
Architect - Product Security
3 days ago
Minimum Required Experience : 10 years
Full Time
**Skills**:
- Cvss- Cyber Security- Security Architecture- Dast- Cryptography- Risk Analysis- Sast- Software Composition Analysis- White-Box Testing- Oauth 2.0- Vulnerability Assessments- Penetration Testing- Pki- Threat Modelling- Risk Mitigation- Owasp- FipsDescription
**Job Description - Product Security Architect**
**Experience Range & Quantity**
12+ YOE, 1 No
**Location Requirement**
Bangalore - Whitefield [Hybrid - at least 3 days a week]
**Fulfilment date**
ASAP
**Responsibilities**
- Provide privacy and security technical expertise supporting the product team throughout product development, design change, and life-cycle management.
- Work with the Product Security Leader (PSL) to support the product team with process expertise for Healthcare Product Cybersecurity Standards and life-cycle management.
- Product cybersecurity development responsibilities:
- Assess the privacy and cybersecurity state of the product and define product roadmap features/enhancements with stakeholder approval.
- Responsible for security architecture and coordination of product development for cybersecurity features and enhancements.
- Assess product components and SBoM are integrated into the product.
- Perform defect management for cybersecurity issues.
- Identify operational responsibilities and adherence to cloud standards for cloud-based products.
- Responsible for Product and Security Manual and MDS2 documentation.
- In coordination with the PSL, own and deliver Product Cybersecurity Standard artefacts, which include:
- Design input activities to identify, evaluate, roadmap, and drive cybersecurity and privacy features and enhancements within product development programs.
- Create Design Engineering Privacy and Security (DEPS) artefacts for privacy and security risk assessments to engage in domain-specific product threat modelling, attack surface analysis, risk management and reduction.
- Coordinates with the PSL to support the product team in scheduling and performing vulnerability scans and cybersecurity assessments.
- Lead product Security Technical Design Reviews
- Along with the product Lead System Designer (LSD), responsible for the Product Cybersecurity Standard compliance and other pertinent standards and processes.
- The released products shall comply with required regulatory standards & compliance (like FDA, HIPPA, GDPR etc.)
- Works with the Product Security team and Quality Assurance & Regulatory Assurance (QARA) on released product life cycle, including:
- Participate in post-market product vulnerability monitoring.
- Participate as a Subject Matter Expert to determine product vulnerability impact, investigation, and risk assessment.
- Responsible for product vulnerability mitigation and design change.
- Responsible for vulnerability tool updates to ensure accurate customer communication.
- Address customer and Sales RFP privacy and security feedback/questions.
- Provide technical expertise on customer concerns, complaints, and CSO escalations.
- Create/Maintain responsible product records within product cybersecurity tools.
**Mandatory Soft Skills**
- Should be able to contribute as an individual contributor
- Should be able to execute his/her responsibility independently
- Focus on self-planning activities
**Mandatory Skills**
- **Security Engineering**
- Globally recognized Cyber Security Certifications (Advanced/Expert Level).
- Firm with knowledge of OWASP, CVSS, FIPS 140-2/140-3 and DoD RMF
- The Architect shall be capable of not only finding risks/issues but shall also suggest the best route to remediation, knowing the compensatory controls & guiding the product team for its closure.
- Sound understanding of security technologies/techniques like
- Cryptography, Algorithms, Public key Infrastructure (PKI) Certificate Authority (CA),
- Hardware/embedded authentication, OAuth, 2-factor authentication, and
- white-box code analysis.
- Experience with a range of security tools related to
- SAST (Static Application Security Assessment),
- DAST (Dynamic Application Security Assessment),
- Vulnerability Management,
- SCA (Software Composition Analysis),
- Penetration Testing
- Threat Modelling Tools etc.
- **Product Engineering**
- Experience in working in a Product sector environment
- Knowledge of Cloud Infrastructure [Platform as a Service]
**Nice-to-have Skills**
- **Medical Software/Device Engineering**
- MDS2 documentation
- Experience in the Healthcare domain.
