Free cookie consent management tool by TermsFeed Sr Product Security Analyst | Antal Tech Jobs
Back to Jobs
4 Days ago

Sr Product Security Analyst

decor
Finance & Banking
Full-Time
GE Vernova

Overview

Job Description Summary

As a key member of a global and matrixed design team, Sr Product Security Analyst is responsible for
  • Cyber security analysis of controllers, Control systems.
  • Lead the software and hardware penetration testing activates
  • Work in Collaboration with development teams to improve SDLC process, OSS/SAST/DAST scans.
  • Streamline SBOM generation.
  • Lead the cyber security testing for GE Vernova Power Conversion products and analyze the reports and suggest remediation strategy.
  • Identify Product vulnerabilities, rate and report to development team.

Job Description

Essential Responsibilities:

Lead reviews, suggest architectural changes, conduct tests to ensure systems, controllers, meet Cyber security requirements. Collaborates with a team of controls and system engineers developing operational software for various subsystems. The position requires a clear understanding of OT System, and conversant with all Cyber security requirements.

This role requires strong cooperation with system and subsystem teams necessary for command and control of the systems involved. The Security Analyst should be comfortable making design decisions in a sometimes-uncertain context, crafting innovative solutions, and demonstrating rigorous and decisive leadership. Work with multiple teams in different location to deliver Cyber secure software to meet customer requirements.

Roles and Responsibilities

You are a skilled Security Analyst who enjoys security work and is an expert in systems security, product / OT security and application security. In this role, you will be working with product managers, independent researchers, and in-house researchers to identify, rate, report and manage product vulnerabilities and incidents.

In this role, you will:

  • Be responsible for providing technical leadership and defining, developing security within software in a fast-paced and agile development environment using the latest secure software development technologies and infrastructure.
  • Work with Cyber Security Leaders and SMEs to understand product requirements.
  • Hands on experience with penetration testing for software applications, Systems, Web Application, mobile application, controllers.
  • Work on Cybersecurity tools like Wireshark, NESSUS and Burp Suite
  • Experienced in different phases of Software Development Life cycle (SDLC) including Design, Implementation and Testing during the development of software applications.
  • Assist security champions in completing Threat Modelling and Architecture Risk Analysis on product features.
  • Perform Security Code Reviews, Vulnerability Analysis and research on application code.
  • Coach and mentor developers to implement cryptography solutions securely (PKI, Code Signing, Stored Secrets, et cetera)
  • Provide guidance and advice on writing secure code that meets standards and delivers desired functionality, using the technology selected for the project.
  • Research new application security technologies and implement them to improve application security.
  • Maintaining a backlog of security-related tools that will improve the maintainability and security of our code and the pace of development.
  • Promote best practices based on OWASP Top 10, SANS Top 25, and the GE Vernova SDLC.

Education/Qualification

  • Bachelor /master's degree in IT/computer science or relevant engineering or equivalent knowledge / experience with 8-10 Years of Experience
  • Strong understanding of fundamentals in networking, ethical hacking, cryptography, penetration testing, vulnerability analysis, risk assessment, threat modelling, cybersecurity standards like ISO 27000 and ISA/IEC 62443.
  • Database RDBMS, MySQL NoSQL databases
  • Software component: MS Visual Studio, MS Office, MS Visio, GitHub
  • Linux and Windows OS
  • Hands on experience with Enterprise Application and Web Application servers like Tomcat, and WLP.
  • Certifications like CEH, OSCP, PNPT will be an added advantage.

Additional Information

Relocation Assistance Provided: Yes

Share job
Similar Jobs
View All
3 Hours ago
Machine Learning Engineer
Information Technology
  • 2 - 6 Yrs
  • Maharashtra
What you ll do: Lead ML model lifecycle, from research and experiments to implementation and deployment. Build and deploy deep learning models on GCP and edge devices , ensuring real-time inference. Combine multiple sensor in...
decor
1 Day ago
Powerapp Developer
Information Technology
  • 800000 - 1500000 INR - Annual
  • 4 - 6 Yrs
  • Mumbai
Key Responsibilities  Develop, customize, and maintain Power Apps solutions (Canvas & Model-Driven). Create and optimize Power Automate workflows for business process automation. Integrate Power Platform solutions with Microsoft 365, Datave...
decor
1 Day ago
Engineering Manager
Information Technology
  • 3000000 - 4000000 INR - Annual
  • 10 - 12 Yrs
  • Bangalore
We are hiring a hands-on Engineering Manager to lead our 100+ member engineering team across web, mobile, and backend (Shopify, Node.js, React.js, React Native). They will drive strategy, delivery, and team performance while working closely with the ...
decor
1 Day ago
Software Development Manager
Manufacturing & Industrial
  • 3000000 - 5000000 INR - Annual
  • 8 - 12 Yrs
  • Faridabad
MINIMUM REQUIREMENTS Competencies (skills & abilities) Full-stack development expertise (frontend + backend + DB) - Deep .NET and SQL Server knowledge, with proficiency in Java and Web technologies - Hands-on experience with Power Apps, W...
decor
1 Day ago
Lead Software Engineer - Public Cloud DevOps
Telecommunications
  • Gurugram, Haryana, India
Reference 2500089BResponsibilitiesWe are seeking a Public Cloud DevOps Engineer with expertise in both Azure and AWS, with one being the primary platform and the other as secondary. Proficiency in Infrastructure as Code (IaC) is essential, as it is ...
decor
1 Day ago
Full Stack Developer - Java/React.js
Telecommunications
  • Gurugram, Haryana, India
Mega Hiring Drive This Saturday in Hyderabad!Location : HyderabadDate : Saturday, 26th JulyExperience Range : 4 - 10 YearsCTC : Up to 30 LPAMandatory Skills JAVA Spring Boot Microservices React Key Responsibilities Design, develop, and de...
decor
1 Day ago
Junior Software Engineer in Mumbai
Space Exploration & Research, Information Technology
  • Gurugram, Haryana, India
Key Responsibilities Development of modules, features, and libraries needed for product development roadmap. Solving tech problems and level-2 (i.e., non-obvious, challenging) bugs that are based on insight, not just product experience. Troublesho...
decor
1 Day ago
Sr. Software Engineer (C# + .Net + Angular 6+)
Space Exploration & Research, Information Technology
  • Gurugram, Haryana, India
Senior Software Engineer, Assurant-GCC, IndiaThe Senior Software Engineer will work closely with our product teams to create APIs and web applications to serve customers with engaging, dynamic user experience. We are looking for people with expertis...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media