CrawlJobs Logo

Product Security Engineer - Secure SDLC Analyst

https://www.hpe.com/ Logo

Hewlett Packard Enterprise

Location Icon

Location:
United States , San Juan

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

HPE Aruba Networking is looking for a person excited to work at the intersection of software engineering, security, and assurance and trust. HPE Aruba Networking produces a variety of types of software, from embedded firmware to Linux-based appliances to containerized cloud applications, but what these all have in common is a need to build security in from the beginning and to demonstrate to our customers that these products are trustworthy for use in their own environments. This Secure SDLC role is part cybersecurity auditor, part consultant, part implementor who can work directly with software engineering teams on how to continually improve security maturity.

Job Responsibility:

  • Assist in the execution of product compliance assessments against various frameworks (e.g. NIST SSDF, NIST SP 800-218, SP 800-53, CIS Benchmarks)
  • Assist in the development and/or maintenance of GRC and SDLC tooling implementations, including scripting and automation
  • Operate as a representative of HPE Aruba in working groups, with government representatives, and with auditors
  • Provide consulting, information, and advice to product teams around implementing and improving the maturity of our SDLC
  • Document known issues and provide information to product teams in a manner which allows for easy interpretation and corrective actions to be performed
  • Monitor worldwide government standards and communicate to management and product teams when changes are made that may impact an existing control or introduce new requirements

Requirements:

  • BS in Information Security, Computer Science, or related technical field
  • A background in software security, either academic or work experience, including reverse engineering, vulnerability classes such as buffer overflows and their prevention, web application security, and/or cloud security
  • Programming knowledge of at least one programming language with the ability to look at source code and figure out what it’s doing
  • Familiarity with the purpose of tools such as IDEs, compilers, source code revision control systems, ASPM, SCA and code scanners
  • Minimum 3 years of experience working directly in software engineering or in an adjacent field with exposure to the software engineering environment
  • Experience conducting risk assessments, threat modeling, and/or compliance assessments
  • Experience supporting the integration of security practices through the software development lifecycle

Nice to have:

  • Industry certifications such as CISSP, CISA, CCSP, CSSLP, CGRC, or GIAC
  • Knowledge of relevant regulations and standards and how to interpret and implement these requirements within the organization's products
  • Ability to develop and implement security policies, procedures, and guidelines that align with organizational goals and compliance requirements
  • Technical experience with scripting and automation
  • Experience with participating in or leading external security standards communities or working groups
  • Familiarity with the Agile development methodology
  • Ability to manage security projects, setting priorities, and meeting deadlines as an independent performer
  • Strong communicator with ability to collaborate with various teams
  • Experience with ASPM, SCA, DAST and SAST tools
  • Experience with Project Management software (e.g. Jira, Asana, Confluence)
  • Experience with the procurement process for IT tools, particularly with product evaluations
What we offer:
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion

Additional Information:

Job Posted:
July 09, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Product Security Engineer - Secure SDLC Analyst

Application Security Engineer / Analyst

Core Responsibilities: Perform Web Application and API Security testing aligned ...
Location
Location
India , Chennai, Bangalore
Salary
Salary:
Not provided
ambconline.com Logo
AMBC
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Perform Web Application and API Security testing aligned with OWASP Top 10 using tools such as Burp Suite, Postman, and Tenable Nessus
  • Conduct Secure Code Reviews (manual and SAST-based) to identify vulnerabilities in source code and recommend remediation steps
  • Integrate and validate security controls within CI/CD pipelines for continuous testing and compliance
  • Assess application, microservice, and infrastructure security gaps, and support teams with remediation planning
  • Define and review hardening standards, TLS configurations, and integration security controls
  • Collaborate with developers, architects, and DevOps teams to embed “Shift Left” security practices during SDLC stages
  • Document findings, prepare detailed security assessment reports, and assist in mitigation validation
  • Stay updated with emerging threats, vulnerabilities, and security best practices to strengthen product security posture
  • Work Experience 3 to 6 years
Job Responsibility
Job Responsibility
  • Perform Web Application and API Security testing aligned with OWASP Top 10 using tools such as Burp Suite, Postman, and Tenable Nessus
  • Conduct Secure Code Reviews (manual and SAST-based) to identify vulnerabilities in source code and recommend remediation steps
  • Integrate and validate security controls within CI/CD pipelines for continuous testing and compliance
  • Assess application, microservice, and infrastructure security gaps, and support teams with remediation planning
  • Define and review hardening standards, TLS configurations, and integration security controls
  • Collaborate with developers, architects, and DevOps teams to embed “Shift Left” security practices during SDLC stages
  • Document findings, prepare detailed security assessment reports, and assist in mitigation validation
  • Stay updated with emerging threats, vulnerabilities, and security best practices to strengthen product security posture
Read More
Arrow Right