- **Standard Software Engineering**
- Experience in Micro Services using RESTful frameworks
- **Security Engineering**
- Penetration Testing in Web Applications, Thick Clients, Mobile Applications, REST/SOAP
- Infrastructure Penetration Testing
- Experience in Red Teaming Activities (add-on)
- Recognition for CVE or Wall-of-Fame through Bug-Bounty (add-on)
-
Chief Product Security Architect
5 days ago
Bengaluru, Karnataka, India beBeeRisk Full time ₹ 1,50,00,000 - ₹ 2,00,00,000Job Title: Chief Product Security Architect We are seeking an accomplished and experienced Chief Product Security Architect to lead our product security initiatives. This role will be responsible for designing, implementing, and maintaining the security framework of our products.Job Description:The Chief Product Security Architect will work closely with...
-
Staff Cloud Security Architect
2 days ago
Bengaluru, Karnataka, India Rubrik Security Cloud Full time**About the team**: The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security...
-
Architect Security
2 days ago
Bengaluru, Karnataka, India Empower Retirement Full timeOur vision for the future is based on the idea that transforming financial lives starts by giving our people the freedom to transform their own. We have a flexible work environment, and fluid career paths. We not only encourage but celebrate internal mobility. We also recognize the importance of purpose, well-being, and work-life balance. Within Empower and...
-
Security Architect
2 days ago
Bengaluru, Karnataka, India Merative Full timeJoin a team dedicated to supporting the crucial mission of improving health outcomes. As the Cybersecurity Architect and member of the Chief Information Security Officer (CISO) organization you will provide technical leadership in support of the security of the company’s products and infrastructure. You will provide cybersecurity guidance with knowledge...
-
Cyber Security Architect
5 days ago
Bengaluru, Karnataka, India GE HEALTHCARE Full time**Job Description Summary**: The Primary Care Ultrasound business develops traditional console as well as portable/handheld ultrasound equipment, that is both cost effective and elegant. Our mission is to enable clinicians to confidently assess patient conditions in diverse clinical environments, including at the point of care and in GP offices The Cyber...
-
Product Security Architect
3 weeks ago
Bengaluru, Karnataka, India NEST DIGITAL PRIVATE LIMITED Full timeJob Description - Product Security Architect- Providing privacy and security technical expertise supporting the product team throughout product development, design change, and life-cycle management.- Work with the Product Security Leader (PSL) to support the product team with process expertise for Healthcare Product Cybersecurity Standards and life-cycle...
-
Platform Solution Architect
2 days ago
Bengaluru, Karnataka, India Rubrik Security Cloud Full time**Platform Solution Architect** Job Overview As a Platform Solutions Architect, you will serve as a pre-sales specialist, supporting the broader sales organization with deep technical knowledge across database and cloud workloads. This means working with customers and prospects to educate them on how Rubrik protects and manages data. Additionally, the...
-
Architect, Security Enterprise
18 hours ago
Bengaluru, Karnataka, India AGCO Full time**Enterprise Security Architect** Do you want to help solve the world's most pressing challenges? Feeding the world's growing population and slowing climate change are two of the world's greatest challenges. AGCO is a part of the solution! Join us to make your contribution. **Your Impact** 1. The IT Security Architect provides detailed recommendations for...
-
Security Architect
4 days ago
Bengaluru, India Continental Full timeYour tasks Experience: Automotive Domain/Industry experience: Minimum 12-15 Years Security development/architect experience: Minimum 10 Years Skills Required: - The SP (Security and Privacy) Architect is responsible for defining the mechanisms and architecture that will help to ensure security of the product and the privacy of its users, based on the...
-
Product Architect-prime
3 days ago
Bengaluru, Karnataka, India Atlas Systems Full time**About us**: With offices in the US and India, **Atlas Systems** is a trusted partner helping companies on their digital transformation journeys - expanding their capabilities and delivering added value. Now in its 20th year, Atlas works closely with clients to provide solutions that seamlessly enhance in-house teams and systems, leveraging AI, Cloud, and...