Security Engineer I - Cybersecurity

Bangalore - Karnataka, India - EOIZ Industrial Area

HARMAN International

HARMAN International is a global leader in connected car technology, lifestyle audio innovations, design and analytics, cloud services and IoT solutions.

View all jobs at HARMAN International

Apply now Apply later

General information

Location: Bangalore - Karnataka, India - EOIZ Industrial Area Job Family: Engineering Worker Type Reference: Regular - Permanent Pay Rate Type: Salary Career Level: T3(A) Job ID: R-46131-2025 Apply

Description & Requirements

About the Role
The Application Security Expert plays a role in ensuring the security of our Software Products as we handle applications for Automotive OEMs. The Application Security Expert will perform formal vulnerability assessment and penetration tests on Cloud platforms, networks, webservices and APIs. The candidates should have knowledge of open source penetration tools and test procedures.
Your Team
The role APPLICATION SECURITY EXPERT will report to Alexander Ashkinazi, Head of Cyber Security for Software Products.
Number of direct reporters to APPLICATION SECURITY EXPERT – 0 (zero)  

What You Will Do 
•    We are seeking a highly skilled Application Security Expert to join HARMAN Automotive Software Products and play a role in ensuring the security of our Software Products. 
•    Our customer security culture is of critical importance, as we are delivering software to numerous Automotive OEMs on a daily basis. The successful candidate will face a multitude of security-related challenges and will be responsible for implementing Secure Software Development Lifecycle (SSDLC) processes, owning security tasks, guiding development teams, analyzing penetration tests, and managing vulnerabilities.
•    Additionally, the candidate shall be responsible for the application security reviews, work closely with the development teams across Software Products business unit. 
•    Candidate shall also have extensive expertise into product security solution, Application/API security, databases security, infrastructure vulnerabilities assessment and management, vulnerability assessment and penetration testing (VAPT) services for applications (white/gray/black box concept of penetration testing and corresponding tools). 
•    The job entails planning & tracking of tasks for the product and project in order to achieve the timely delivery of committed services to customer. Ready to travel approx. 15% of his work position domestically or international.

What You Need
•    Collaborate with development teams to consistently implement and enforce the Secure SDLC process, ensuring security is embedded throughout the software development lifecycle.
•    Review the existing security measures and propose and implement enhancements to strengthen our security posture.
•    Conduct post-event analysis of security incidents and implement necessary improvements to prevent future occurrences.
•    Lead vulnerability management efforts, including analyzing customer penetration test reports and vulnerabilities reports, and overseeing remediation efforts.
•    Implement, test, and operate advanced software security techniques in alignment with a technical reference architecture.
•    Conduct ongoing security testing and code reviews to enhance the security of our software solutions.
•    Troubleshoot and debug security-related issues that may arise during development or production phases.
•    Provide engineering designs for new software solutions, ensuring they are fortified against security vulnerabilities.
•    Contribute to architectural decisions with a strong focus on security considerations.
•    Maintain comprehensive technical documentation related to security measures and processes.
•    Offer guidance and training to team members on secure coding practices and security best practices.
•    At least 2 years of proven experience as a software security engineer, demonstrating a strong background in application security.
•    Profound knowledge of all stages of the Secure SDLC process.
•    Deep expertise in authentication, authorization, applied cryptography, security vulnerabilities, and remediation techniques.
 


Important Notice: Recruitment Scams Please be aware that HARMAN recruiters will always communicate with you from an '@harman.com' email address. We will never ask for payments, banking, credit card, personal financial information or access to your LinkedIn/email account during the screening, interview, or recruitment process. If you are asked for such information or receive communication from an email address not ending in '@harman.com' about a job with HARMAN, please cease communication immediately and report the incident to us through: harmancareers@harman.com. 


HARMAN is proud to be an Equal Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. Apply
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  7  2  0

Tags: APIs Application security Banking Black box Cloud Cryptography Industrial Open Source Pentesting Product security SDLC SSDLC Vulnerabilities Vulnerability management

Perks/benefits: Career development

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.