Product Security Analyst

15 hours ago


Bengaluru, Karnataka, India GE Healthcare Private Limited Full time ₹ 20,00,000 - ₹ 25,00,000 per year

Product Security Analyst

Job Description SummaryAs a Product Security Analyst, you will be collaborating with development teams to complete security testing and tool development for our GEHC products. You will be responsible for Performing VAPT for thick and thin clients, webservices, embedded devices and cloud. Conducting Compliance/Benchmark assessments using DISA Stigs/CIS Benchmarks .Review, Test and Suggest best practices for Cryptography, PKI (web and non-web perspective). Conducting Source code review and discuss with development teams in mitigating the issues and eliminating false positives.

GE Healthcare is a leading global medical technology and digital solutions innovator. Our mission is to improve lives in the moments that matter. Unlock your ambition, turn ideas into world-changing realities, and join an organization where every voice makes a difference, and every difference builds a healthier world. Job Description

Roles and Responsibilities

You are a skilled Analyst who enjoys security work and is an expert in systems security, product / OT security and application security.

In this role, you will:

  • Work with product managers, independent researchers, and in-house researchers to identify, rate, report and manage product vulnerabilities and incidents.

  • Be responsible for providing technical leadership and defining, developing, and evolving security within software in a fast-paced and agile development environment using the latest secure software development technologies and infrastructure.

  • Work with Cyber Security Leaders and SMEs to understand product requirements

  • Translate security requirements / vision into a prioritized list of user stories, completing work according to required timelines and quality standards

  • Assist security champions in completing Threat Modeling and Architecture Risk Analysis on product features

  • Perform Security Code Reviews, Vulnerability Analysis and research on application code

  • Coach and mentor developers to implement cryptography solutions securely (PKI, Code Signing, Stored Secrets, et cetera)


  • •Engage subject matter experts in successful transfer of complex domain knowledge

  • Apply principles of Secure SDLC and methodologies like Lean/Agile/XP, CI, Software and Product Security

  • Provide guidance and advice on writing secure code that meets standards and delivers desired functionality, using the technology selected for the project

  • Understand application security methodologies and frameworks

  • Leverage GE Digital's tailored Secure SDL practice into specific engineering engagements

  • Research new application security technologies and implement them to improve application security.

  • Maintaining a backlog of security-related tools that will improve the maintainability and security of our code and the pace of development

  • Promote best practices based on OWASP, SANS Top 25, and the GE Digital SDL.

  • Write fuzz scenarios to see the break network protocol suites such as TCP/IP, IPv6, UDP, TLS, DTLS

  • Ability to automate attack scenarios to avoid repetitive work.

  • Good to have experience in Bluetooth/Wifi or any radio based attacks.

  • Good to have experience in Rest API security testing and recommending best practices while opting for OAuth or OpenId connect

  • Having experience working on IoT platform will be beneficial.

Required Skills

  • Professional expertise with Kali Linux, Metasploit, Meterpreter.

  • Hands-on experience in Windows/Linux and network security.

  • Execute Scans using tools such as Nessus, Burp, Fortify/Coverity, Splunk etc.

Education Qualification

Bachelor's Degree in Computer Science or "STEM" Majors (Science, Technology, Engineering and Math) with a minimum of 2+ years of experience in systems security, product / OT security and application security.

Desired Characteristics

  • Certifications – OSCP, CCSP.

  • Languages – C/C++/Java/Python/Ruby

  • Proven experience in breaking the vulnerable boxes.

  • Adaptable to learn new skills or technologies as per business needs.

  • Detailed working knowledge of two modern programming languages, such as java, python, or ruby

  • Good written and oral communication skills and successful security consulting background.

