Product Security Engineer

Product Security Engineer Job Description Template

Our company is looking for a Product Security Engineer to join our team.

Responsibilities:

  • Customize/Build Windows Operating system for Medical use;
  • Design and Develop Robust and Secure Windows Operating System;
  • Good exposure in Troubleshooting Operating System issues;
  • Exposure in C++, C# coding and PowerShell Scripting;
  • Review and analysis of third party applications and device drivers for multiple MD platforms;
  • Expertise in Windows 10, Windows 7/ Windows Embedded Standard Operating Systems;
  • Exposure Vulnerable Scanner like Nessus, NMap, etc;
  • Train programmers on application security basics and best practices;
  • Work with development teams to find ways to integrate security testing into CI/CD pipeline;
  • Triage vulnerabilities from bug bounty and dynamic web scanning. Work with product owners on remediating the findings;
  • Provide support for product security commercial off-the-shelf (COTS) and in-house built applications;
  • Deploy/on-board application on product security tools;
  • Design and develop security testing to be used for improving the triage/validation process;
  • In-depth knowledge of AWS and other public and private cloud infrastructure for supporting and developing product security applications;
  • Provide remediation guidance and recommendations to programmers and administrators based on severity and impact on product.

Requirements:

  • Experience of working in agile development methodologies with understanding of several aspects of SW development processes;
  • Ambitious, performance oriented and able to work independently;
  • Good knowledge of Information Security standards, frameworks, and best practices for large corporate environments;
  • Knowledge of OS Building and customizing;
  • Ability to multitask and work on multiple projects;
  • 6+ years of relevant experience;
  • Four-year-degree (BE/BTech) in computer science, computer engineering, software engineering or equivalent;
  • Knowledge of cryptography technologies;
  • Operational mind-set with focus on deadlines, detail and quality oriented;
  • Proficient in Windows Operating Systems;
  • Flexible, willing to “go the extra mile” while at the same time being an agile and fast learner.