Sr. Security Engineer, Product Security

7 Months ago • 8 Years + • Product Management

Job Summary

Job Description

The Sr. Security Engineer, Product Security will provide technical leadership to a team securing Xerox's digital platforms. Responsibilities include assessing applications for vulnerabilities, implementing secure SDLC processes, performing secure code reviews, developing security automation tools, defining security requirements, conducting security training, reporting on security metrics, researching industry trends, and acting as a security evangelist. This role requires strong application security expertise and collaboration skills.
Must have:
  • Assess applications for vulnerabilities
  • Implement secure SDLC processes
  • Secure code reviews/static analysis
  • Develop security automation tools
  • Threat modelling, security design reviews
  • Security training for development teams
  • Report on product security metrics
  • 8+ years cybersecurity experience, 5+ in product security
Good to have:
  • Java, .Net, C#, C, C++ experience
  • Prior software development experience

Job Details

About the job


About Xerox Holdings Corporation

For more than 100 years, Xerox has continually redefined the workplace experience. Harnessing our leadership position in office and production print technology, we’ve expanded into software and services to sustainably power today’s workforce. From the office to industrial environments, our differentiated business solutions and financial services are designed to make every day work better for clients — no matter where that work is being done. Today, Xerox scientists and engineers are continuing our legacy of innovation with disruptive technologies in digital transformation, augmented reality, robotic process automation, additive manufacturing, Industrial Internet of Things and cleantech. Learn more at www.xerox.com and explore our commitment to diversity and inclusion.

Summary:

This position is part of the Xerox Cyber Security team that is responsible for driving security of Xerox digital platforms. The qualified candidate will provide technical leadership to a multidisciplinary product security team that is responsible for securing enterprise systems, applications, and products across a broad spectrum of technologies. The candidate must demonstrate a passion for application security and lead by example that fosters continued growth and technical expertise within the team.

Responsibilities include, but are not limited to:

  • Assess applications and products for security vulnerabilities and design flaws
  • Implement secure SDLC processes through effective collaboration
  • Manual and Automated Secure Code Review
  • Development of security automation tools
  • Develop and maintain secure coding practices and security engineering standards for the development team
  • Perform threat modelling, security design reviews of application or products and define security requirements as part of SDLC process
  • Security training for internal development teams
  • Track and report on product security metrics and communicate the security posture of products to stakeholders.
  • Research, analyze and report on security industry trends and products
  • Serve as a security evangelist for executive management and business stakeholders.

Knowledge and Skills Required:

  • Strong understanding of common vulnerabilities, attack vectors and corresponding mitigation techniques
  • Experience in performing secure code reviews/reviewing results of static analysis tools
  • In-depth understanding of secure coding practices and secure development life cycle principles.
  • Good understanding of SSDLC as well as development and integration of tools used as part of CI/CD process
  • Have good understanding of authentication and authorization standards and protocols (SAML, Oauth, LDAP etc.)
  • Strong exposure to popular application security standards including OWASP TOP 10, SANS TOP 25 etc.
  • Proficiency with at least one of the following programming languages desired: Java, .Net, C#, C, C++
  • Prior software development experience is a plus.
  • Strong interpersonal skills as well as excellent written and verbal communication skills
  • Uncompromising personal and professional integrity and ethics

Education and Experience Required:

  • B.S in computer science, information systems, engineering or related field.
  • Advanced degree preferred, i.e. MBA or MS
  • Over 8 years of experience in cybersecurity, with at least 5 years in product security
  • One or more Industry-standard security certifications (such as OSCP, OSWE, CWEE, OSED)

Similar Jobs

Scopely - Principal Animator - Unannounced Project

Scopely

Barcelona, Catalonia, Spain (Hybrid)
4 Months ago
Hive - Senior game developer

Hive

Cairo, Cairo Governorate, Egypt (On-Site)
11 Months ago
Nexon - HR Business Partner

Nexon

El Segundo, California, United States (Hybrid)
2 Months ago
Boomi  - Presales Solutions Consultant – Commercial

Boomi

Sydney, New South Wales, Australia (On-Site)
11 Hours ago
NinjaVan - Customer Service Agent (Outbound)

NinjaVan

Subang Jaya, Selangor, Malaysia (On-Site)
1 Month ago
binance - Senior Product Manager, Web

binance

Taipei City, Taiwan (On-Site)
3 Months ago
Red star 3d - Senior Production Manager

