Senior Specialist I - Product Security & Privacy

2 Months ago • 7-12 Years • Product

Job Summary

Job Description

This role focuses on ensuring security and privacy are integrated into the product development lifecycle. The Senior Specialist will work with architects and engineering teams to review designs and specifications for security considerations. Responsibilities include performing security testing, analyzing applications for risks, and creating test cases. They will also guide development teams in fixing vulnerabilities and may involve experience with security automation and various testing tools and methodologies. This role ensures a secure software development lifecycle.
Must have:
  • Experience in Application Security Testing (7-12 years).
  • Understanding of common code review methods and standards.
  • Experience with static analysis tools.
  • Knowledge of standard Secure Development Life Cycle practices.
  • Experience with Kubernetes, Amazon Elastic Kubernetes Service (Amazon EKS) security testing is a plus.
  • Experience in tools like Burp Suite Pro, HP Webinspect/IBM Appscan/Acunetix and open source tools like burp, OWASP ZAP, CSRF tester etc, Burp Suite
  • Experience with Open Web Application Security Project (OWASP) standards, Open Source Security Testing Methodology Manual (OSSTMM) methodologies
  • Knowledge in cloud & Big data application security testing
Good to have:
  • Experience in Security automation framework development or scripting language is a plus.
  • Sufficient understanding or exposure to testing application on below technology will be helpful: REST API, Web Application, Kubernetes, Amazon Elastic Kubernetes Service (Amazon EKS), Encryption, Data storage for SQL, Oracle etc., AWS
  • Good to have CEH certification
  • Good to have source code review experience
  • Good to know Python coding and Security Automation

Job Details

Job Title

Senior Specialist I - Product Security & Privacy

Job Description

This role, embedded in to product development life cycle will ensure- Secured by Design, Privacy by Design and Threat modelling aspects are carried out as part of Secured Software Development Life Cycle. 

Individuals in this role will engage with Architects, Technical leads and R&D Engineering & Development teams to ensure the security and privacy considerations are considered well in advance during the product development cycle. They will review the High-level design, Low-level design and System specification documentation for security consideration and sign them off before the development happens.

They also collaborate with architects to arrive at appropriate security solutions balancing the security risks and the business impact.

This role, embedded in to product development life cycle will ensure- Secured by Design, Privacy by Design and Threat modelling aspects are carried out as part of Secured Software Development Life Cycle. 

Individuals in this role will engage with Architects, Technical leads and R&D Engineering & Development teams to ensure the security and privacy considerations are considered well in advance during the product development cycle. They will review the High-level design, Low-level design and System specification documentation for security consideration and sign them off before the development happens.

They also collaborate with architects to arrive at appropriate security solutions balancing the security risks and the business impact.

Specific job responsibilities include:

  • This is individual contributor role. As part of the larger Security and Privacy team, the Application Security Engineer.
  • Perform comprehensive Dynamic Application security Testing (DAST)
  • Understand and analyses the applications from security point of view.
  • Understand the application security risks and Threat modelling of applications.
  • Good to have source code review experience.
  • Create and execute the corresponding security test cases to verify that the mitigations are properly implemented in the application.
  • Able to guide and support development teams to fix the security vulnerabilities in the code.
  • Good to know Python coding and Security Automation .

Technical skills and experience:

  • Preferred Experience:

  • 7 - 12 years of work experience in Application Security Testing
  • Understanding and familiarity with common code review methods and standards.
  • Experience with static analysis tools (e.g., Git hub advance security, IBM Appscan Source, HP Fortify, Synopsys BlackDuck)
  • Experience in Security automation framework development or scripting language is a plus.
  • Knowledge of standard Secure Development Life Cycle practices.
  • Experience with Kubernetes, Amazon Elastic Kubernetes Service (Amazon EKS) security testing is a plus.
  • Research and pilot new services / technologies to support secure software development
  • Experience in tools like Burp Suite Pro, HP Webinspect/IBM Appscan/Acunetix and open source tools like burp, OWASP ZAP, CSRF tester etc, Burp Suite
  • Experience with Open Web Application Security Project (OWASP) standards, Open Source Security Testing Methodology Manual (OSSTMM) methodologies
  • Knowledge in cloud & Big data application security testing
  • Sufficient understanding or exposure to testing application on below technology will be helpful
    REST API
    Web Application
  • Kubernetes, Amazon Elastic Kubernetes Service (Amazon EKS)
    Encryption
    Data storage for SQL, Oracle etc.
    AWS

Education

• Bachelor  degree in technical stream required ( BE, ME, MS, MCA)

• Degree or concentration in Computer Science, Information Systems, Information Security or similar preferred.

