Product Security Engineer at Techno Comp Inc
Hilliard, OH
About the Job
Job Title: Product Security Engineer
Work Location: Hilliard, OH (Remote)
Job Description:
What you will be doing...
The Clients’ Product Security Team ensures security by design product engineering and architecture for both consumer and business products. As a Product Security Engineer , you will work to conduct security assessments on both Consumer and Business products and solutions. You will help to create, define, and implement security controls and tooling in conjunction with product development teams and product owners. You will manage multiple projects with a degree of impact and complexity that must be carefully controlled to support the internal business unit security requirements.
You will also work in conjunction with security stakeholders in other areas of the business and make decisions and help lead initiatives to ensure timely delivery of security solutions that support business objectives. You will also manage work that involves coordination with multiple organizations and is the focal point within the group.
- Help implement Secure Software Development Lifecycle (SSDLC) practices and use automation where possible.
- Work with the product teams to perform security design/code reviews and vulnerability assessment
- Provide security guidance to Engineering and Product teams.
- Build threat models and participate in risk assessments for new features and services.
- Create application threat models and provide guidance on effective countermeasures
- Contribute to security architecture and assist in building and rolling out processes for secure code development and deployment involving cutting edge technology.
- Provide subject matter expertise on encryption, security controls, and secure design and programming practices across the technology organization.
- Contribute to security policy, standards, and guidelines related to Information Security.
- Evaluate and operationalize new technologies for securing the organization.
- Help create product security inventory and product security lifecycle to align with standards.
- Train and mentor new hire and Jr Product Security Architects.
- Train and mentor Security Champions throughout the development.
- Share thought leadership in the product and application security space
- Create security user stories and security test cases for products that are tailored to the product attributes and technology
- Support and advise product owner and product development teams by ensuring technical and architectural feasibility, readiness and compliance.
- Experience with secure SDLC, governance and compliance for PCI, FedRAMP and NIST .