Infrastructure Senior Technology Analyst

The Infrastructure Senior Technology Analyst is an intermediate level role respo...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6+ years' experience in I.T
  • 5+ years hands-on experience on middleware webhosting and application server products
  • Bachelor's degree in computer science or related field or equivalent combination of education and experience
  • Experience in IT security compliance and implementation and use of security protocols (SSL, Server certificates)
  • Good experience using Java, J2EE, XML, SQL and Shell/Perl/python/PowerShell Scripting in UNIX/Wintel environment
  • Experience in modernization of traditional web/app applications to Redhat Openshift containers & external Cloud
  • Reasonable experience with AI tools to automate current pain points in workflow
  • Familiarity with Compliance and risk management frameworks and methodologies (ISO27002, SDLC)
  • Initiative and ability to perform under pressure
  • Strong leadership, interpersonal and communication skills
Job Responsibility
Job Responsibility
  • Create complex project plans and perform impact analyses
  • Solve/work high impact problems/projects and provide resolutions to restore services
  • Drive Root Cause Analysis (RCA) post restoration of service
  • Design testing approaches, complex processes, reporting streams, and create automation of repetitive tasks
  • Review requirement documents, define hardware requirements and examine and update processes and procedures
  • Provide technical/strategic direction and act as advisor/coach to lower-level analysts
  • Develop projects required for design of metrics, analytical tools, benchmarking activities and best practices
  • Provide expertise in application hosting technologies with specialized emphasis on IBM technologies (WebSphere/WebLogic Application Server, WebLogic Forms and Reports, IHS)
  • Provide expertise in other web hosting technologies like Microsoft IIS, Apache, Tomcat
  • Provide expertise in Java/J2EE deployments and Operating system scripting
  • Fulltime
Read More
Arrow Right

API Business Analyst

The Digital S/W Engineer Intmd Analyst is a developing professional role. Deals ...
Location
Location
India , Pune; Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong analytical and quantitative skills
  • Data driven and results-oriented
  • Experience in running high traffic, distributed, cloud based services
  • Experience in affecting large culture change
  • Experience leading infrastructure programs
  • Skilled at working with third party service providers
  • Excellent written and oral communication skills
  • Bachelor’s/University degree or equivalent experience
Job Responsibility
Job Responsibility
  • Address a variety of responses to problems, questions, or situations by applying established criteria to directly influence development outcomes
  • Responsible for applications systems analysis and programming activities
  • Accountable for development, design, construction, testing and implementation and write secure, stable, testable and maintainable code
  • Expected to operate with autonomy
  • Engage in digital applications development, risk technology, Middleware, Mainframe applications, Non Mainframe applications, Analytic Model Development and Application support activities to meet specific business needs of user areas and to test systems to ensure integrity of deliverables
  • Expected to provide sound understanding of application development concepts and principles and a basic knowledge of concepts and principles in other technology areas
  • On occasion, may need to consult with users, clients and other technology groups on issues and recommend programming solutions for customer exposed systems
  • Take the time to fully learn the functionality, architecture, dependencies, and runtime properties of the systems involved with your projects
  • Understand the business context and the associated customer use cases
  • Understand the team’s technologies and are able to evaluate system designs and architecture as you participate in solution discussions, development and the creation of application / systems documentation
  • Fulltime
Read More
Arrow Right

