Product Cybersecurity Engineer

1 - 3 years

12 - 17 Lacs

Posted:5 days ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

We are seeking a skilled and proactive

Product Cybersecurity Engineer

to join our team. This role will support in secure software development practices and will collaborate closely with product engineering teams to embed and automate security testing within CI/CD pipelines. The ideal candidate will drive the maturity of our secure development lifecycle and enhance the overall security posture of our products.

ESSENTIAL DUTIES AND RESPONSIBILITIES:

  • Security Integration & Automation

  • Implement and integrate security scanning tools (SAST, DAST, etc.) into CI/CD pipelines.
  • Ensure security policies are consistently applied throughout the product development lifecycle.
  • Developer Enablement & Collaboration

  • Partner with development teams to promote adoption of security tools and frameworks.
  • Provide hands-on support and guidance to Product Engineering team on security scanning tools and secure coding practices.
  • Scan Quality & Risk Management

  • Continuously improve the accuracy and relevance of security scans.
  • Support Product engineering teams to assess scan results, triage findings, and provide risk-based remediation guidance.
  • Knowledge Sharing & Documentation

  • Develop and maintain SOPs, best practices, and contribute to the internal security knowledge base.
  • Conduct training and awareness sessions for development teams.
  • Metrics & Reporting

  • Enhance Product Cybersecurity Testing Services KPIs/KRIs.
  • Deliver actionable insights through regular reporting and dashboards.
  • Service Delivery & Road mapping

  • Deliver security services aligned with ITIL processes.
  • Envision and evolve the roadmap for product security testing services to support emerging technologies.

Required Qualifications:

  • 1-3 years of progressive experience in application and information security.
  • Hands-on experience with SAST, DAST, SCA tools such as Coverity, Checkmarx, Fortify, OWASP ZAP, Invicti, Black Duck, SemGrep, Synk
  • Strong understanding of DevSecOps practices and CI/CD tools (Git, Jenkins, Jira, Maven, Gradle, TeamCity, Artifactory).
  • Proficiency in secure code review and dynamic application security testing.
  • Solid grasp of application security threats and vulnerabilities across web, mobile, and embedded platforms.
  • Familiarity with security frameworks (OWASP, NIST, MITRE, SANS CWE) and standards (ISO 27001, IEC 62443, Privacy).
  • Experience with open-source license governance and container/cloud security.
  • Exposure to firmware and embedded system security testing.
  • Scripting skills (e.g., Python, Shell) and programming knowledge (e.g., C/C++, Java, Golang, C#).
  • Working knowledge of PowerBI and service operations is a plus.
  • Self-starter with the ability to work independently and in dynamic environments.
  • Strong analytical, problem-solving, and innovative thinking.
  • Excellent communication and collaboration skills.
  • High integrity and ability to handle confidential information.
  • DevSecOps Certifications (CDP/CDE/GSCA) , CSSLP, CISSP, SANS certifications (at least one strongly preferred)

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
GENERAL ELECTRIC (GE) logo
GENERAL ELECTRIC (GE)

Conglomerate / Diversified industrials

Boston

RecommendedJobs for You