Red star 3d

Sheffield, England, United Kingdom (Remote)
1 Month ago
Drive mode - Senior Product Manager (Backend)

Drive mode

Tokyo, Japan (Hybrid)
1 Week ago
2K - Localization Producer

2K

London, England, United Kingdom (Hybrid)
2 Months ago
AeroSpike - Principal Product Manager, Kubernetes

AeroSpike

Bengaluru, Karnataka, India (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Forescout Technologies  Inc  - Sr. Presales Systems Engineer

Forescout Technologies Inc

Texas, United States (On-Site)
1 Month ago
Liquid nitro games - IT Manager

Liquid nitro games

Hyderabad, Telangana, India (On-Site)
3 Months ago
Alpha Sense - Staff Generative AI Engineer

Alpha Sense

New York, United States (On-Site)
1 Month ago
Zinnia - Finance Specialist

Zinnia

Topeka, Kansas, United States (Hybrid)
1 Month ago
Unity - Client Partner, Ad Monetization

Unity

San Francisco, California, United States (On-Site)
2 Months ago
Scopely - Senior Motion Graphics Designer

Scopely

Bengaluru, Karnataka, India (Hybrid)
7 Months ago
USE Insider - Sales Development Representative - Germany (Fresh Graduate)

USE Insider

Berlin, Berlin, Germany (Hybrid)
4 Months ago
Dexerto - Junior Public Relations and Corporate Communications Manager

Dexerto

Argentina (Remote)
2 Months ago
Tesla - Governance Risk and Compliance Systems Analyst

Tesla

Geneva, Geneva, Switzerland (On-Site)
4 Months ago
Dream Sports - Senior Product Designer

Dream Sports

Mumbai, Maharashtra, India (On-Site)
4 Days ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

undefined - Engineering Services Practitioner

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Zenoti - Gainsight Administrator

Zenoti

Hyderabad, Telangana, India (On-Site)
2 Months ago
Spaulding Ridge - Senior Data Engineer/Data Architect

Spaulding Ridge

Jaipur, Rajasthan, India (On-Site)
2 Months ago
PwC - Senior Associate_SAP BASIS Enterprise APP SAP _ Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
9 Months ago
T systems - Nexthink Analyst

T systems

Pune, Maharashtra, India (Hybrid)
1 Month ago
Capgemini - Tibco

Capgemini

Bengaluru, Karnataka, India (On-Site)
2 Months ago
PhonePe - Associate Manager, Litigation

PhonePe

Bengaluru, Karnataka, India (On-Site)
12 Hours ago
amazon  - Software Dev Engineer I, Amazon University Talent Acquisition

amazon

Bengaluru, Karnataka, India (On-Site)
2 Months ago
PwC - Senior Associate - Hyderabad-Salarpuria - Technology Consulting

PwC

Hyderabad, Telangana, India (On-Site)
9 Months ago
London stock Exchange - Senior Quality Engineer

London stock Exchange

Bengaluru, Karnataka, India (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Product Management Jobs

Flow - Senior Product Manager - Consumer

Flow

New York, New York, United States (On-Site)
2 Months ago
undefined - DevOps Production Team Leader

Tel Aviv-Yafo, Tel Aviv District, Israel (Hybrid)
1 Month ago
Wolters Kluwer - Production Specialist

Wolters Kluwer

Pune, Maharashtra, India (Hybrid)
1 Month ago
Room 8 Group - Tech Production Management Director

Room 8 Group

(Remote)
2 Months ago
Trackman - Product Manager - Stadium (Baseball/Softball)

Trackman

Stamford, Connecticut, United States (On-Site)
1 Month ago
Illumina - Senior Product Security Engineer

Illumina

Singapore (On-Site)
1 Year ago
Ansys - Senior Product Marketing Manager - MBSE F/M

Ansys

Madrid, Community Of Madrid, Spain (On-Site)
3 Weeks ago
Monzo - Senior Product Manager

Monzo

Cardiff, Wales, United Kingdom (Remote)
12 Hours ago
Power Integrations - Senior Product Engineer

Power Integrations

Penang, Malaysia (On-Site)
1 Year ago

Get notifed when new similar jobs are uploaded