Principal Product Security Engineer
19 hours ago
A Day in the Life
- Lead and perform product and device-oriented cybersecurity-related activities ranging from incident response to vulnerability assessments and mitigation implementation.
- Develop and perform product-level intrusion detection activities.
- Lead product risk assessments in conjunction with product R&D teams and develop and recommend specific security controls for product/system wide security needs.
- Participate in the creation and testing of product security-related requirements and processes.
- Manage security-related deliverables for regulatory bodies, ensuring compliance with key standards / guidance documents.
- Evaluate and test security risks on programs across the entire development lifecycle, including market-released products.
- Support emerging cybersecurity certification initiatives.
- Maintain and update security documentation.
- Create and maintain threat models using STRIDE.
Must Have: Minimum Requirements
- An undergraduate (bachelors) or graduate degree in computer science, computer engineering, electrical engineering, or similar discipline.
- CISSP or similar certification, or sufficient demonstrated experience
- Experience in embedded devices vulnerability assessment, especially medical devices and Threat Modelling and risk scoring
- Formal education in cybersecurity and information assurance.
- Minimum 12-year experience & 4 years of technical, cybersecurity-related experience,
- Experience in analyzing security posture and vulnerability assessment
- experience in penetration testing, fuzz testing of Web, enterprise cloud and Desktop solutions, (Black box, gray box and Whitebox testing)
- Experience in static code analysis for security vulnerability
- Software Product Development experience, Programming skills in one or more of the following: C, C++, Python, Java, .NET, Go, Ruby and/or Scala
- Understanding of national and international laws, regulations, and policies related to regulated medical device cybersecurity
- Demonstrated understanding of information security practices, risk management processes, cybersecurity principles, and incident response methodologies
Nice to Have:
- Experience as an analyst, engineer, developer, or architect with core cybersecurity responsibility and knowledge in two or more of the following areas:
- Experience in leading application architecture reviews and threat assessments
- Cloud systems architecture and security
- Enterprise and local network infrastructure security
- Experience in code reviews and/or penetration testing
- Large-scale application architecture and security
- Mobile device application architecture and security
- Risk assessments and cybersecurity regulatory requirements
- Experience in static and dynamic code analysis tools and methodologies
- Medical devices and systems security experience
- Security incident management experience
- Log event management and searching experience (Splunk, Sentinel, or similar)
- In-depth OS systems-level experience within one or more of the following: Linux, Windows, Android, iOS
- Demonstrated understanding of networking (ports/protocols), firewalls, load balancers and IPS
- Expertise in Agile and can work with at least one of the common frameworks
- Experience in Healthcare industry or other heavily regulated industry.
- Understanding of national and international laws, regulations, and policies related to regulated medical device cybersecurity
- Experience with container technologies such as Docker, Kubernetes, Mesos, or Open Container Initiative (OCI)
- Demonstrated ability to develop and grow productive, trusting, and open relationships with a wide variety of constituencies.
- Demonstrated leadership and teamwork skills
- Demonstrated ability to communicate complexity in a clear manner
- Demonstrated experience interfacing with customers and other external stakeholders regarding cybersecurity system design and behavior
- Demonstrated strong analytical, problem-solving skills
-
Principal Security Engineer
12 hours ago
Hyderabad, Telangana, India Highspot Full time ₹ 20,00,000 - ₹ 25,00,000 per yearAbout Highspot Highspot is a software product development company and a recognized global leader in the sales enablement category, leveraging cutting-edge AI and GenAI technologies at the core of its robust Software-as-a-Service (SaaS) platform. Highspot is revolutionizing how millions of individuals work worldwide. Through its AI-powered platform, Highspot...
-
Software Engineer
1 week ago
Hyderabad, Telangana, India Principal Global Services Full time ₹ 5,00,000 - ₹ 15,00,000 per yearResponsibilities Job Purpose Software Engineer is responsible for developing, testing and maintaining the application/s with established processes. With guidance, conduct analysis, elicit requirements, write correct and clean code leveraging best practices, DevOps, testing/debugging, documentation, quality assurance review, implementation and...
-
Principal AI Application Security Engineer
2 weeks ago
Hyderabad, Telangana, India Backbase Full time ₹ 12,00,000 - ₹ 36,00,000 per yearkeep millions of users and their banking data safe and secure.No day at Backbase is the same, and even more so for our security engineers. We all know that security and banking need to go hand in hand and with hackers and tech evolving by the day, you'll need to stay on your toes and ahead of the game.Your core responsibility is to ensure the delivery of...
-
Lead Info Security Engineer
1 week ago
Hyderabad, Telangana, India Principal Global Services Full time ₹ 20,00,000 - ₹ 25,00,000 per yearResponsibilitiesExperience in conducting manual Vulnerability Assessments & Penetration Testing of the following: Web Applications and APIs hosted in on-premises infrastructure. Web Applications and APIs hosted in cloud environment and using AWS services such as S3 bucket, EC2 instances, Lambda functions, API Gateway, SNS etc. Thick Client/ Desktop...
-
Senior Software Engineer
1 week ago
Hyderabad, Telangana, India Principal Global Services Full time ₹ 12,00,000 - ₹ 36,00,000 per yearResponsibilities Job Purpose Senior Software Engineer is responsible for developing, testing and maintaining the application/s with established processes by conducting analysis, eliciting requirements, assisting in design, writing correct and clean code leveraging best practices, contributing to DevOps practices, testing/debugging, working on documentation,...
-
Principal Security Operations Engineer
1 week ago
Hyderabad, Telangana, India Cubic Corporation Full time ₹ 12,00,000 - ₹ 36,00,000 per yearBusiness Unit:Cubic Transportation SystemsCompany Details:When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people's lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our...
-
Principal Site Reliability Engineer
4 days ago
Hyderabad, Telangana, India Oracle Full time ₹ 12,00,000 - ₹ 36,00,000 per yearOracle is seeking motivated Principal Site Reliability Engineer who thrives in a fast-paced rapidly evolving technology environment. This position requires wide and overall knowledge in Linux administration, AI technologies, software development, cloud computing, networking, cloud security, performance analysis and monitoring to provide the stability,...
-
Principal Software Engineer
17 hours ago
Hyderabad, Telangana, India Microsoft Full time ₹ 12,00,000 - ₹ 36,00,000 per yearSecurity represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified...
-
Principal Software Engineer
14 hours ago
Hyderabad, Telangana, India Microsoft Full time US$ 1,20,000 - US$ 2,00,000 per yearOur team utilizes collaborative efforts to create security solutions that proactively address and counteract cyber threats, ensuring safety across various platforms such as Windows, Linux, MacOS, Android, and iOS. We are looking for a Principal Software Engineer with a strong background in Linux internals to advance our MDE Linux solution. This position...
-
Principal Application Security Consultant
24 hours ago
Hyderabad, Telangana, India Prudent Globaltech Solutions Full time ₹ 12,00,000 - ₹ 24,00,000 per yearPrudent Technologies and Consulting is seeking an experienced Principal Application Security Engineer to lead our rapidly expanding web application penetration testing services. This senior-level position will play a critical role in advancing our offensive security capabilities, mentoring junior security consultants, and delivering high-value security...