 
						Product Security Analyst
2 days ago
Staff Product Security Analyst
Job Description SummaryJob Description SummaryThe Product Security Engineer is a product team's cybersecurity focal point for secure product development and maintenance of released product. The Product Security Engineer is an experienced member of the product engineering team with influence to drive product privacy and cybersecurity features and enhancements. The Product Security Engineer must have deep product knowledge to ensure the clinical functionality, expected operating environment, and interoperability to accurately determine a product's privacy and security risks.
GE HealthCare is a leading global medical technology and digital solutions innovator. Our purpose is to create a world where healthcare has no limits. Unlock your ambition, turn ideas into world-changing realities, and join an organization where every voice makes a difference, and every difference builds a healthier world. Job Description
Essential Responsibilities:
GE Healthcare have devised a Design Engineering Privacy and Security Procedure to ensure compliance to the special cybersecurity needs of the Healthcare industry across the continuum of the Secure Development Life Cycle.
Roles and Responsibilities :
1. Provide privacy and security technical expertise in support of the product team throughout product development, design change, and life-cycle management.
2. Work with the Product Security Leader (PSL) to support the product team with process expertise for the GE HealthCare-GEHC Product Cybersecurity Standard and life-cycle management.
3. Product cybersecurity development responsibilities:
- Assess the privacy and cybersecurity state of the product and define product roadmap features/enhancements with stakeholder approval
- Responsible for security architecture and coordination of product development for cybersecurity features and enhancements
- Assess product components and SBoM integrated into the product
- Perform defect management for cybersecurity issues
- Identify operational responsibilities and adherence to cloud standards for cloud- based products
- Responsible for Product and Security Manual and MDS2 documentation
4. In coordination with the PSL, own and deliver GEHC Product Cybersecurity Standard artifacts, which includes:
- Design input activities to identify, evaluate, roadmap, and drive cybersecurity and privacy features and enhancements within product development programs
- Create Design Engineering Privacy and Security (DEPS) artifacts for privacy and security risk assessments to engage in domain-specific product threat modeling, attack surface analysis, risk management and reduction
- Coordinates with the PSL to support the product team in scheduling and performing vulnerability scans and cybersecurity assessments
- Lead product Security Technical Design Reviews
- Along with the product LSD, responsible for the GEHC Product Cybersecurity Standard compliance and other pertinent standards and process.
5. Stay current on healthcare privacy trends and regulatory environment (i.e. FDA, HIPAA, GDPR, etc…) to effectively communicate privacy awareness with the product team.
6. Works with the GEHC Product Security team and QARA on released product life-cycle, including:
- Participate in post-market product vulnerability monitoring
- Participate as an Subject Matter Expertise to determine product vulnerability impact, investigation, and risk assessment.
- Responsible for product vulnerability mitigation and design change.
- Responsible for GEHC vulnerability tool update to ensure accurate customer communication.
7. Address customer and Sales RFP privacy and security feedback/questions.
8. Provide technical expertise on customer concerns, complaints, and CSO escalations.
9. Create/Maintain responsible product records within GEHC product cybersecurity tools.
10. Active involvement in DoD RMF submission process and maintenance.
Educational Qualifications:
- Bachelor's Degree in a relevant field (e.g. Computer Engineering, Computer Science, Information Security) or in a STEM major (Science, Technology, Engineering, or Math)
- 3+ years of progressive experience as a development/cybersecurity engineer or scientist/researcher working with a cybersecurity skill set.
Desired Characteristics:
- Sound technical and domain experience in at least two cybersecurity functional technology areas.
- Technical assessment (system/web application vulnerability assessment, penetration testing, white-box code analysis, etc.) and security architecture (design of security controls, secure system design, understanding of identity and authentication management, etc.).
Inclusion and Diversity
GE Healthcare is an Equal Opportunity Employer where inclusion matters. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
We expect all employees to live and breathe our behaviors: to act with humility and build trust; lead with transparency; deliver with focus, and drive ownership – always with unyielding integrity.
Our total rewards are designed to unlock your ambition by giving you the boost and flexibility you need to turn your ideas into world-changing realities. Our salary and benefits are everything you'd expect from an organization with global strength and scale, and you'll be surrounded by career opportunities in a culture that fosters care, collaboration and support.
#LI-Hybrid
     #LI-MP2
Relocation Assistance Provided: Yes
- 
					  Product Security Analyst2 days ago 
 Bengaluru, Karnataka, India GE Healthcare Private Limited Full time ₹ 20,00,000 - ₹ 25,00,000 per yearSr Product Security Analyst Job Description SummaryWe are looking for an Sr Product Security Analyst, with a focus on Penetration testing and Python coding. In this role you will work in a team to identify, risk rate, communicate and track product vulnerabilities and be a part of the Cyber Security Lab team. GE Healthcare is a leading global... 
- 
					  Senior Information Security Analyst1 week ago 
 Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 5,00,000 - ₹ 8,00,000 per yearAbout the team:The Information Security (InfoSec) organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate... 
- 
					  Product Manager2 weeks ago 
 Bengaluru, Karnataka, India Menlo Security Full time ₹ 12,00,000 - ₹ 36,00,000 per yearMenlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense. The world has fundamentally changed. We are... 
- 
					Security Analyst2 days ago 
 Bengaluru, Karnataka, India Betsol Full time ₹ 5,00,000 - ₹ 12,00,000 per yearSecurity Analyst Company Description BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average. BETSOL's open... 
- 
					  Sr Product Security Analyst12 hours ago 
 Bengaluru, Karnataka, India GE HealthCare Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Description SummaryWe are looking for an Sr Product Security Analyst, with a focus on Penetration testing and Python coding. In this role you will work in a team to identify, risk rate, communicate and track product vulnerabilities and be a part of the Cyber Security Lab team. GE Healthcare is a leading global medical technology and digital solutions... 
- 
					Security Analyst1 week ago 
 Bengaluru, Karnataka, India Ringcentral Full time ₹ 9,00,000 - ₹ 12,00,000 per yearThe Security Trust Analyst uses this understanding of security and sales enablement along with skills in program management to identify patterns and gaps in Security Trust operations. The Security Trust Analyst will work with the team in order to collaborate on planning, gather requirements, and monitor and deliver on trust operations.This will be an... 
- 
					  Product Manager2 weeks ago 
 Bengaluru, Karnataka, India Menlo Security Inc. Full time ₹ 12,00,000 - ₹ 36,00,000 per yearMenlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense.The world has fundamentally changed. We are growing... 
- 
					Senior Security Analyst14 hours ago 
 Bengaluru, Karnataka, India Betsol Full time ₹ 12,00,000 - ₹ 36,00,000 per yearSenior Security Analyst Company Description BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average. BETSOL's... 
- 
					Security Analyst1 week ago 
 Bengaluru, Karnataka, India BETSOL Full time ₹ 9,00,000 - ₹ 12,00,000 per yearCompany Description BETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average. BETSOL's open source backup and... 
- 
					Security Analyst4 days ago 
 Bengaluru, Karnataka, India Betsol Full time ₹ 5,00,000 - ₹ 8,00,000 per yearCompany DescriptionBETSOL is a cloud-first digital transformation and data management company offering products and IT services to enterprises in over 40 countries. BETSOL team holds several engineering patents, is recognized with industry awards, and BETSOL maintains a net promoter score that is 2x the industry average. BETSOL's open source backup and...