Product Cybersecurity Engineer
50元以上
上海
應(yīng)屆畢業(yè)生
本科
上海
應(yīng)屆畢業(yè)生
本科
- 全勤獎(jiǎng)
- 節(jié)日福利
- 不加班
- 周末雙休
職位描述
該職位信息待核驗(yàn),請(qǐng)仔細(xì)了解后再進(jìn)行投遞!
Position Summary
We are seeking a highly skilled and motivated Product Cybersecurity Engineer to join our dynamic team. The successful candidate will be responsible for ensuring the security of our embedded systems, ICS, and associated cloud services. The engineer will contribute to development and implementation of global policies, tools, and practices and have a focus on supporting business units located in the Asia-Pacific region.
An individual with a diverse IT/OT background, the Product Security Engineer will work across ICS/OT/embedded technologies and IT/cloud technologies. The engineer must understand a range of disciplines, from embedded software, base operating or firmware systems and middleware services to APIs, application security, and cloud services.
Product security engineers must also focus on secure development practices, threat modeling, vulnerability management, architecture, and application security design. The engineer focuses on using secure-by-design and security-*** principles to reduce product vulnerabilities.
Essential Job Duties
Security Reviews and Risk Assessment:
61 Lead product and application security reviews, threat / risk / vulnerability analyses, investigations of security-related incidents, and assessment of the security level based on meaningful metrics.
61 Document security findings, outline remediation options, and oversee mitigation.
Security Design, Implementation, and Testing:
61 Evaluation, specification, implementation, introduction, and maintenance of cybersecurity-oriented development, engineering, and testing tools.
61 Actively engage with product development teams to facilitate secure product design addressing security requirements for new and existing products.
61 Translate cybersecurity governance policies and controls into customized implementation measures, helping to develop and implement security architectures and solutions for embedded systems, ICS, and cloud services.
Establish Product Cybersecurity Framework
61 Evaluate the existing product ecosystem and propose product changes to security leadership and engineering.
61 Facilitate or run internal education and training sessions, with a focus on product security principles.
Skills and Experience
61 Proficiency in both English and Standard Chinese (Mandarin) for effective communication and translation.
61 Highly technical and analytical experience, with a proven deep background in software engineering.
61 Experience with a combination of one or more in embedded software, ICS and OT technology, public cloud providers (AWS, Azure, GCP) and IoT service architectures and cybersecurity aspects of it.
61 Experience with development and testing cybersecurity tools such as SAST/ DAST.
61 Knowledge of international or national standards and regulations for IT/OT Security Standards, Legal issues
61 Experiences in risk-based methodologies and approaches (e.g. Threat and Risk Analysis)
Education Requirements
61 Bachelor’s degree preferred in information assurance, computer science, engineering, or related field.
Experience Requirements
61 Five-plus years of professional experience with a combination of one or more in secure product development, application security and engineering or secure development lifecycle.
Certification Requirements
61 Preferably one or more SANS certifications (GWAPT, GWEB, GCSA), CISSP, CSSLP.
We are seeking a highly skilled and motivated Product Cybersecurity Engineer to join our dynamic team. The successful candidate will be responsible for ensuring the security of our embedded systems, ICS, and associated cloud services. The engineer will contribute to development and implementation of global policies, tools, and practices and have a focus on supporting business units located in the Asia-Pacific region.
An individual with a diverse IT/OT background, the Product Security Engineer will work across ICS/OT/embedded technologies and IT/cloud technologies. The engineer must understand a range of disciplines, from embedded software, base operating or firmware systems and middleware services to APIs, application security, and cloud services.
Product security engineers must also focus on secure development practices, threat modeling, vulnerability management, architecture, and application security design. The engineer focuses on using secure-by-design and security-*** principles to reduce product vulnerabilities.
Essential Job Duties
Security Reviews and Risk Assessment:
61 Lead product and application security reviews, threat / risk / vulnerability analyses, investigations of security-related incidents, and assessment of the security level based on meaningful metrics.
61 Document security findings, outline remediation options, and oversee mitigation.
Security Design, Implementation, and Testing:
61 Evaluation, specification, implementation, introduction, and maintenance of cybersecurity-oriented development, engineering, and testing tools.
61 Actively engage with product development teams to facilitate secure product design addressing security requirements for new and existing products.
61 Translate cybersecurity governance policies and controls into customized implementation measures, helping to develop and implement security architectures and solutions for embedded systems, ICS, and cloud services.
Establish Product Cybersecurity Framework
61 Evaluate the existing product ecosystem and propose product changes to security leadership and engineering.
61 Facilitate or run internal education and training sessions, with a focus on product security principles.
Skills and Experience
61 Proficiency in both English and Standard Chinese (Mandarin) for effective communication and translation.
61 Highly technical and analytical experience, with a proven deep background in software engineering.
61 Experience with a combination of one or more in embedded software, ICS and OT technology, public cloud providers (AWS, Azure, GCP) and IoT service architectures and cybersecurity aspects of it.
61 Experience with development and testing cybersecurity tools such as SAST/ DAST.
61 Knowledge of international or national standards and regulations for IT/OT Security Standards, Legal issues
61 Experiences in risk-based methodologies and approaches (e.g. Threat and Risk Analysis)
Education Requirements
61 Bachelor’s degree preferred in information assurance, computer science, engineering, or related field.
Experience Requirements
61 Five-plus years of professional experience with a combination of one or more in secure product development, application security and engineering or secure development lifecycle.
Certification Requirements
61 Preferably one or more SANS certifications (GWAPT, GWEB, GCSA), CISSP, CSSLP.
工作地點(diǎn)
地址:上海長(zhǎng)寧區(qū)虹橋南豐城
查看地圖
??
點(diǎn)擊查看地圖
詳細(xì)位置,可以參考上方地址信息
求職提示:用人單位發(fā)布虛假招聘信息,或以任何名義向求職者收取財(cái)物(如體檢費(fèi)、置裝費(fèi)、押金、服裝費(fèi)、培訓(xùn)費(fèi)、身份證、畢業(yè)證等),均涉嫌違法,請(qǐng)求職者務(wù)必提高警惕。
職位發(fā)布者
HR
上海英格索蘭壓縮機(jī)有限公司
-
請(qǐng)選擇
-
公司規(guī)模未知
-
公司性質(zhì)未知
-
文井路468號(hào)
相似職位
-
南陽(yáng)人事專(zhuān)員(招聘) 單雙休 社保 3000-5000元應(yīng)屆畢業(yè)生 本科河南秉學(xué)教育信息咨詢有限公司
-
IT產(chǎn)品經(jīng)理 10000-18000元應(yīng)屆畢業(yè)生 本科河南綠都物業(yè)服務(wù)有限公司
-
IE助理 5000-8000元應(yīng)屆畢業(yè)生 大專(zhuān)比亞迪股份有限公司
-
行政員 5000-6000元應(yīng)屆畢業(yè)生 大專(zhuān)比亞迪股份有限公司
-
冷庫(kù)維修安裝工 5000-7000元應(yīng)屆畢業(yè)生 中技鄭州天冰制冷設(shè)備有限公司
-
辦公室人事招聘專(zhuān)員 面議應(yīng)屆畢業(yè)生 不限中國(guó)人壽保險(xiǎn)股份有限公司鄭州市分公司

2026-05-15 04:26:33
1702人關(guān)注
注:聯(lián)系我時(shí),請(qǐng)說(shuō)是在河南人才網(wǎng)上看到的。
