    Our client searching for a Staff Information Security Engineer in India. This position is hybrid friendly (WFH several days a week). We're looking for problem solvers, innovators, and dreamers who are searching for anything but business as usual. Like us, you're a high performer who's an expert at your craft, constantly challenging the status quo. You value...


  • Bengaluru, India Insight Global Full time

    Our client searching for a Staff Information Security Engineer in India. This position is hybrid friendly (WFH several days a week). We’re looking for problem solvers, innovators, and dreamers who are searching for anything but business as usual. Like us, you’re a high performer who’s an expert at your craft, constantly challenging the status quo. You...


  • Bengaluru, Karnataka, India Harness Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering...


  • Bengaluru, Karnataka, India Wells Fargo Full time

    **About this role**: Wells Fargo is seeking a Securities Operations Representative. **In this role, you will**: - Perform various operational tasks on complex securities that require general knowledge of unit functions and systems - Support securities operations - Identify ways to improve the overall process - Perform moderately complex duties such as...


  • Bengaluru, Karnataka, India Wells Fargo Full time

    **About this role**: Wells Fargo is seeking a Securities Operations Representative... **In this role, you will**: - Perform various operational tasks on complex securities that require general knowledge of unit functions and systems - Support securities operations - Identify ways to improve the overall process - Perform moderately complex duties such as...


  • Bengaluru, Karnataka, India Rippling Full time

    About RipplingRippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take...


  • Bengaluru, India Rippling Full time

    About RipplingRippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take...


  • Bengaluru, India Guidewire Full time

    Responsibilities:Proactively partner with teams across the organization (infrastructure, application engineering, data analytics, etc.) to define, promote and implement security best practices that improve the security posture of our infrastructure. Working closely with business units, product teams, DevOps engineers and/or SRE's to embed security...


  • Bengaluru, India Guidewire Full time

    Responsibilities:Proactively partner with teams across the organization (infrastructure, application engineering, data analytics, etc.) to define, promote and implement security best practices that improve the security posture of our infrastructure. Working closely with business units, product teams, DevOps engineers and/or SRE's to embed security...


  • Bengaluru, Karnataka, India Rippling Full time

    About Rippling Rippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform. By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take...


  • Bengaluru, Karnataka, India Wells Fargo Full time

    **About this role**: Wells Fargo is seeking a Securities Operations Representative. **In this role, you will**: - Perform various operational tasks on complex securities that require general knowledge of unit functions and systems - Support securities operations - Identify ways to improve the overall process - Perform moderately complex duties such as...


  • Bengaluru, Karnataka, India Wells Fargo Full time

    **About this role**: Wells Fargo is seeking a Securities Operations Representative. **In this role, you will**: - Perform various operational tasks on complex securities that require general knowledge of unit functions and systems - Support securities operations - Identify ways to improve the overall process - Perform moderately complex duties such as...


  • Bengaluru, Karnataka, India RSA Security Full time

    RSA - Commercial Sales Representative RSA provides trusted identity and access management for 12,000 organizations around the world, managing 25 million enterprise identities and providing secure, convenient access to millions of users. RSA specializes in empowering security-first organizations in financial services, healthcare, energy, technology...