CrawlJobs Logo

Product Security Engineer - Secure SDLC Analyst

https://www.hpe.com/ Logo

Hewlett Packard Enterprise

Location Icon

Location:
United States, San Juan

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

HPE Aruba Networking is looking for a person excited to work at the intersection of software engineering, security, and assurance and trust. HPE Aruba Networking produces a variety of types of software, from embedded firmware to Linux-based appliances to containerized cloud applications, but what these all have in common is a need to build security in from the beginning and to demonstrate to our customers that these products are trustworthy for use in their own environments. This Secure SDLC role is part cybersecurity auditor, part consultant, part implementor who can work directly with software engineering teams on how to continually improve security maturity.

Job Responsibility:

  • Assist in the execution of product compliance assessments against various frameworks (e.g. NIST SSDF, NIST SP 800-218, SP 800-53, CIS Benchmarks)
  • Assist in the development and/or maintenance of GRC and SDLC tooling implementations, including scripting and automation
  • Operate as a representative of HPE Aruba in working groups, with government representatives, and with auditors
  • Provide consulting, information, and advice to product teams around implementing and improving the maturity of our SDLC
  • Document known issues and provide information to product teams in a manner which allows for easy interpretation and corrective actions to be performed
  • Monitor worldwide government standards and communicate to management and product teams when changes are made that may impact an existing control or introduce new requirements

Requirements:

  • BS in Information Security, Computer Science, or related technical field
  • A background in software security, either academic or work experience, including reverse engineering, vulnerability classes such as buffer overflows and their prevention, web application security, and/or cloud security
  • Programming knowledge of at least one programming language with the ability to look at source code and figure out what it’s doing
  • Familiarity with the purpose of tools such as IDEs, compilers, source code revision control systems, ASPM, SCA and code scanners
  • Minimum 3 years of experience working directly in software engineering or in an adjacent field with exposure to the software engineering environment
  • Experience conducting risk assessments, threat modeling, and/or compliance assessments
  • Experience supporting the integration of security practices through the software development lifecycle

Nice to have:

  • Industry certifications such as CISSP, CISA, CCSP, CSSLP, CGRC, or GIAC
  • Knowledge of relevant regulations and standards and how to interpret and implement these requirements within the organization's products
  • Ability to develop and implement security policies, procedures, and guidelines that align with organizational goals and compliance requirements
  • Technical experience with scripting and automation
  • Experience with participating in or leading external security standards communities or working groups
  • Familiarity with the Agile development methodology
  • Ability to manage security projects, setting priorities, and meeting deadlines as an independent performer
  • Strong communicator with ability to collaborate with various teams
  • Experience with ASPM, SCA, DAST and SAST tools
  • Experience with Project Management software (e.g. Jira, Asana, Confluence)
  • Experience with the procurement process for IT tools, particularly with product evaluations
What we offer:
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion

Additional Information:

Job Posted:
July 09, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Product Security Engineer - Secure SDLC Analyst

Application Security Engineer / Analyst

Core Responsibilities: Perform Web Application and API Security testing aligned ...
Location
Location
India , Chennai, Bangalore
Salary
Salary:
Not provided
ambconline.com Logo
AMBC
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Perform Web Application and API Security testing aligned with OWASP Top 10 using tools such as Burp Suite, Postman, and Tenable Nessus
  • Conduct Secure Code Reviews (manual and SAST-based) to identify vulnerabilities in source code and recommend remediation steps
  • Integrate and validate security controls within CI/CD pipelines for continuous testing and compliance
  • Assess application, microservice, and infrastructure security gaps, and support teams with remediation planning
  • Define and review hardening standards, TLS configurations, and integration security controls
  • Collaborate with developers, architects, and DevOps teams to embed “Shift Left” security practices during SDLC stages
  • Document findings, prepare detailed security assessment reports, and assist in mitigation validation
  • Stay updated with emerging threats, vulnerabilities, and security best practices to strengthen product security posture
  • Work Experience 3 to 6 years
Job Responsibility
Job Responsibility
  • Perform Web Application and API Security testing aligned with OWASP Top 10 using tools such as Burp Suite, Postman, and Tenable Nessus
  • Conduct Secure Code Reviews (manual and SAST-based) to identify vulnerabilities in source code and recommend remediation steps
  • Integrate and validate security controls within CI/CD pipelines for continuous testing and compliance
  • Assess application, microservice, and infrastructure security gaps, and support teams with remediation planning
  • Define and review hardening standards, TLS configurations, and integration security controls
  • Collaborate with developers, architects, and DevOps teams to embed “Shift Left” security practices during SDLC stages
  • Document findings, prepare detailed security assessment reports, and assist in mitigation validation
  • Stay updated with emerging threats, vulnerabilities, and security best practices to strengthen product security posture
Read More
Arrow Right

