Product Security Senior Analyst (Senior Software Developer)

Philippines

Vertiv

Vertiv ist weltweit führend in der Entwicklung, dem Bau und der Wartung kritischer Infrastrukturen, die essenzielle Anwendungen für Rechenzentren, Kommunikationsnetze sowie kommerzielle und industrielle Einrichtungen ermöglichen.

View all jobs at Vertiv

Apply now Apply later

Position Summary

The Engineer, Application and Product Security position’s primary responsibility to support various development and operation activities. These activities include enhancing our internal security processes and tools utilized by our engineering teams, supporting code repository management, static and dynamic code analysis, and supporting engineering teams troubleshoot CI/CD pipelines. Secondary responsibilities include acting as the primary point of contact for regional engineering teams for our internal product security program, technical security resource for our vulnerability management program, support internal security team efforts, and mentor juniors within the team. The engineer is expected to have a thorough understanding of complex IT systems, embedded devices, applications, cloud systems and stay up to date with the latest security standards, systems, and authentication protocols, as well as best practices and emerging technologies.  The ideal candidate will have knowledge of industry security frameworks such as OWASP SAMM and will be a strong communicator. They will be responsible for detecting product and application security threats as well as areas of weakness in products and applications for improvement.

This position will consistently work under the guidance and processes of global security team they will support regional as well as global engineering groups. The engineer will be expected to use their knowledge and experience to further develop internal secure processes and procedures.

 

Responsibilities: 

In addition to anticipating possible security threats and identifying areas of weakness, the Product Security Engineer must: 

  • Act as a Security Engineer to work in development, operations activities daily
  • Support building various tools, processes for the business and for engineering teams through various software development skills and coding practices (OOPS will be highly recommended)
  • Code management and maintenance through DevOps and CI/CD pipelines
  • Thorough Gitlab usage and maintenance for daily activities tracking, source code management, DevOps and CI/CD
  • Support internal security team efforts, cross-functional activities
  • Act as a primary point of contact for regional engineering teams for secure best practices and processes
  • Thorough follow-up of internal product security program and vulnerability management processes
  • Mentor juniors within the team and provide support
  • Regional and Global support activities

 

Requirements: 

  • A bachelor’s degree in information technology, Computer Science or related Engineering field is highly desirable.
  • Total 7+ years of relevant experience in Software Development, Coding (especially OOPS, C++ etc.), DevOps and CI/CD
  • Additional advanced security qualifications such as CISSP (Certified Information Systems Security Professional) certification, CEH (Certified Ethical Hacker) or equivalent are ideal.
  • Good working knowledge of current Software Development environments, IT risks and experience implementing security solutions.
  • Ability to interact with a broad cross-section of personnel to articulate and enforce security measures through internal product security program and vulnerability management processes
  • Excellent written and verbal communication skills as well as business acumen
  • Strong technical documentation, diagramming, and presentation skills
  • Strong leadership, vision, effective communication and goal-oriented
  • Strong ability to establish partnerships and influence change and achieve results within dynamic environment
  • Meaningful technical contributions into the development lifecycle of a product, application and service
  • Software Development experience in IT Applications, embedded systems / softwares and/or web-based applications that includes lab activities with and debugging on target hardware
  • Experience using git and related source code management tools
  • Experience with the Linux kernel and networking stack including security features
  • Operating system configuration of Windows, Linux, Android, and iOS
  • Computer boot process including boot loaders
  • Familiarity with compilers, debuggers, disassemblers, and other low-level development and analysis tools
  • Circumventing security protection methods and techniques
  • Reverse engineering complex systems and protocols

 

The successful candidate will embrace Vertiv’s Core Principals & Behaviors to help execute our Strategic Priorities. 
 

OUR CORE PRINCIPALS:  Safety.  Integrity. Respect.  Teamwork.  Diversity & Inclusion.

OUR STRATEGIC PRIORITIES

  • Customer Focus
  • Operational Excellence
  • High-Performance Culture
  • Innovation
  • Financial Strength

OUR BEHAVIORS

  • Own It
  • Act With Urgency
  • Foster a Customer-First Mindset
  • Think Big and Execute
  • Lead by Example
  • Drive Continuous Improvement
  • Learn and Seek Out Development
Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Android Application security C CEH CI/CD CISSP Cloud Code analysis Compilers Computer Science DevOps GitLab iOS Linux OWASP Product security Reverse engineering SAMM Vulnerability management Windows

Perks/benefits: Team events

Region: Asia/Pacific
Country: Philippines

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.