Product & Solution Security Expert (Psse)

2 days ago


Bengaluru, India Siemens Full time

Role: Product & Solution Security Expert (PSSE)
The world never stands still. And new challenges arise every day. With a passion for questioning things, for supplying ideas, and intelligently driving things forward we are helping society move towards a more intelligent future. Be it with technologies that reduce carbon emissions in cities or hyperintelligent robots. This is how we are able, to tackle the most important projects and push them forward together. Help us shape the future.

With our innovative and integrated technology we support our customers in continuously improving the reliability, safety, and efficiency of products, processes and plants. Can you help us shape the future? We’re looking for dedicated people with the skills and vision to build a better tomorrow. Join team and help us create the technology that will transform entire industries, cities and even countries.

**Change the future with**

The Product & Solution Security Expert (PSSE) for Secure Implementation provides technical consultation to OT product development teams to enable implementation of the required product & solution security. The PSSE needs to have experience in the following areas: development/testing on the Linux and Windows environments. The PSSE will function as an expert consultant as part of the PSS CoE, supporting multiple project teams.

Support project development teams to incorporate appropriate security practices across the development lifecycle (from product / solution concept to release).

Risk Management & Compliance, review documents produced during the development and engineering process (e.g., threat and risk analysis results, requirements specs, arch & design specs, test specs, user documentation) regarding PSS.

Threat & Risk Analysis, identify security weaknesses and vulnerabilities in the product, solution, or service offering, analyze the threats that might exploit these weaknesses or vulnerabilities, and evaluate the resulting risks.

Organize & facilitate threat & risk analysis workshops in accordance with organizational processes (including periodic triggering of workshops based on changes to the product and/or changes to the attack surface).

Security Requirements, specify and maintain security requirements for the project. Support for meeting international and regional security standards (e.g., ISA/IEC 62443, GB 40050-2021) and regional regulations (e.g., Chinese Cybersecurity Law).

Evaluate third-party components regarding PSS and providing clearance of implementation and documentation of security critical components (e.g., cryptographic functions, hidden functions, firewall settings).

Perform code analysis to identify security vulnerabilities and check compliance with secure coding guidelines.

Perform verification of implementation regarding security requirements (e.g., as part of system test, factory, or site acceptance test). This includes recommendation and creation of security testing tools.

Support validation (e.g., friendly hacking, penetration testing) to ensure that implementation fulfills security expectations of customers (e.g., to identify security vulnerabilities, and to evaluate the effectiveness of remediation measures). This includes recommendation and creation of security testing tools.

Support project teams to analyze vulnerabilities for their risk, prioritize and suitably mitigate risks to the products

Support Product CERT incident handling teams (no direct responsibility)

Expertise enhancement, coaching & guiding

Develop & maintain procedures, guidelines & support tools for projects.

Conduct security training and development of training material.

Support the development of the PSS community within the organization, with experience exchange internally and externally.

Demonstrating security concepts by doing PoCs.

Interfacing with Product Management to support in creation of security requirements in product backlog.

**What you need to make real what matters**

We need a graduate - BE/BTech/MTech/MCA in Electronics/Instrumentation/Computer Science.

Overall experience of at least 10 years in Information technology/Software development.

At least 5 years’ experience in defining security controls & measures for IACS/SCADA.

Active IT security certifications (CISSP, CSSLP or equivalent).

Up-to-date knowledge on the threat landscape, including capabilities of attackers, available attacker tools, and typical security weaknesses & vulnerabilities.

Excellent understanding (conceptual and implementation) of Asset Management incl., Passive & Active Asset Detection and Asset Vulnerability Association.

Excellent understanding (conceptual and implementation) of Anomaly Detection (Host & Network) and configuration/implementation/operation of SIEM solutions.

Experience in programming (C, C++, Java, Spring, JavaScript) in Linux & Windows and scripting (e.g., bash scripts) and ready to learn new technologies (e.g., Go).

Experience on securing containers (esp. Debian



  • Bengaluru, India Siemens Full time

    Change the future with us We’re looking for forward-thinking, ambitious game-changers like you to be part of our cybersecurity team. This role is based in Bengaluru, India. Together let’s build groundbreaking security solutions and infrastructures that protect our data and the digital assets of our customers, teams impacting entire industries, cities,...


  • Bengaluru, India Siemens Digital Industries Software Full time

    Change the future with us We’re looking for forward-thinking, ambitious game-changers like you to be part of our cybersecurity team. This role is based in Bengaluru, India. Together let’s build groundbreaking security solutions and infrastructures that protect our data and the digital assets of our customers, teams impacting entire industries, cities,...


  • Bengaluru, India Siemens Healthineers Full time

    **Skills**:Graduate / Post Graduate in Computer Science / IT security or related fields. 6-10 years of IT experience and minimum 3 years' experience in IT Security. Demonstrated expertise in the following: - Developing products and services for customers - Security architecture and design - Threat and risk analysis / threat modeling / security risk...


  • Bengaluru, India Siemens Healthineers Full time

    **Skills**:Graduate / Post Graduate in Computer Science / IT security or related fields. 8-15 years of IT experience and minimum 4 years' experience in IT Security. Demonstrated expertise in the following: - Developing products and services for customers - Security architecture and design - Threat and risk analysis / threat modeling / security risk...

  • Cyber Security

    2 days ago


    Bengaluru, India Siemens Full time

    Smart infrastructure from Siemens makes the world a more connected and caring place - where resources are valued, where impact on the world is considered, where sustainable energy is delivered reliably and efficiently. It provides the flexible infrastructure to allow society to evolve and respond to changing conditions. Technology and the ingenuity of people...


  • Bengaluru, India Siemens Full time

    Role: Product and Solution Security Expert Siemens founded the new business unit Siemens Advanta (formerly known as Siemens IoT Services) on April 1, 2019 with its headquarter in Munich, Germany. It has been crafted to unlock the digital future of its clients by offering end-to-end support on their outstanding digitalization journey. Siemens Advanta is a...


  • Bengaluru, Karnataka, India SAP Full time

    **We help the world run better** At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and...


  • Bengaluru, Karnataka, India NetApp Full time

    **If you run toward knowledge and problem-solving, **join us**: **About NetApp** NetApp is the intelligent data infrastructure company, turning a world of disruption into opportunity for every customer. No matter the data type, workload or environment, we help our customers identify and realize new business possibilities. And it all starts with our people....

  • Product Innovation

    5 days ago


    Bengaluru, India Sony Full time

    Job Description Job description - Experienced HRIS professional - Proven expertise in Workday - Strong integration expertise, ideally with SnapLogic or similar integration platform - Understanding and experience of Enterprise/Solution architecture methodologies - Experience developing in Agile Methodology - Experience with enterprise integration tools -...

  • IT Security Expert

    3 hours ago


    Bengaluru, India Elektrobit Automotive Full time

    Bangalore **About Elektrobit**: - Elektrobit is an award-winning and visionary global vendor of embedded and connected software products and services for the automotive industry. A leader in automotive software with over 35 years of serving the industry, Elektrobit's software powers over five billion devices in more than 600 million vehicles and offers...