Sr Product Security Analyst

3 days ago


Bangalore Karnataka, India GE Healthcare Full time

Summary We are looking for an Sr Product Security Analyst with a focus on Penetration testing and Python coding In this role you will work in a team to identify risk rate communicate and track product vulnerabilities and be a part of the Cyber Security Lab team GE Healthcare is a leading global medical technology and digital solutions innovator Our mission is to improve lives in the moments that matter Unlock your ambition turn ideas into world-changing realities and join an organization where every voice makes a difference and every difference builds a healthier world Roles and Responsibilities In this role you will Be able to scope and participate in hardware and software penetration tests vulnerability identification and vulnerability risk assessment Engage in application and domain-specific threat modeling and attack surface analysis reduction Engage in incident response methods lead incident response processes related to product cybersecurity Create and track meaningful metrics around product cyber risk and compensating controls Perform Security Code Reviews Vulnerability Analysis and research on application code Create vulnerability and incident trend analysis to improve product design Maintain cyber Bills of Material and conduct proactive vulnerability monitoring and assessment on cyber components Engage and administer End Of Life processes for digital products Promote best practices based on OWASP SANS Top 25 Write fuzz scenarios to see the break network protocol suites such as TCP IP IPv6 UDP TLS DTLS Ability to automate attack scenarios to avoid repetitive work Consult architect on security requirements and utilize best practices to meet them Help prepare reports at appropriate levels of confidentiality for stakeholders to view Respond promptly and in detail to customer-sponsored penetration tests Provide guidance on automated testing tools and techniques Required Skills Professional expertise with Kali Linux Metasploit Meterpreter Hands-on experience in Windows Linux and network security Execute Scans using tools such as Nessus Burp Fortify Coverity Splunk etc Education Qualification Bachelor s Degree in Computer Science or STEM Majors Science Technology Engineering and Math with a minimum of 5 years of experience in systems security product OT security and application security Technical Expertise Experience with cyber security framework NIST 800-53 ISO 27001 IEC 62443 etc implementation and governance Experience with secure coding principles code signing secure boot Experience with penetration testing and ethical hacking Knowledge of CI CD and automation tools Chef Git Jenkins Knowledge of Identity management and identity federation SAML Oauth SCIM XACML Experienced in developing web services SOAP REST Must be available for on call for potential security response Knowledge of application risk identification and evaluation techniques Knowledge of Cyber Security and full knowledge of multiple related engineering functions Experience securing applications within cloud platforms such as AWS Azure and alike Experience with broad set of information security technologies and processes within a SaaS IaaS PaaS or cloud environment Inclusion and Diversity GE Healthcare is an Equal Opportunity Employer where inclusion matters Employment decisions are made without regard to race color religion national or ethnic origin sex sexual orientation gender identity or expression age disability protected veteran status or other characteristics protected by law We expect all employees to live and breathe our behaviors to act with humility and build trust lead with transparency deliver with focus and drive ownership - always with unyielding integrity Our total rewards are designed to unlock your ambition by giving you the boost and flexibility you need to turn your ideas into world-changing realities Our salary and benefits are everything you d expect from an organization with global strength and scale and you ll be surrounded by career opportunities in a culture that fosters care collaboration and support LI-AM11 LI-Hybrid Additional Information Relocation Assistance Provided Yes



  • Bangalore, Karnataka, India GE Healthcare Full time

    Summary We are seeking enthusiastic and innovative developers to join our Cybersecurity R D team You ll be part of a dynamic group that builds cutting-edge security and privacy analysis tools powered by generative AI This role blends prompt engineering scripting and app development to create intelligent solutions that support penetration testing and threat...


  • Bangalore, India Skyhigh Security Full time

    About Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. Since 2011, organizations have trusted us to provide them with a complete, market-leading security platform built on a modern cloud stack....

  • Sr. It Security Risk

    4 weeks ago


    Bangalore, Karnataka, India Leading-Biotechnology-Company Full time

    About Leading-Biotechnology-Company ANSR a market leader in enabling organizations to build manage and scale global teams is partnering with a renowned biotechnology company who is redefining the future of human health by providing solutions to some of the most complex problems in the healthcare industry They are committed to making precision medicine...


  • Bangalore, Karnataka, India BD Full time

    Summary We are seeking a talented Product Security and Threat Analyst Engineer to join our Post-Market Vulnerability Team You will be at the forefront of our product security cybersecurity defense This role will focus on identifying analyzing and mitigating cyber threats and vulnerabilities affecting BD s medical products The successful candidate will...

  • Security Analyst

    1 week ago


    Bangalore, Karnataka, India Betsol Full time

    Company Description BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries BETSOL team holds several engineering patents is recognized with industry awards and BETSOL maintains a net promoter score that is 2x the industry average BETSOL s open source backup and recovery...


  • Bangalore, India Skyhigh Security Full time

    About Skyhigh Security: Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them with a...


  • bangalore, India Skyhigh Security Full time

    About Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world’s data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency. Since 2011, organizations have trusted us to provide them with a...


  • Bangalore, Karnataka, India GE Healthcare Full time

    Summary As a Product Security Analyst you will be collaborating with development teams to complete security testing and tool development for our GEHC products You will be responsible for Performing VAPT for thick and thin clients webservices embedded devices and cloud Conducting Compliance Benchmark assessments using DISA Stigs CIS Benchmarks Review Test and...


  • Bangalore, Karnataka, India Fiserv Full time

    Calling all innovators - find your future at Fiserv We re Fiserv a global leader in Fintech and payments and we move money and information in a way that moves the world We connect financial institutions corporations merchants and consumers to one another millions of times a day - quickly reliably and securely Any time you swipe your credit card pay through a...

  • Security Analyst 3

    3 weeks ago


    Bangalore, Karnataka, India ORACLE Full time

    Job Category Information Security Engineer Oracle is seeking a Security Operations Center SOC analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure Our team is skilled in threat hunting analyzing indicators of compromise IOCs investigating adverse security events security incident management and digital...