Talent.com
This job offer is not available in your country.
Senior Security Engineer - IOT

Senior Security Engineer - IOT

Arrow ElectronicsPune, Maharashtra, India
16 hours ago
Job description

Description

Experience :

2–6 years of relevant experience in system security, embedded systems, and vulnerability assessments.

Key Skills :

Firmware Analysis Tools :

Expertise in using firmware analysis tools such as Ghidra , Binwalk , and Radare2 for static and dynamic analysis of firmware images.

Embedded Linux Platforms :

In-depth knowledge of embedded Linux , Yocto , and OpenWRT platforms for secure firmware and OS testing.

Secure Boot & Firmware Update Mechanisms :

Proficiency in testing secure boot processes and firmware update mechanisms, ensuring integrity and authenticity.

OS Hardening & Security Configurations :

Strong understanding of OS hardening techniques and security configurations to mitigate threats and enhance system integrity.

Vulnerability Assessment & CVE Analysis :

Extensive experience with vulnerability assessment frameworks and CVE analysis , identifying and addressing security vulnerabilities in embedded systems.

Debugging & Emulation Tools :

Proficient in using debugging tools and emulators such as QEMU to analyze embedded system behavior.

SBOM & Secure Update Protocols :

Familiarity with SBOM (Software Bill of Materials) , patch management, and secure update protocols to ensure safe software deployments.

Firmware Reverse Engineering :

Expertise in performing reverse engineering of firmware images to detect vulnerabilities and potential exploits.

Penetration Testing Frameworks :

Experience using penetration testing frameworks like Metasploit , Kali Linux , and custom tools for system vulnerability testing.

Custom Test Case Development :

Ability to develop and execute custom test cases to simulate real-world attack scenarios and identify potential risks in embedded systems.

Leadership & Mentoring :

Strong leadership skills with a proven track record of mentoring junior engineers and guiding teams in advanced security testing methodologies.

Technical Writing & Reporting :

Excellent technical writing skills , including the ability to produce clear, concise, and detailed reports on security findings and risk assessments.

Proactive Security Risk Mitigation :

Proactive in identifying and mitigating security risks within embedded systems, ensuring the implementation of security best practices.

Responsibilities :

Leadership in Security Testing :

Lead system-level Vulnerability Assessment and Penetration Testing (VAPT) for firmware, operating systems, and embedded software, ensuring thorough security evaluations.

Test Plan Development & Execution :

Develop and implement comprehensive test plans for secure update and patch validation , ensuring security fixes are applied correctly and without introducing new risks.

Firmware Static & Dynamic Analysis :

Conduct detailed static and dynamic analysis of firmware images using tools like Ghidra , Binwalk , and Radare2 to identify potential vulnerabilities.

Secure Boot & Root of Trust Validation :

Validate secure boot implementations and hardware root of trust to ensure system integrity and protection from malicious code injection.

OS Hardening & Access Control Testing :

Test OS hardening configurations and secure access control mechanisms to strengthen system defenses against unauthorized access and exploitation.

Vulnerability Identification & Classification :

Identify and classify vulnerabilities and misconfigurations in embedded systems, following industry standards such as CVSS for risk assessment and remediation prioritization.

Collaboration with Compliance & Engineering :

Work closely with compliance and engineering teams to prioritize remediation efforts, ensuring that vulnerabilities are addressed effectively.

Custom Attack Simulations :

Develop and execute custom test cases to simulate real-world attack scenarios and evaluate the system's resilience against cyber threats.

Rollback & Patch Management Testing :

Oversee testing of rollback and patch management procedures, ensuring that system updates do not compromise security or functionality.

Mentoring & Knowledge Sharing :

Mentor junior engineers in security testing methodologies, sharing knowledge on advanced techniques and tools for improving system security testing processes.

CVE Monitoring & Testing Updates :

Monitor relevant CVE feeds , integrating new vulnerabilities and security patches into testing procedures to ensure up-to-date protection.

Reporting & Risk Assessments :

Provide detailed technical reports and risk assessments to stakeholders, outlining identified vulnerabilities, potential impact, and recommended mitigations.

Regulatory Compliance :

Ensure that all testing activities align with industry standards , including RED 18031 compliance, and adhere to relevant regulatory frameworks.

Secure Lab Environment Maintenance :

Maintain a secure lab environment for all system testing activities, ensuring that testing procedures are conducted in a controlled and isolated setting.

Qualifications & Certifications :

Education :

Bachelor's or Master’s degree in Cybersecurity , Embedded Systems , Computer Engineering , or a related field.

Certifications (Preferred) :

OSCP (Offensive Security Certified Professional)

OSCE (Offensive Security Certified Expert)

GXPN (GIAC Exploit Researcher and Advanced Penetration Tester)

Equivalent certifications in ethical hacking , penetration testing , or embedded system security are also highly valued.

Industry Standards Familiarity :

Familiarity with security frameworks such as ISO / IEC 62443 , RED 18031 , and IoT security frameworks.

Why Join Us?

Opportunity to work with cutting-edge automation technologies in a collaborative and innovative environment.

Competitive salary and benefits package.

Career growth opportunities in a fast-paced and dynamic industry.

A strong focus on work-life balance and employee well-being.