  • Experience in developing secure applications

  • A high energy and a result-oriented attitude/approach, with an understanding of release timelines and the need to enable development teams, not slow them down

  • Experience with Security Development Lifecycle processes such as Threat Modeling desired

  • Contribute to and lead discussions and communications within the team and outside, including customers and other business units

  • Excellent knowledge of Object Oriented Analysis and Design, Software Design Patterns and coding principles

  • Hands-on Experience with developing cloud-deployed applications that utilize oath 2

  • Hands-on experience with developing RESTful web services

  • Mobile Architecture experience, designing, developing, and integrating solutions.

  • Good understanding of security tools and technologies to facilitate secure development

Inclusion and Diversity

GE Healthcare is an Equal Opportunity Employer where inclusion matters. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.

We expect all employees to live and breathe our behaviors: to act with humility and build trust; lead with transparency; deliver with focus, and drive ownership – always with unyielding integrity.

Our total rewards are designed to unlock your ambition by giving you the boost and flexibility you need to turn your ideas into world-changing realities. Our salary and benefits are everything you'd expect from an organization with global strength and scale, and you'll be surrounded by career opportunities in a culture that fosters care, collaboration and support.

#LI-AM11

#LI-Hyrbid

Additional Information

Relocation Assistance Provided: Yes



  • Bengaluru, Karnataka, India GE Healthcare Private Limited Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Sr Product Security Analyst Job Description SummaryWe are looking for an Sr Product Security Analyst, with a focus on Penetration testing and Python coding. In this role you will work in a team to identify, risk rate, communicate and track product vulnerabilities and be a part of the Cyber Security Lab team. GE Healthcare is a leading global...


  • Bengaluru, Karnataka, India GE Healthcare Private Limited Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Staff Product Security Analyst Job Description SummaryJob Description Summary The Product Security Engineer is a product team's cybersecurity focal point for secure product development and maintenance of released product. The Product Security Engineer is an experienced member of the product engineering team with influence to drive product privacy...


  • Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 5,00,000 - ₹ 8,00,000 per year

    About the team:The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate...


  • Bengaluru, Karnataka, India GE Healthcare Private Limited Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Staff Product Security Analyst Job Description SummaryResponsible for hunting, detecting and responding to digital security threats. Demonstrates technical leadership abilities and strong comprehension of malware, emerging threats and calculating risk. GE Healthcare is a leading global medical technology and digital solutions innovator. Our...

  • Security Analyst

    6 days ago


    Bengaluru, Karnataka, India Betsol Full time ₹ 5,00,000 - ₹ 12,00,000 per year

    Security Analyst Company Description BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average. BETSOL's open...


  • Bengaluru, Karnataka, India GE HealthCare Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description SummaryWe are looking for an Sr Product Security Analyst, with a focus on Penetration testing and Python coding. In this role you will work in a team to identify, risk rate, communicate and track product vulnerabilities and be a part of the Cyber Security Lab team. GE Healthcare is a leading global medical technology and digital solutions...

  • Security Analyst

    2 weeks ago


    Bengaluru, Karnataka, India Ringcentral Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    The Security Trust Analyst uses this understanding of security and sales enablement along with skills in program management to identify patterns and gaps in Security Trust operations. The Security Trust Analyst will work with the team in order to collaborate on planning, gather requirements, and monitor and deliver on trust operations.This will be an...


  • Bengaluru, Karnataka, India Infosys Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Cyber SecurityAzure, AWS, GCP, Sentinel, GRC, Threat Analyst, NIST, MITRE ATT&CK, SOC2, ISO27001, ISO27002, Identity, Access management, Security Engineering, Security Automation, Resiliency, DevSecOps, SSDLC, SDLC, Threat Modelling, Risk Assessor, Security Audit, zero trust, ZTNA, conditional access In this role, you will help architect, deploy security...


  • Bengaluru, Karnataka, India Betsol Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Senior Security Analyst Company Description BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average. BETSOL's...

  • Security Analyst

    2 weeks ago


    Bengaluru, Karnataka, India BETSOL Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Company Description BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average. BETSOL's open source backup and...