Manager / Senior Manager of EMR Integrations & Interoperability

We are seeking an experienced and hands-on Manager / Senior Manager of EMR Integ...
Location
Location
United States
Salary
Salary:
147841.00 - 195361.00 USD / Year
billiontoone.com Logo
BillionToOne
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6+ years of experience in healthcare IT, EMR integration, or clinical interoperability
  • At least 2–3 years in a people or project leadership role
  • Solid technical expertise in major EMR platforms and interoperability standards (e.g., HL7, FHIR, CDA, SMART on FHIR, APIs)
  • Proven track record in delivering complex integration projects on time and within scope
  • Experience managing small-to-mid-sized technical teams
  • Strong communication and stakeholder management skills across technical and non-technical groups
  • Familiarity with agile project management and SDLC best practices
  • Bachelor’s degree in Computer Science, Health Informatics, Biomedical Engineering, or related field preferred
Job Responsibility
Job Responsibility
  • Define and execute the enterprise-wide EMR integration strategy, aligning with clinical, commercial, and product goals
  • Develop and own the long-term roadmap for scalable, secure, and interoperable EMR integration infrastructure
  • Serve as a thought leader on EMR interoperability, standards (e.g., HL7, FHIR, SMART), and vendor ecosystems
  • Manage and mentor a team of EMR integration engineers, analysts, and/or project managers
  • Support hiring, onboarding, and development of team members
  • Foster a collaborative, accountable, and high-performance team culture
  • Establish and evolve team processes, performance standards, and professional development frameworks
  • Oversee the full lifecycle of EMR integrations across Epic, Cerner, Athena, and other major platforms—from initial scoping to go-live and long-term support
  • Lead the team in designing, configuring, and optimizing EMR workflows, data exchange protocols, and custom interfaces
  • Set and enforce best practices for security, scalability, and compliance (e.g., HIPAA, HITRUST)
What we offer
What we offer
  • Working alongside brilliant, kind, passionate and dedicated colleagues, in an empowering environment, toward a global vision, striving for a future in which transformative molecular diagnostics can help millions of patients
  • Open, transparent culture that includes weekly Town Hall meetings
  • The ability to indirectly or directly change the lives of hundreds of thousands patients
  • Multiple medical benefit options
  • employee premiums paid 100% of select plans, dependents covered up to 80%
  • Extremely generous Family Bonding Leave for new parents (16 weeks, paid at 100%)
  • Supplemental fertility benefits coverage
  • Retirement savings program including a 4% Company match
  • Increase paid time off with increased tenure
  • Latest and greatest hardware (laptop, lab equipment, facilities)
  • Fulltime
Read More
Arrow Right

Java Technology Lead

We are seeking a skilled and experienced Java Technology Lead to join our dynami...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 8-12 years of proven experience as a Java Developer or Java Technology Lead, with a strong background in Java-based technologies
  • In-depth knowledge of Java (JDK 8+), Spring Framework (Spring Boot, Spring MVC, Spring Security), Hibernate, RESTful APIs, and Microservices architecture
  • Experience with cloud platforms (AWS, Azure, Google Cloud) and containerization (Docker, Kubernetes)
  • Strong experience with relational databases (e.g., Oracle)
  • Knowledge of version control tools such as Git and CI/CD pipelines
  • Experience in Agile/Scrum methodologies
  • Excellent problem-solving skills and the ability to think critically in complex technical situations
  • Strong leadership, mentoring, and team management experience
  • Excellent communication and interpersonal skills, with the ability to work effectively with cross-functional teams
  • Bachelor’s degree in computer science, Engineering, or related field (or equivalent experience)
Job Responsibility
Job Responsibility
  • Lead and manage a team of Java developers, providing technical direction and mentorship to ensure timely and high-quality project delivery
  • Design, develop, and maintain robust, scalable, and efficient Java applications
  • Collaborate with cross-functional teams, including product managers, business analysts, and other technology leads, to define and refine technical requirements and solutions
  • Conduct code reviews to ensure adherence to best practices, standards, and guidelines
  • Troubleshoot, debug, and optimize existing applications to improve performance and scalability
  • Lead the architecture and design of Java applications, ensuring they align with the organization’s long-term technical vision
  • Stay current with emerging trends in Java technologies and incorporate relevant tools and practices into the development process
  • Provide technical leadership and guidance on the full software development lifecycle (SDLC), from requirements gathering to design, implementation, testing, and deployment
  • Oversee and drive automation of build, deployment, and testing processes to improve productivity
  • Ensure the implementation of security best practices and code quality standards
  • Fulltime
Read More
Arrow Right

