Product Security Engineer - W2 ONLY

Crossfire Consulting
NJ
Full-time

What you ll be doing... The Telecommunication Product Security Team ensures security by design product engineering and architecture for both consumer and business products.

As a Product Security Engineer, you will work to conduct security assessments on both Consumer and Business products and solutions.

You will help to create, define, and implement security controls and tooling in conjunction with product development teams and product owners.

You will manage multiple projects with a degree of impact and complexity that must be carefully controlled to support the internal business unit security requirements.

You will also work in conjunction with security stakeholders in other areas of the business and make decisions and help lead initiatives to ensure timely delivery of security solutions that support business objectives.

You will also manage work that involves coordination with multiple organizations and is the focal point within the group.

  • Help implement Secure Software Development Lifecycle (SSDLC) practices and use automation where possible
  • Work with the product teams to perform security design / code reviews and vulnerability assessment
  • Provide security guidance to Engineering and Product teams.
  • Build threat models and participate in risk assessments for new features and services.
  • Create application threat models and provide guidance on effective countermeasures
  • Contribute to security architecture and assist in building and rolling out processes for secure code development and deployment involving cutting edge technology
  • Provide subject matter expertise on encryption, security controls, and secure design and programming practices across the technology organization
  • Contribute to security policy, standards, and guidelines related to Information Security
  • Evaluate and operationalize new technologies for securing the organization
  • Help create product security inventory and product security lifecycle to align with standards.
  • Train and mentor new hire and Jr Product Security Architects.
  • Train and mentor Security Champions throughout the development
  • Share thought leadership in the product and application security space
  • Create security user stories and security test cases for products that are tailored to the product attributes and technology
  • Support and advise product owner and product development teams by ensuring technical and architectural feasibility, readiness and compliance.
  • Experience with secure SDLC, governance and compliance for PCI, FedRAMP and NIST

You'll need to have :

  • Bachelor's degree in a relevant field (Computer Science, Software Engineer, Security, or others) OR an equivalent combination of education, training, and experience
  • Experience with performing security requirements analysis to secure the deployment of large globally distributed platforms, building threat models, do design reviews and document relevant mitigation techniques, implementing security best practices, applying applications security design patterns.
  • Experience with any combination of at least 3 technical disciplines, including the following : Cloud Security, Penetration Testing, Application Security, Mobile Security, Secure Development methodologies, Software Development and Coding.

Even better if you have :

  • Good understanding of mobile application security
  • Experience with hands on application penetration testing
  • Experience securing cloud services, like AWS, Azure or GCP -Understanding of Docker, Kubernetes and CI / CD pipeline
  • Hands on experience on security testing like SAST, DAST and Pen testing
  • Understanding of OWASP Top 10, CIS Top 20 -Understanding of authentication protocols like OID, OAuth2.0, SAML
  • Knowledge of application security vulnerabilities, secure coding, and countermeasures.
  • Written and verbal skills for communicating security concepts and solutions.
  • Ability to prioritize between and execute on multiple work streams.
  • Experience with application programming and the overall software development life cycle.
  • Excellent organizational and interpersonal skills.
  • One of more of the following certifications : CISSP, CISM, SANS, CCSK, CCSP, Ethical Hacker cert.
  • 30+ days ago
Related jobs
Promoted
VirtualVocations
Hamilton Township, New Jersey

A company is looking for a Security Products Lab Engineer. ...

Promoted
Lockheed Martin
Moorestown, New Jersey

Seeking professional engineer to provide quality support to multiples programs on the production floor. Coordinates quality activities related to Engineering, Manufacturing and other functions to assist with the implementations of assigned Quality Control operations. Reviews Manufacturing/Assembly p...

Crossfire Consulting
NJ
Remote

Network Engineer - Fully remote. Key responsibilities for Network Engineer:. Assist with COIN implementation and work with Implementation/Engineering teams to transition from VXLAN to eNSE. Engineer network config for onboarding private cloud tenants. ...

Saransh Inc
Jersey City, New Jersey

Strong programming skills in Python, with experience in developing and maintaining production-level code. ...

Strategic Staffing Solutions
Summit, New Jersey

Senior Full Stack Engineer -W2 ONLY. Tagged as: Senior Full Stack Engineer -W2 ONLY. We are looking for a Senior Full Stack Engineer with experience in design, development of enterprise systems, handling high volumes of data in case management and reporting. The candidate would design, implementatio...

Tekvivid Inc
Florham Park, New Jersey

Job Title: Data Engineer(Only W2)<br />Location: Florham Park, NJ(hybrid 3 days onsite)<br />Duration: Long Term Contract<br /> <br />Interview mode: In Person</p> <p>Job Description Overview: <br />Senior Data Engineering ETL Developer who will be responsib...

TSR Consulting Services, Inc.
Warren, New Jersey

Job Tittle: Quality Assurance Engineer. The Specialist, QA Engineering is responsible for ensuring quality, integrity, and compliance of site Information Technology (IT) systems, review of validation and qualification documents for all equipment and facility activities. Ensures compliance with the s...

Matlen Silver
Pennington, New Jersey

Required Pay Scale: $60-$65/hr - W2 ONLY, NO C2C. Due to client requirements this role is only open to USC or GC candidates***. Have various resources on the team from engineers, ops support, and delivery leads. ...

TSR Consulting Services, Inc.
NJ, United States

MS in Computer Science, Chemical Engineering, Biostatistics or similar with 6 years industry experience or PhD in Computer Science, Chemical Engineering, Biostatistics or similar with 3 years industry experience. MS in Computer Science, Chemical Engineering, Biostatistics or similar with 3-6 years i...

Tekvivid Inc
Secaucus, New Jersey

W2 Requirement!!</p> <p class="x">Looking for Site Reliability Engineer</p> <p class="x"><span style="font-size:11pt"><span style="font-family:Calibri,sans-serif"><b><u>Day 1 onsite from Secaucus NJ. Calibri,sans...