Senior Product Security Analyst

GE Vernova


Date: 2 weeks ago
City: Hyderabad, Telangana
Contract type: Full time
Job Description Summary

We are looking for an Sr Product Security Analyst, with a focus in vulnerability management and incident response capability. In this role you will work in a team to identify, risk rate, communicate and track product vulnerabilities and be a part of the product incident response team.

Job Description

Roles and Responsibilities

In This Role, You Will

  • Be able to scope and participate in hardware and software penetration tests, vulnerability identification and vulnerability risk assessment
  • Engage in incident response methods lead incident response processes related to product cyber
  • Create and track meaningful metrics around product cyber risk and compensating controls
  • Create vulnerability and incident trend analysis to improve product design
  • Maintain cyber Bills of Material and conduct proactive vulnerability monitoring and assessment on cyber components
  • Engage and administer End Of Life processes for digital products
  • Consult, architect on security requirements and utilize best practices to meet them
  • Engage in application and domain-specific threat modeling and attack surface analysis/reduction
  • Help prepare reports at appropriate levels of confidentiality for stakeholders to view
  • Responding promptly and in detail to customer-sponsored penetration tests
  • Provides guidance on automated testing tools and techniques

Education Qualification

For Roles Outside USA

Bachelor's Degree in Computer Science or “STEM” Majors (Science, Technology, Engineering and Math) with advanced experience.

For roles in USA:Bachelor's Degree in Computer Science or “STEM” Majors (Science, Technology, Engineering and Math) with minimum years of experience4years

Desired CharacteristicsTechnical Expertise

  • Experience with cyber security framework (NIST 800-53, ISO 27001, IEC 62443, etc.) implementation and governance
  • Program and Project Management experience; expertise with Agile development teams
  • Experience with secure coding principles; code signing; secure boot
  • Experience with penetration testing and ethical hacking
  • Knowledge of CI/CD and automation tools (Chef, Git, Jenkins)
  • Knowledge of Identity management and identity federation (SAML, Oauth, SCIM, XACML)
  • Experienced in developing web services (SOAP/REST)
  • Must be available for on call for potential security response
  • Knowledge of application risk identification and evaluation techniques
  • Knowledge of Cyber Security and full knowledge of multiple related engineering functions
  • Experience securing applications within cloud platforms such as AWS, Azure and alike.
  • Experience with broad set of information security technologies and processes within a SaaS, IaaS, PaaS, or cloud environment

Note

Note

To comply with US immigration and other legal requirements, it is necessary to specify the minimum number of years' experience required for any role based within the USA. For roles outside of the USA, to ensure compliance with applicable legislation, the JDs should focus on the substantive level of experience required for the role and a minimum number of years should NOT be used.

This Job Description is intended to provide a high level guide to the role. However, it is not intended to amend or otherwise restrict/expand the duties required from each individual employee as set out in their respective employment contract and/or as otherwise agreed between an employee and their manager.

Additional Information

Relocation Assistance Provided: No

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Sr. Project Engineer -MEP (Mechanical) - Healthcare/Hospital Projects

Cushman & Wakefield, Hyderabad, Telangana
3 days ago
Job TitleSr. Project Engineer -MEP (Mechanical) - Healthcare/Hospital ProjectsJob Description SummaryThis role is responsible for the MEP - Mechanical work of a Hospital building under construction. Also having sound understanding of the impact of the mechanical, electrical and plumbing settings within the construction process.Job DescriptionAbout the Role: Actively engage in initial design development of MEP Services and assess constructability of...

AI/ML Engineer

Clovertex, Hyderabad, Telangana
4 days ago
We are seeking a talented AI / ML Engineer to design, develop, and deploy machine learning and AI-driven applications on AWS Cloud. The role involves building scalable ML pipelines, training and tuning models, and operationalizing AI solutions that enhance data-driven decision-making across research, clinical, and enterprise use cases.Key Responsibilities Design and develop machine learning models for predictive analytics, classification, and...

Senior Scrum Master

Invesco India Pvt. Ltd., Hyderabad, Telangana
5 days ago
As one of the world’s leading asset managers, Invesco is dedicated to helping investors worldwide achieve their financial objectives. By delivering the combined power of our distinctive investment management capabilities, we provide a wide range of investment strategies and vehicles to our clients around the world.If you're looking for challenging work, smart colleagues, and a global employer with a social...