Principal Product Cybersecurity Engineer
Tasks
- Collaborate with incident response teams
- Conduct container scanning
- Conduct dependency scanning
- Conduct secure design reviews
- Contain product related security events
- Define security requirements
- Design AWS security architectures
- Detect secrets in builds
- Drive continuous improvement in product security maturity
- Embed security into medical device SaMD SDLC
- Establish SBOM practices
- Govern third party components
- Harden container images
- Implement security logging monitoring threat detection
- Integrate security testing into CI/CD pipelines
- Investigate security events
- Manage runtime security protections
- Mentor engineers on secure design
- Partner with quality and regulatory teams on cybersecurity documentation
- Perform DAST
- Perform SAST
- Perform threat modeling
- Remediate vulnerabilities in device software and cloud services
- Review cloud services and APIs architecture
- Review device software and firmware architecture
- Review mobile and web applications security
- Scan container images
- Secure AWS hosted product backends
- Serve as product security subject matter expert
- Sign build artifacts
- Sign container images
- Support post market cybersecurity activities
- Support release integrity controls
- Support vulnerability disclosure and security advisories
- Triages vulnerability intake
- Validate security controls authentication authorization encryption data protection
Perks/Benefits
- 401k employer match
- Employee stock purchase plan
- Flexible time off
- Health and welfare benefits
- Paid Holidays
- Paid sick time
- Parental leave
- Tuition reimbursement
Skills/Tech-stack
API Security | AWS IAM | AWS KMS | AWS Lambda | Amazon ECS | Amazon RDS | Amazon S3 | Amazon VPC | Artifact signing | Authentication | Authorization | CI/CD | CIEM | CSPM | CSPM Tools | Cloud Workload Protection | CloudTrail | Container Image | Container Scanning | Container hardening | Container image signing | DAST | Data Protection | Dependency Scanning | DevSecOps | Encryption | GuardDuty | Image signing | Incident Response | Incident investigation | Infrastructure as Code | OWASP API | OWASP API Security | OWASP Top | OWASP Top 10 | SAST | SBOM | SBOM governance | SBOM management | Secrets detection | Secure SDLC | Terraform | Threat modeling | Top 10 | Veracode | Vulnerability Management | Workload Protection | “as-code”
Education
N/A
Regions
Countries
States
Cities
Related jobs
-
Mid-level ContractAtlanta, United States6h ago
-
Access Control | Agent pools | App Service | Artifact management | Audit LogsMid-level ContractDauphin County, United States7h ago
-
DevSecOps Engineer USD 114K-190KArgoCD | Azure TS Network | CI/CD | Compliance Automation | Container SecurityHealth insurance | Holiday pay | Learning and development | Life insurance | Long-term disabilitySenior-level Full TimeUSA-DC-Washington8h ago
-
Application Engineer Expert Level USD 225K-305KAutomation | Cloud Security | CloudTrail | CloudWatch | Defender for Endpoint401k match | Career development | Dental insurance | Health insurance | Life insuranceSenior-level Full TimeFort Meade, MD, US21h ago
-
Junior Software QA Engineer USD 60K-89KAPI Testing | Accessibility testing | Agile | Azure Pipelines | CI/CDEntry-level Full TimeFrisco, TX, US21h ago
-
Application Engineer Expert Level USD 225K-305KAWS | Amazon S3 | Apache NiFi | Apache Spark | Azure401k plan | Career development | Federal Holidays | Flexible spending account | Health savings accountSenior-level Full TimeLinthicum, MD, US21h ago
-
Software Engineer I USD 137K-205KAPI Design | AWS | Agile | Analytics | Azure401k matching | Dental insurance | Employee discounts | Medical insurance | Paid time offMid-level Full TimeUnited States, San Diego, CA1d ago
