Senior Product Security Engineer mitigating security risks and ensuring compliance with industry standards at HPE. Collaborating with cross-functional teams and leading security initiatives in software development.
Responsibilities
Play a critical role in identifying and mitigating potential security risks, collaborating with cross-functional teams and other stakeholders, and maintaining compliance with industry standards and regulations.
Conduct secure design assessments and vulnerability tests to identify potential security threats and develop strategies to mitigate them.
Collaborates with all stakeholders like product management and engineering teams to integrate security into all stages of design and development for complex products and platforms, including solution design, analysis, coding, testing, and integration.
Provide guidance and support to product development teams in implementing secure coding practices and security best practices.
Implement automated tooling strategies and techniques that include but are not limited to static analysis (SAST), dynamic analysis (DAST), software composition analysis (SCA), etc.
Lead key initiatives to mature HPE’s security programs like secret management, cloud security, supply chain security, AI/LLM security etc.
Educating and communicating security information and best practices to other stakeholders at HPE.
Lead investigations into security incidents and develop corrective action plans to prevent future occurrences.
Monitor the effectiveness of security controls and drive innovation and integration of new security technologies within the organization.
Represent HPE at industry events and conferences as a product security subject matter expert.
Provides guidance and mentoring to less-experienced staff members.
Requirements
Bachelor's or Master's degree in Computer Science, Information Systems, or equivalent.
Typically 6-10 years experience in a security role.
Extensive experience with product security for multiple software systems design tools and languages.
Experience in cloud security technologies.
Experience in common security vulnerability classes and taxonomies.
Experience in security constructs in programming languages like python, java, go, and C.
Experience in overall architecture of software systems for products and solutions.
Excellent analytical and problem-solving skills.
Excellent written and verbal communication skills; mastery in English and local language.
Ability to effectively communicate product architectures, design proposals and negotiate options at senior management levels.
Benefits
Health & Wellbeing We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.
Personal & Professional Development We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have — whether you want to become a knowledge expert in your field or apply your skills to another division.
Unconditional Inclusion We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.
Security Engineer designing and implementing security measures to protect Snap Inc.'s infrastructure. Collaborating across teams while focusing on threat detection and response strategies.
IT Security & Compliance Head at Lonza leading security strategy and managing global risk. Collaboration with senior leadership to enhance information security across Capsules & Health Ingredients business.
Senior Security Manager leading security for Sanofi meetings and events across North America. Ensuring compliance with global meeting policies and managing event security operations in high - stake environments.
Security Officer maintaining safety protocols at Aloft New Orleans. Responsible for patrolling, monitoring security systems, and assisting guests with safety - related concerns.
Security Detection Specialist responsible for detecting cybersecurity incidents using advanced security technologies. Analyzing data feeds and leveraging security tools for incident detection and reporting.
Senior Incident Response Engineer at Walmart focusing on security threat campaigns to enhance detection and response capabilities. Collaborating with SOC and engineering teams to improve security posture.
Head of Infrastructure & Security at Kinatico, a RegTech leader, focused on cloud infrastructure and security governance. Leading a technically deep team of cloud engineers and security specialists in a hybrid environment.
Security Engineer at KAYAK responsible for implementing security improvements and managing security tools in Berlin office infrastructure. Collaborating with teams to monitor incidents and enhance security protocols.
Security Supervisor responsible for loss prevention and safety at WarHorse Gaming casino in Omaha. Ensuring compliance with regulations and managing security team operations.
Security Shift Manager overseeing security operations at WarHorse Gaming Omaha. Responsible for team safety, compliance with regulations, and staffing in the security department.