Infrastructure Senior Technology Analyst

The Infrastructure Senior Technology Analyst is an intermediate level role respo...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6+ years' experience in I.T
  • 5+ years hands-on experience on middleware webhosting and application server products
  • Bachelor's degree in computer science or related field or equivalent combination of education and experience
  • Experience in IT security compliance and implementation and use of security protocols (SSL, Server certificates)
  • Good experience using Java, J2EE, XML, SQL and Shell/Perl/python/PowerShell Scripting in UNIX/Wintel environment
  • Experience in modernization of traditional web/app applications to Redhat Openshift containers & external Cloud
  • Reasonable experience with AI tools to automate current pain points in workflow
  • Familiarity with Compliance and risk management frameworks and methodologies (ISO27002, SDLC)
  • Initiative and ability to perform under pressure
  • Strong leadership, interpersonal and communication skills
Job Responsibility
Job Responsibility
  • Create complex project plans and perform impact analyses
  • Solve/work high impact problems/projects and provide resolutions to restore services
  • Drive Root Cause Analysis (RCA) post restoration of service
  • Design testing approaches, complex processes, reporting streams, and create automation of repetitive tasks
  • Review requirement documents, define hardware requirements and examine and update processes and procedures
  • Provide technical/strategic direction and act as advisor/coach to lower-level analysts
  • Develop projects required for design of metrics, analytical tools, benchmarking activities and best practices
  • Provide expertise in application hosting technologies with specialized emphasis on IBM technologies (WebSphere/WebLogic Application Server, WebLogic Forms and Reports, IHS)
  • Provide expertise in other web hosting technologies like Microsoft IIS, Apache, Tomcat
  • Provide expertise in Java/J2EE deployments and Operating system scripting
  • Fulltime
Read More
Arrow Right

API Business Analyst

The Digital S/W Engineer Intmd Analyst is a developing professional role. Deals ...
Location
Location
India , Pune; Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong analytical and quantitative skills
  • Data driven and results-oriented
  • Experience in running high traffic, distributed, cloud based services
  • Experience in affecting large culture change
  • Experience leading infrastructure programs
  • Skilled at working with third party service providers
  • Excellent written and oral communication skills
  • Bachelor’s/University degree or equivalent experience
Job Responsibility
Job Responsibility
  • Address a variety of responses to problems, questions, or situations by applying established criteria to directly influence development outcomes
  • Responsible for applications systems analysis and programming activities
  • Accountable for development, design, construction, testing and implementation and write secure, stable, testable and maintainable code
  • Expected to operate with autonomy
  • Engage in digital applications development, risk technology, Middleware, Mainframe applications, Non Mainframe applications, Analytic Model Development and Application support activities to meet specific business needs of user areas and to test systems to ensure integrity of deliverables
  • Expected to provide sound understanding of application development concepts and principles and a basic knowledge of concepts and principles in other technology areas
  • On occasion, may need to consult with users, clients and other technology groups on issues and recommend programming solutions for customer exposed systems
  • Take the time to fully learn the functionality, architecture, dependencies, and runtime properties of the systems involved with your projects
  • Understand the business context and the associated customer use cases
  • Understand the team’s technologies and are able to evaluate system designs and architecture as you participate in solution discussions, development and the creation of application / systems documentation
  • Fulltime
Read More
Arrow Right

