Product Security Engineer, Principal
India
Progress
Progress products speed business app development, automate processes to configure, deploy & scale apps, and make critical data more accessible and secure.- Security Policy Implementation: Implement and enforce security policy requirements, conduct risk assessments, and conduct vulnerability testing.
- Security Engineering & Assurance: The Security Engineering & Assurance role involves conducting design and architecture reviews, threat modeling, secure code reviews, and cryptographic reviews to ensure robust security measures. Additionally, the position supports the open source ecosystem, engages in platform security engineering, and augments internal security engineering efforts. The role also includes research and development activities, particularly in compilers and binary translation research, to advance security technologies and practices.
- Technical Expertise: Provide technical direction to engineering teams on various security areas, including network security, platform security, authentication/authorization systems, application security, and security frameworks.
- Engineering Initiatives: Take leadership of security engineering initiatives for production and corporate infrastructure.
- Subject Matter Expertise: Serve as an information security engineering subject matter expert, analyze attacks on customer applications from internal and external sources, proposing mitigations and fixes.
- Incident Management: Manage security vulnerability resolution according to company policies. This requires immediate response and working with affected teams to investigate and mitigate/remediate the vulnerabilities. Clear communication skills are critical.
- Real-Time Response: Ensure timely and effective responses to security incidents. This involves coordinating with incident response teams, analyzing threat data, and implementing mitigation measures.
- Continuous Improvement: Stay informed about emerging threats and lead changes to security processes accordingly. Regularly assess and propose changes, that lead to improving the effectiveness of security operations.
- Collaboration: Work closely with other internal and customer security professionals, including network engineers, system administrators, and threat analysts.
- Bachelor’s or equivalent industry experience in Software Engineering, Information Security, or related fields.
- Business Application security patterns
- Choosing and applying Cryptography for confidentiality, integrity, and availability
- Software Security engineering best practices
- Authentication, authorization, and network security protocols
- Linux OS system security features and best practices
- Windows OS system security features and best practices
- Knowledge of secure software development practices across distributed, container, and private/public cloud computing environments
- Familiarity with network security devices, and security software product solutions.
- Knowledge of Machine Learning practices on creating the standards against which ML (and AI) projects using Large Language Models & RAG can be reviewed, and creating tools and techniques that help researchers assure the safety and security of the systems.
- 7+ years of experience with security operations systems (e.g., IDS, SIEM, anti-virus log collection systems).
- Certifications: Industry certifications like CISSP, CISA, CEH, or GSEC are desirable.
- Competitive remuneration package
- Employee Stock Purchase Plan Enrollment
- 30 days of earned leave
- An extra day off for your birthday
- Various other leaves like marriage leave, casual leave, maternity, and paternity leave
- Premium Group Medical Insurance for employees and five dependents, personal accident insurance coverage, life insurance coverage
- Professional development reimbursement
- Interest subsidy on loans - either vehicle or personal loans
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security CEH CISA CISSP Cloud Compilers Cryptography GSEC IDS Incident response Linux LLMs Machine Learning Network security Open Source Product security Risk assessment SIEM Vulnerabilities Windows
Perks/benefits: Career development Competitive pay Equity / stock options Flex vacation Health care Medical leave Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.