-
Software Engineer I USD 137K-205KAWS | Agile | Analytics | Azure | CI/CD401k matching | Dental insurance | Employee discounts | Medical insurance | Paid time offMid-level Full TimeUnited States, San Mateo, CA1d ago
-
Mid-level Full TimeOrlando, FL1d ago
-
AI SIEM | Ansible | Bash | Chef | CrowdStrikeCorporate holidays | Dental insurance | HSA | Home internet allowance | Medical insuranceMid-level Full TimeRemote R1d ago
-
Senior Security Engineer USD 153K-220K800-53 | AWS | Access Management | CI/CD | Continuous MonitoringSenior-level Full TimeRemote - USA R1d ago
-
Security Engineer (930867) USD 106K-233KAWS | Antivirus | DevSecOps | Firewall | Google CloudLearning opportunities | Networking programsSenior-level Full TimeLouisville, KY, United States1d ago
-
Sr. Information Security Engineer - DevSecOps USD 122K-185KAPIs | Attack surface | Attack surface management | CVSS | Cause analysisSenior-level Full TimeJacksonville, FL, United States1d ago
-
Security Software Engineer, AI & Automation USD 127K-207KAWS | Agent systems | Authentication | Authorization | Caching401k match | Cell phone stipend | Co-working Space Subsidy | Dental insurance | Employee resource groupsMid-level Full TimeNerdWallet US R1d ago
-
Information Security Engineer USD 100K-170KAWS | AWS GuardDuty | Access reviews | Azure | Azure Networking401k company match | Dog-friendly campus | Employee resource groups | Flexible hybrid schedule | Gym accessMid-level Full TimeHouston, TX R1d ago
-
ADFS | Active Directory | Bash | DHCP | DNSSenior-level Full TimeNorfolk, United States1d ago
-
AWS | Automation | Bash | Containerization | Continuous DeliveryHealth insurance | Paid leave | RetirementMid-level Full TimeAurora, CO; Chantilly, VA; Herndon, VA1d ago
-
Security Engineer, AI Vulnerability Management USD 122K-185KAPI | AWS | Automation | CI/CD | CVSS100 percent paid health insurance | 401k matching | Employer-paid disability insurance | Employer-paid life insurance | Fertility benefitsSenior-level Full TimeMenlo Park, CA1d ago
-
Sr. System Administrator / System Engineer - Linux USD 105K-135KAuthentication | CentOS | JBoss | JSON | LinuxFlexible schedule | On-call supportSenior-level Full TimeFort Meade, MD1d ago
-
Staff Solutions Engineer - New York USD 224K-280KComputer forensics | Cyber Security | Detection evasion | EDR | Endpoint Security401k company match | Adoption & Surrogacy Reimbursement | Employee assistance program | Employee stock purchase plan | EquitySenior-level Full TimeNew York1d ago
-
Lead Database Administrator USD 165K-200KAWS | Backup and Recovery | Bash | Database Administration | Database performanceSenior-level Full TimeBasking Ridge, New Jersey1d ago
-
Software Developer – Security Code Review USD 92K-140KApplication Security Testing | C# | C++ | CVSS | CWEMid-level Full TimeOrlando, FL1d ago
-
Senior Security Operations Engineer USD 102K-133KAWS | Azure | Cloud Security | Defense in Depth | Detection and Response24/7 on-call rotation | Flexible schedule | Travel for onsite meetings | Virtual first | Work-life balanceSenior-level Full TimeSt. Paul, Minnesota, United States1d ago
-
Product Engineer (Security) - AI Control Plane USD 180K-250KAccess Management | Agent Sessions | Backend Development | Frontend Development | Identity and Access ManagementIn person work in San Francisco office | On-call rotationMid-level Full TimeSan Francisco1d ago
-
Senior Security Engineer USD 137K-165KAI | AWS | Application Firewall | Azure | BashHSA employer contribution | Health insurance options | Learning and development stipend | Paid parental leave | Phone and internet allowanceSenior-level Full TimeUS-Remote R1d ago