Automation Tester

We are looking for a QA Engineer to ensure the reliability, functionality, and p...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.inetum.com Logo
Inetum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in software testing
  • Strong knowledge of SDLC (Software Development Life Cycle) and STLC (Software Testing Life Cycle)
  • Proficiency in writing test cases, test plans, and test scripts
  • Familiarity with bug-tracking and test management tools like JIRA or TestRail
  • Knowledge of testing methodologies such as black-box, white-box, regression, and exploratory testing
  • Experience with test automation frameworks like Tosca, Selenium, Playwright
  • Knowledge of CI/CD pipelines and integration of automated tests in DevOps workflows
  • Strong analytical and problem-solving skills
  • Good level of English and French (B1)
Job Responsibility
Job Responsibility
  • Design, develop, and execute test plans, test cases, and test scripts
  • Perform functional, regression, integration, performance, and security testing
  • Identify, document, and track bugs and defects in collaboration with development teams
  • Work closely with developers, product managers, and business analysts to understand requirements and define test strategies
  • Automate test cases using industry-standard tools and frameworks
  • Conduct API testing using tools like Postman or SoapUI
  • Participate in agile development processes
  • Ensure compliance with security, performance, and regulatory standards in the banking sector
  • Contribute to the continuous improvement of QA processes, tools, and best practices
What we offer
What we offer
  • Full access to foreign language learning platform
  • Personalized access to tech learning platforms
  • Tailored workshops and trainings to sustain your growth
  • Medical subscription
  • Meal tickets
  • Monthly budget to allocate on flexible benefit platform
  • Access to 7 Card services
  • Wellbeing activities and gatherings
  • Fulltime
Read More
Arrow Right
New

Engineering Lead BPM

You will be leading a team that builds, upgrades and maintains approx. 19 Retail...
Location
Location
India , Bengaluru
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Architecting, designing and developing IBM BAW (Business Automation Workflow) / IBM BPM (Business Process Management) applications
  • Good experience as an Engineering Lead/Technical Lead of BPM/BAW engineering team delivering complex solutions on BPM/BAW platform
  • Leading the effort in gathering and understanding requirements and use cases
  • Exhibiting solution architecture and designing responsibility to deliver solution design within IBM BAW/BPM
  • Driving creation and integration of web services/databases/legacy systems
  • Designing class structure, data models and application frameworks
  • Leading and governing software development life cycle (SDLC)
  • Governing business analysis and requirements gathering tasks performed by Business Analyst and provide support to Business Analyst wherever required
Job Responsibility
Job Responsibility
  • Development and delivery of high-quality software solutions by using industry aligned programming languages, frameworks, and tools. Ensuring that code is scalable, maintainable, and optimized for performance
  • Cross-functional collaboration with product managers, designers, and other engineers to define software requirements, devise solution strategies, and ensure seamless integration and alignment with business objectives
  • Collaboration with peers, participate in code reviews, and promote a culture of code quality and knowledge sharing
  • Stay informed of industry technology trends and innovations and actively contribute to the organization’s technology communities to foster a culture of technical excellence and growth
  • Adherence to secure coding practices to mitigate vulnerabilities, protect sensitive data, and ensure secure software solutions
  • Implementation of effective unit testing practices to ensure proper code design, readability, and reliability
What we offer
What we offer
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution
  • Fulltime
Read More
Arrow Right

Senior Software Engineer

Senior Software Engineer responsible for delivering integrated product solutions...
Location
Location
United States , St. Louis
Salary
Salary:
Not provided
sovereigntec.com Logo
Sovereign Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Advanced ability to translate business needs and problems into systems design and technical solutions
  • Proven experience with structured and object-oriented programming, design patterns, relational database design, operating systems, networking concepts, and systems integration
  • Demonstrated ability to evaluate project objectives and scope for feasibility, understanding, and scheduling, and to ensure projects meet budget and plan criteria
  • Complex analytical and problem-solving skills
  • Ability to multi-task and work well within a team environment
  • Advanced interpersonal skills, demonstrating an ability to apply leadership when required
  • Advanced oral and written communication skills
  • Agile
  • Master’s degree in Computer Science
  • Certification in Microsoft C#.NET software development
Job Responsibility
Job Responsibility
  • Provide IT solution design, delivery, and support expertise in Prophet, C#, Web, JavaScript, Oracle, and SQL Server technologies
  • Apply leadership and ownership through full solution development lifecycle while providing estimates, deliverables, and results
  • Meet regularly with Project Management and Technical Leads to manage status, milestones, risks, and issues in an Agile SDLC
  • Engage in customer planning sessions and demonstrate ability to drive out requirements
  • Analyze requirements, develop technical specifications, and perform solution gap analysis via Agile/Scrum methodology
  • Provide technical and/or business application consultation to customers and team members regarding functionality, architecture, operating systems, and databases for complex product systems
  • Prepare and present application and programming design solutions to fulfill business requirements
  • Engage technical analysts and business users to provide input on test cases, test scenarios, and test plans
  • Engage teams outside of immediate group as required (e.g. product integration points, infrastructure, help desk, security, and vendors)
  • Evaluate and balance application change risk with business need for timely product enhancements
Read More
Arrow Right