Location :

IN-GJ-Ahmedabad, India-Ognaj (eInfochips)

Time Type : Full time

Job Category : Engineering Services

Create a job alert for this search

Senior Security Engineer • Pune, Maharashtra, India

Related jobs
  • Promoted
Senior Engineer - OT Security

Senior Engineer - OT Security

Network IntelligencePune, Maharashtra, India
Experience with ICS systems and ICS security industry practices with exposure to Operational technologies.Minimum 3 years with supporting PLC, DCS, SIS, HMI or SCADA systems.Experience supporting a...Show moreLast updated: 18 days ago
  • Promoted
Senior Auth0 CIAM Engineer

Senior Auth0 CIAM Engineer

IntraEdgePune, Maharashtra, India
Customer Identity and Access Management (CIAM).This role is critical in securing customer access across our global B2B and B2C applications. You will work closely with cross-functional teams, includ...Show moreLast updated: 3 days ago
  • Promoted
Senior Security Consultant

Senior Security Consultant

Claranet Indiapune, maharashtra, in
Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 26 days ago
  • Promoted
Emerson - Cyber Security Engineer - OT Security

Emerson - Cyber Security Engineer - OT Security

Emerson (Emerson)(2252)Pune
Job Summary : - During job orientation program, you will undergo Comprehensive Training Program (includes E-learning, Classroom & On-Job) that support Emerson bus...Show moreLast updated: 29 days ago
  • Promoted
Security Engineer - Vulnerability Management Tools

Security Engineer - Vulnerability Management Tools

Worldline Global ServicePune
Consultant-Security Engineer About Worldline : Worldline helps businesses of all shapes and sizes to accelerate their growth journey q...Show moreLast updated: 24 days ago
  • Promoted
Senior Security Engineer

Senior Security Engineer

CohesityPune, Maharashtra, India
We are seeking a highly skilled Senior Security Engineer with strong expertise in Endpoint Detection & Response (EDR / XDR) tools (e. CrowdStrike Falcon), Security Information and Event Management (SI...Show moreLast updated: 22 days ago
  • Promoted
Security Engineer

Security Engineer

Persistent SystemsPune, Maharashtra, India
We are seeking a highly skilled Security Engineer with a primary focus on penetration testing and offensive security to join our team. The ideal candidate will have a strong background in ethical ha...Show moreLast updated: 25 days ago
  • Promoted
Hardware Security

Hardware Security

SPIROPune, Maharashtra, India
SPIRO is a Time 100 Influential Company 2024.Our mission is to accelerate the access of affordable, clean energy technology in the mobility sector through excellent customer service and continued a...Show moreLast updated: 18 days ago
  • Promoted
Qualys - Senior Security Engineer

Qualys - Senior Security Engineer

QUALYS SECURITY TECHSERVICES PRIVATE LIMITEDPune
Job Description : As a Cloud Security QA Engineer, you will be part of an engineering team responsible for researching, developing, and delivering compliance signatu...Show moreLast updated: 30+ days ago
  • Promoted
Critical Start - Security Engineer III

Critical Start - Security Engineer III

Critical Start Technologies Private LimitedPune
Who We Are : At Critical Start, were on a mission to make everyone a valued member of a winning team, united by an inspiring purpose : sha...Show moreLast updated: 20 days ago
  • Promoted
Emerson - Lead Product Security Engineer - VAPT

Emerson - Lead Product Security Engineer - VAPT

Emerson (Emerson)(2252)Pune
Job Description : In This Role, Your Responsibilities Will Be : - Review and govern the overall security architecture of t...Show moreLast updated: 30+ days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

interface.aiPune, IN
Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

Futurism Technologies, INC.Pune, Maharashtra, India
Rotational Shift (5 Days Working).We are seeking a highly skilled and experienced Azure Sentinel SIEM & XDR Implementation & configuration Engineer to join our team. In this role, you will be respon...Show moreLast updated: 22 days ago
  • Promoted
Senior Director Engineering - Cyber Security Startup - Pune - CTC INR 1 Cr

Senior Director Engineering - Cyber Security Startup - Pune - CTC INR 1 Cr

CareerXperts Consultingpune, maharashtra, in
As Director of Engineering, you will lead the technical direction and execution of our engineering organization.You will be directly involved in system design, architecture.You will work with senio...Show moreLast updated: 3 days ago
  • Promoted
Qualys - Security Signature Engineer - Information Security

Qualys - Security Signature Engineer - Information Security

QUALYS SECURITY TECHSERVICES PRIVATE LIMITEDPune
About the job : Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Come work a...Show moreLast updated: 25 days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

ArcanaPune, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
  • Promoted
Senior DevOps Security Engineer

Senior DevOps Security Engineer

JRD SystemsPune, IN
We are seeking a highly skilled Senior DevOps / Platform Engineer to join our dynamic team.The ideal candidate will have extensive experience in managing and automating infrastructure, improving depl...Show moreLast updated: 8 days ago
  • Promoted
Security Engineer (Remote)

Security Engineer (Remote)

DigiHelic Solutions Pvt. Ltd.pune, maharashtra, in
Remote
We are looking for a proactive and experienced.In this role, you will design, implement, and maintain.The ideal candidate will have deep. Monitor cloud environments for.AWS-native and third-party to...Show moreLast updated: 3 days ago
  • Promoted
Urbint - Application Security Engineer II

Urbint - Application Security Engineer II

UrbintPune
Job Summary : We are seeking an Application Security Engineer-II to help embed security within Urbints software developm...Show moreLast updated: 30+ days ago
  • Promoted
Principal Security Engineer - SIEM

Principal Security Engineer - SIEM

Cornerstone OnDemand Services India Pvt LtdPune
Principal Security Engineer India Cybersecurity Engineering : The Principal Security Engineer is a hands-on role that blends cloud security engineering with securit...Show moreLast updated: 29 days ago