Java Technology Lead

We are seeking a skilled and experienced Java Technology Lead to join our dynami...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 8-12 years of proven experience as a Java Developer or Java Technology Lead, with a strong background in Java-based technologies
  • In-depth knowledge of Java (JDK 8+), Spring Framework (Spring Boot, Spring MVC, Spring Security), Hibernate, RESTful APIs, and Microservices architecture
  • Experience with cloud platforms (AWS, Azure, Google Cloud) and containerization (Docker, Kubernetes)
  • Strong experience with relational databases (e.g., Oracle)
  • Knowledge of version control tools such as Git and CI/CD pipelines
  • Experience in Agile/Scrum methodologies
  • Excellent problem-solving skills and the ability to think critically in complex technical situations
  • Strong leadership, mentoring, and team management experience
  • Excellent communication and interpersonal skills, with the ability to work effectively with cross-functional teams
  • Bachelor’s degree in computer science, Engineering, or related field (or equivalent experience)
Job Responsibility
Job Responsibility
  • Lead and manage a team of Java developers, providing technical direction and mentorship to ensure timely and high-quality project delivery
  • Design, develop, and maintain robust, scalable, and efficient Java applications
  • Collaborate with cross-functional teams, including product managers, business analysts, and other technology leads, to define and refine technical requirements and solutions
  • Conduct code reviews to ensure adherence to best practices, standards, and guidelines
  • Troubleshoot, debug, and optimize existing applications to improve performance and scalability
  • Lead the architecture and design of Java applications, ensuring they align with the organization’s long-term technical vision
  • Stay current with emerging trends in Java technologies and incorporate relevant tools and practices into the development process
  • Provide technical leadership and guidance on the full software development lifecycle (SDLC), from requirements gathering to design, implementation, testing, and deployment
  • Oversee and drive automation of build, deployment, and testing processes to improve productivity
  • Ensure the implementation of security best practices and code quality standards
  • Fulltime
Read More
Arrow Right

Automation Tester

We are looking for a QA Engineer to ensure the reliability, functionality, and p...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.inetum.com Logo
Inetum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in software testing
  • Strong knowledge of SDLC (Software Development Life Cycle) and STLC (Software Testing Life Cycle)
  • Proficiency in writing test cases, test plans, and test scripts
  • Familiarity with bug-tracking and test management tools like JIRA or TestRail
  • Knowledge of testing methodologies such as black-box, white-box, regression, and exploratory testing
  • Experience with test automation frameworks like Tosca, Selenium, Playwright
  • Knowledge of CI/CD pipelines and integration of automated tests in DevOps workflows
  • Strong analytical and problem-solving skills
  • Good level of English and French (B1)
Job Responsibility
Job Responsibility
  • Design, develop, and execute test plans, test cases, and test scripts
  • Perform functional, regression, integration, performance, and security testing
  • Identify, document, and track bugs and defects in collaboration with development teams
  • Work closely with developers, product managers, and business analysts to understand requirements and define test strategies
  • Automate test cases using industry-standard tools and frameworks
  • Conduct API testing using tools like Postman or SoapUI
  • Participate in agile development processes
  • Ensure compliance with security, performance, and regulatory standards in the banking sector
  • Contribute to the continuous improvement of QA processes, tools, and best practices
What we offer
What we offer
  • Full access to foreign language learning platform
  • Personalized access to tech learning platforms
  • Tailored workshops and trainings to sustain your growth
  • Medical subscription
  • Meal tickets
  • Monthly budget to allocate on flexible benefit platform
  • Access to 7 Card services
  • Wellbeing activities and gatherings
  • Fulltime
Read More
Arrow Right

