
Principal Product Cybersecurity Architect
1 day ago
**Job Details**
**What you will do**
The future is being built today, and Johnson Controls is making that future more productive, more secure and more sustainable. We are harnessing the power of cloud, data analytics, the Internet of Things, and user design thinking to deliver on the promise of intelligent buildings and smart cities that connect communities in ways that make people’s lives - and the world - better.
**How you will do it**
- Provide cybersecurity expertise and guidance to product development teams, security champions, and business leaders throughout all phases of the software development life cycle.
- Drive policy compliance and high quality for secure SDLC activities - security requirements, security architectures, threat and attack models, supply chain security, code reviews, SAST, DAST, IAST, penetration testing, and security hardening.
- Periodically assess security policies, standards, and metrics to drive improvements that help Johnson Controls adapt to evolving regulatory, customer, and threat environments.
- Drive efforts to quantify residual product risk and identify appropriate security controls.
- Drive efforts to advance innovative security features, capabilities, and practices.
- Review product architectures for security design gaps and vulnerabilities and consult with product teams to remediate or mitigate cyber risk.
- Assist coordination of third party penetration testing vendor engagements with product teams.
- Help engineers and product managers identify solutions to meet cybersecurity requirements.
- Help business unit leaders understand security risks and participate in project resource planning.
- Maintain current knowledge of security threats and vulnerabilities that could impact products.
- Support incident response operations, training, and exercises, including exploitation analysis and countermeasure testing.
- Assist coordination and tracking of vulnerability remediation activities.
- Raise security awareness and drive security training and certification for people and products.
- Support periodic reporting to senior executive leadership on health and status of the product security program, cybersecurity risks, risk mitigations, and trends.
- Use agile project management to manage resources and track milestones and deliverables.
- Support company response to customer audits and inquiries pertaining to product security.
- Support internal audits and assessments to identify risks and determine mitigation actions.
- Identify cybersecurity opportunities that enhance the developer and customer experience.
- Support product security committees, boards, councils and working groups.
- Support cybersecurity risk and technology assessments.
- Speak at customer-facing events and present at conferences.
**What we look for**
- Minimum of 8-12 years of experience with at least 6 years in software or product cybersecurity.
- Technical and operational excellence, thought leadership, and integrative thinking.
- Expert knowledge and practical product and software security experience, including secure SDLC practices, security and privacy by design architectures, and secure by default configurations.
- Strong problem-solving skills to analyze cybersecurity issues and requirements (legal/regulatory, policy, customer, industry standards) and relate them to appropriate security controls.
- Experience supporting software security governance and compliance activities, i.e. metrics, assessments, audits, exercises, risk frameworks, and maturity models.
- Demonstrated ability to lead change initiatives that intelligently manage software cyber risks.
- Proven ability to deliver results using agile methodologies and tools (e.g. Scrum/Kanban, Jira).
- Understanding of Product Security Incident Response Team (PSIRT) processes and activities.
- Understanding of agile software development and continuous integration/deployment.
- Practical experience with Linux OS, programming and scripting languages (e.g. Java, Python, Perl), and security tools (e.g. Kali, Nessus, Netsparker, openVAS, BurpSuite, Metaspolit).
- Understanding of embedded systems architectures (e.g. ARM, Cortex), embedded systems tools/emulators, RTOS/Linux, network protocols and programming languages (such as C/C++).
- Understanding of penetration testing, reverse engineering, software attack vectors, fault injection, device fingerprinting, and tamper resistance.
- Understanding TPM, Secure Boot, OTP, PKI, SPI/I2C bus analyzers, JTAG probing.
- Knowledge of current security threats and techniques for exploiting software vulnerabilities.
- Understanding of data protection, secure cloud, and network infrastructure design principles.
- Familiarity with technology risk management related frameworks such as RMF, NIST 800-53, ISA/IEC 62443, UL CAP, ISO 27001, GDPR, CSL, CSA, SOC 2 and other comparable.
- Experience with Operational Technologies (e.g. Controls Systems, Building Management) a plus.
- Superior interpersonal, organizationa
-
Principal Cybersecurity Architect
16 hours ago
Bengaluru, Chennai, Hyderabad, India Sutherland Full time ₹ 12,00,000 - ₹ 36,00,000 per yearPosition Summary:Job Description:The Principal Cybersecurity Architect & Security Engineering Leader is a senior technical leader responsible for shaping the companys cybersecurity architecture and engineering strategies to keep its cybersecurity posture at the leading edge. This role will oversee the Cybersecurity Engineering, Architecture,...
-
Principal Product Cybersecurity Architect
3 days ago
Bengaluru, Karnataka, India Johnson Controls International Full time**What you will do** The future is being built today, and Johnson Controls is making that future more productive, more secure and more sustainable. We are harnessing the power of cloud, data analytics, the Internet of Things, and user design thinking to deliver on the promise of intelligent buildings and smart cities that connect communities in ways that...
-
Principal Architect
2 weeks ago
Bengaluru, India Palo Alto Networks Full timeCompany Description **At Palo Alto Networks® everything starts and ends with our mission**: Being the cybersecurity partner of choice, protecting our digital way of life. We have the vision of a world where each day is safer and more secure than the one before. These aren’t easy goals to accomplish - but we’re not here for easy. We’re here for better....
-
Principal Architect
1 week ago
Bengaluru, India Palo Alto Networks Full timeCompany Description **Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...
-
Principal Architect
1 day ago
Bengaluru, Karnataka, India Palo Alto Networks Full time**Company Description** Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...
-
Senior Cybersecurity Architect
2 weeks ago
Bengaluru, Karnataka, India beBeeCybersecurity Full time ₹ 1,04,000 - ₹ 1,30,878Job Title: Senior Cybersecurity ArchitectJob DescriptionWe are seeking a highly experienced and skilled Senior Cybersecurity Architect to join our team. As a key member of our security team, you will be responsible for designing and implementing enterprise-wide cybersecurity solutions to protect our business from cyber threats.Our ideal candidate will have a...
-
Principal Architect
2 weeks ago
Bengaluru, India Palo Alto Networks Full timeCompany Description Our Mission: At Palo Alto Networks®, everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. We have the vision of a world where each day is safer and more secure than one before. These aren’t easy goals to accomplish - but we’re not here for easy. We’re here for...
-
Principal Architect
6 days ago
Bengaluru, India United Airlines Full timeAchieving our goals starts with supporting yours. Grow your career, access top-tier health and wellness benefits, build lasting connections with your team and our customers, and travel the world using our extensive route network. Come join us to create what's next. Let's define tomorrow, together. DescriptionUnited's Digital Technology team is comprised of...
-
Senior Cybersecurity Architect
2 weeks ago
Bengaluru, Karnataka, India beBeeCybersecurity Full time ₹ 1,00,00,000 - ₹ 2,00,00,000Job DescriptionCybersecurity solutions architects are sought after for their expertise in designing and implementing comprehensive security strategies. As a cybersecurity solutions architect, you will engage with clients to understand their security challenges and develop tailored solutions to address them.Key ResponsibilitiesDesign and implement...
-
Senior Lead Cybersecurity Architect
5 days ago
Bengaluru, India JPMorganChase Full timeJOB DESCRIPTION Play a vital role in shaping the future of an iconic company and make a direct impact in a dynamic environment designed for top achievers. As a Senior Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity & Tech Controls team, you are an integral part of a team that works to develop high-quality cybersecurity solutions for...