Good to have CEH certification

#LI-PHILIN
#LI-Onsite
#LI-EU

Similar Jobs

Google - Software Engineer III, Engineering Productivity, Google Cloud Platforms

Google

Seattle, Washington, United States (On-Site)
2 Months ago
Scientific Games - Specialist Software Engineer - Oracle Finance Consultant

Scientific Games

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Nice - Social Media Manager

Nice

Ra'anana, Center District, Israel (Hybrid)
2 Weeks ago
Divensi - Senior Full Stack Developer

Divensi

Redmond, Washington, United States (On-Site)
7 Years ago
kaizen gaming  - Senior Data Quality Analyst

kaizen gaming

Athens, Greece (Hybrid)
2 Weeks ago
Brillio - Product Owner PDM Agentic AI

Brillio

Edison, New Jersey, United States (Remote)
3 Weeks ago
Scopely - Head of Product

Scopely

Spain (On-Site)
8 Months ago
Alpha Sense - Product Specialist, Corporate

Alpha Sense

United States (Remote)
1 Month ago
Zenoti - Product Specialist - Implementation/Onboarding

Zenoti

Hyderabad, Telangana, India (On-Site)
2 Weeks ago
velotio technologies  - Product Owner

velotio technologies

Pune, Maharashtra, India (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Beyond Sports - Sports Visualization Specialist

Beyond Sports

Alkmaar, North Holland, Netherlands (On-Site)
3 Months ago
Grab - Assistant Manager, Demand Planning - Ads & Marketing (Contract)

Grab

Pasig, Metro Manila, Philippines (On-Site)
1 Day ago
Meta - Research Scientist Intern, Smart Glasses in Wearables AI (PhD)

Meta

Menlo Park, California, United States (On-Site)
8 Months ago
FICO - Platform Success Partner

FICO

Brazil (Remote)
1 Year ago
Cubic corporation - Senior Software Engineer - MSD-F&O

Cubic corporation

Hyderabad, Telangana, India (On-Site)
1 Day ago
Keen Games - Data Analyst

Keen Games

Frankfurt Am Main, Hessen, Germany (Remote)
12 Months ago
PwC - Manager - Insurance Consulting (P&C Retail & Commercial)

PwC

Zürich, Zurich, Switzerland (On-Site)
9 Months ago
Salesforce - Program/Senior Program Architect - Industries/Pub Sec

Salesforce

Melbourne, Victoria, Australia (On-Site)
1 Month ago
Zelis  - Sr Training Specialist

Zelis

Hyderabad, Telangana, India (Hybrid)
1 Month ago
Mindtickle - Director Business Development

Mindtickle

Pune, Maharashtra, India (On-Site)
1 Day ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Eccentric - EA to CEO

Eccentric

Mumbai, Maharashtra, India (On-Site)
2 Months ago
Qualcomm - Program Manager - Chipset Software

Qualcomm

Hyderabad, Telangana, India (On-Site)
1 Month ago
Capgemini - Linux BSP development

Capgemini

Bengaluru, Karnataka, India (On-Site)
2 Months ago
FalconX - Trade Operations Manager

FalconX

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Bluevine India - Underwriter

Bluevine India

Bengaluru, Karnataka, India (Hybrid)
2 Weeks ago
Stem,  Inc  - Senior Controls Engineer

Stem, Inc

Gurugram, Haryana, India (On-Site)
2 Months ago
Single Store - Technical Account Manager

Single Store

Bengaluru, Karnataka, India (Remote)
3 Months ago
Capgemini - Backup Administration

Capgemini

Mumbai, Maharashtra, India (On-Site)
1 Month ago
Capgemini - CFD Engineer

Capgemini

Bengaluru, Karnataka, India (On-Site)
1 Month ago
undefined - Application Support Engineer

Mumbai, Maharashtra, India (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Product Jobs

Morning Star - Product Specialist

Morning Star

Mumbai, Maharashtra, India (Hybrid)
3 Weeks ago
Amanotes - Product Monetization Lead - For Hybrid Music Game

Amanotes

Ho Chi Minh City, Ho Chi Minh City, Vietnam (On-Site)
5 Months ago
CAE - Senior Product Specialist

CAE

New Delhi, Delhi, India (On-Site)
1 Month ago
Jane Street - Senior Strategy and Product Specialist

Jane Street

New York, United States (On-Site)
1 Day ago
Thousand Eyes - Director, Product, AI Networking

Thousand Eyes

San Francisco, California, United States (On-Site)
1 Month ago
LeoVegas - Junior Product Owner

LeoVegas

Stockholm, Stockholm County, Sweden (Hybrid)
1 Month ago
HCL Tech - Senior Product Support Lead

HCL Tech

Colorado, United States (On-Site)
1 Month ago
good job games - Product Specialist (New Grad)

good job games

İstanbul, Türkiye (On-Site)
9 Months ago
Dream Games - Product Specialist (New Grad)

Dream Games

İstanbul, Türkiye (On-Site)
1 Year ago
Nordson Corporation - Product Development Technician II

Nordson Corporation

Galway, County Galway, Ireland (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

About The Company

At Philips, we believe that every human matters. As a global health-tech leader, we focus on improving people’s health and wellbeing through meaningful innovation. The people who work here share our passion and are motivated to bring this purpose to life.For more than 130 years, we have been creating technologies and innovations that improve people's lives and support healthcare practitioners. Headquartered in the Netherlands and operating in more than 100 countries globally, we focus our advanced technology and deep clinical and consumer insights on Precision Diagnosis, Image Guided Therapy, Enterprise Informatics, Monitoring/ Connected Care, Sleep & Respiratory Care and Personal Health.Together, we deliver better care for more people because we believe that every human matters.

Mount Pleasant, Pennsylvania, United States (On-Site)

Cambridge, Massachusetts, United States (On-Site)

Panama City, Panamá Province, Panama (On-Site)

Batam, Riau Islands, Indonesia (On-Site)

Bothell, Washington, United States (On-Site)

Cambridge, Massachusetts, United States (On-Site)

Bothell, Washington, United States (On-Site)

Plymouth, Minnesota, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Philips

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug