Siemens Careers

Product & Solution Security Expert

Bengaluru, India
Research & Development

Apply
English (UK)

Job Description

The Product & Solution Security (PSS) Professional for Security Processes is responsible to define, pilot, roll-out, monitor and continuously optimize PSS process activities (in-line with the defined PSS Governance framework) for R&D software & firmware development projects in the industrial automation domain. The Security Process Expert additionally supports the PSS program leader in providing process implementation consulting support to the project teams.

The Security Process Expert needs to have experience in the following areas: development/testing on the Linux and Windows environments, scripting technologies, Secure Testing concepts, Security Threat & Risk Analysis and Security Incident Handling. They should support multiple projects at the same time and will occupy the PSS function full-time, reporting to the PSS COE Head. 

Here is your role, what part will you play

·        Defining PSS process activities in-line with defined PSS governance framework

·        Understanding Siemens security requirements to drive adherence for Embedded, Web, Mobile, Cloud & IoT environments

·        Creating security concepts based on company security requirements

·        Defining, maintaining and evangelizing an up-to-date security threat & technology landscape

·        Interfacing with project teams on security needs, gaps, process implementation & continuous support

·        Conceptualizing and implementing tool-driven and highly-automated prototypes to showcase security threat mitigations across the SW product development lifecycle

·        Coaching project teams on awareness of PSS process activities & related security technologies and their implementation

·        Supporting project teams on security threat & risk analysis and management

·        Supporting project teams on handling security incidents

·        Interfacing the support functions (e.g. InfoSec, Configuration Management, Quality Management etc.) to define holistic security concepts and measures

We don’t need superheroes just super minds

Qualification: BE/ B.Tech degree in Computer science or electrical engineering or IT security
Experience: Overall 5+ years of professional experience in SW development/testing with at least 1 year experience in the product security domain

Competences:

·        Quality (Security) Process Definition, Implementation & Monitoring – Expert

·        Software Threat & Risk Analysis – Advanced

·        SIEM & Security Incident Handling – Advanced

·        SW Development / Testing in the Windows / Linux Environment – Advanced

·        Complex IT systems know-how (client-server, storage & networks, file shares, cloud deployment) – Advanced

·        Technology & Security topics (network & application security, infrastructure hardening, web-server & database security, security baselines) – Advanced

·        IT Security, Data Protection & Cryptography – Advanced

·        Computer Networking Concepts – Advanced

·        SW Development in Embedded / Web / Mobile / Cloud environments – Advanced

·        OWASP & Web Security – Advanced

·        Cloud (Amazon, Azure) Security architectures, container technologies & standards – Advanced

·        IoT Security technologies & standards – Basic

·        Programming in C++ / C#.NET / Web-technologies – Advanced

·        SCA tools (e.g. Coverity, SonarQube, Veracode, etc.) hands-on experience – Advanced

·        Security Testing Concepts & Tools – Advanced

·        Scripting Technologies (e.g. Python, Perl, Ruby) – Basic

·        Written & Verbal Communication Skills – Expert

·        Presentation Skills – Expert

What else do I need to know?

Siemens is dedicated to quality, equality and valuating diversity and we welcome applications that reflect the diversity of the communities with in which we work. Please find more information at www.siemens.com

We are looking forward to receiving your application. Please ensure you complete all areas of the application form to the best of your ability as we will use the data to review your suitability for the role.



Job ID: 102252

Organization: Corporate Technology

Experience Level: Early Professional

Job Type: Full-time





Can't find what you are looking for?

Let's stay connected

Can't find what you are looking for?