As a Senior Lead Product Security Engineer, you will be responsible for :
- Building and executing engineering processes for early detection of design flaws, vulnerabilities, weaknesses, missing security controls, and secure implementation of product features.
- Applying existing technologies, approaches, methodologies in new combinations to design new products, systems, or processes. Viewed internally and externally as a specialist in the discipline.
- Presenting plans, technical roadmaps, risks and recommendations to senior business and technical leaders
- Lead programs related to Product Security Incident Response, Product Inventory, etc
- Driving awareness, engagement, and improvements of Product Security metrics with business leaders
- Demonstrating working knowledge of systems and products and how they are secured in a customer environment.
- Implementing tools to automate and scale security processes.
- Providing security leadership to the business segment product security teams
- Experiencing with cyber security framework (NIST 800-53, ISO 27001, IEC 62443, etc.) implementation and governance
- Familiarity with cyber regulations (EU NIS2, CRA, etc)
Fuel your passion
To be successful in this role you will :
Have a bachelor s degree in computer science or STEM Majors (Science, Technology, Engineering, and Math).Have a minimum of 10 years of professional experience in a STEM-related degree preferably with a Product Security / OT Security focus.Have project management experience, and expertise with Agile development teams.Have prior work experience with various development tools including threat modelling, vulnerability technologies, application security, and secure coding principles.Have experience with penetration testing and ethical hacking.Have experience securing applications within cloud platforms such as AWS, Azure, and alike.Have experience with a broad set of information security technologies and processes within a SaaS, IaaS, PaaS, or cloud environment.Skills Required
Coding, Iso 27001, Security Analyst, Project Management, Penetration Testing, Application Security