Architecture Senior Analyst – DBA and Goldengate

This job description provides a high-level review of the types of work performed...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of working experience
  • Experience with private or public cloud database solutions
  • Experienced as Solutions Architect to meet business needs
  • Concepts and architectural expertise with commercial RDBMS systems
  • Oracle, SQL Server, MongoDB, MS SQL, PostgreSQL
  • Experience with database high availability solutions and architecture
  • Expert on Oracle concepts and architecture
  • Expert on Oracle RAC systems
  • Experience with Oracle Data Guard and database backups
  • Expert on data compression and table partitioning techniques
Job Responsibility
Job Responsibility
  • Make changes to the existing Data Model (Logical & Physical), Implement Changes, build deployment packages and promote them to higher environments (UAT, Production and Cob) following SDLC
  • Excellent understanding on Database concepts including Procedures, Triggers, Packages, Database Constraints, Indexes using Oracle 19c
  • Should be able to help in finding current issues and provide solutions to improve performance
  • Working knowledge of Linux Redhat, File System, Cluster Management and Oracle ASMC and ACFS
  • System analysis and design skill with knowledge of data flow diagrams, data dictionary techniques, case tools, Entity relation Modeling, design Technique etc
  • Database Design Skill including normalization theory, STAR Schema Design and Data Modeling tool with proven experience of Process, Data flow and forward/reverse engineering of logical/physical RDBMS layout
  • Ensure weekend activities complete successfully through assignment, coordination, oversight and validation. This may require weekend work
  • Experience with Oracle Golden Gate 19c implementation and support will be an added advantage
  • Respond to customer requests regarding outages, performance degradation and project status
  • Maintain flexible work schedules, which may include evenings, weekends or holidays to work on deployments or regularly scheduled maintenance
  • Fulltime
Read More
Arrow Right

Full Stack Developer

The Full Stack Developer is a senior level position responsible for establishing...
Location
Location
Canada , Mississauga
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6-10 years of relevant experience in Apps Development or systems analysis role
  • Java, C#, Springboot, Angular, CSS, HTML, Javascript
  • RDBMS, SQL
  • Concurrency, Multi-Threading
  • REST API, API security, Microservices
  • XML and JSON
  • Web services (SOAP, REST, etc.)
  • Modern source control, build and continuous integration solutions
  • Windows scripting (Powershell, Shell)
  • Tomcat application server
Job Responsibility
Job Responsibility
  • Take ownership of key projects and components and responsible for all phases of the SDLC including analysis and design, development, testing and deployment
  • Partner with multiple management teams to ensure appropriate integration of functions to meet goals as well as identify and define necessary system enhancements to deploy new products and process improvements
  • Resolve variety of high impact problems/projects through in-depth evaluation of complex business processes, system processes, and industry standards
  • Provide expertise in area and advanced knowledge of applications programming and ensure application design adheres to the overall architecture blueprint
  • Utilize advanced knowledge of system flow and develop standards for coding, testing, debugging, and implementation
  • Develop comprehensive knowledge of how areas of business, such as architecture and infrastructure, integrate to accomplish business goals
  • Provide in-depth analysis with interpretive thinking to define issues and develop innovative solutions
  • Serve as advisor or coach to mid-level developers and analysts, allocating work as necessary
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency
  • Make meaningful contribution towards platform migration & Continuity Of Business exercises
  • Fulltime
Read More
Arrow Right

GCP Senior Data Platform Engineer

HSBC is seeking an experienced professional for the role of GCP Data Platform Te...
Location
Location
Poland
Salary
Salary:
Not provided
https://www.hsbc.com Logo
HSBC
Expiration Date
January 01, 2026
Flip Icon
Requirements
Requirements
  • Strong programming skills in Python (libraries, API connection, token usage)
  • demonstrable experience preparing and presenting architecture artefacts to design boards
  • experience providing feedback and technical knowledge to facilitate peer code review
  • using architecture patterns to accelerate decisions and design
  • experience with cloud and cloud architectures in GCP (GCP cloud composer, BigQuery, dataflow, Google Cloud Storage, Service accounts, GCP pub/sub, etc.)
  • knowledge of a wide range of technologies and solutions, using these to design creative and innovative solutions
  • a track record of owning and delivering solutions across a broad spectrum of the project delivery lifecycle involving mixed-shore resource in a complex stakeholder environment
  • the ability to communicate efficiently upwards (to business), downwards (to IT teams) and laterally (to peers, vendors, and client-side staff)
  • familiarity with technology concepts, roles, and terminology, and the ability to work closely with application architects and modelers
  • experience with API design and micro-service architectures
Job Responsibility
Job Responsibility
  • Work for the Data Platform Tech Manager, the Technical Lead needs to manage all technical aspects
  • define and maintain the technology stack and roadmap
  • provide key decisions in terms of stack, design and code quality
  • ensure the solution is aligned with HSBC standards in terms of architecture, controls, security, scalability, performance
  • resolve technical issues with help of the technical development Team and perform code reviews
  • under the direction and management of the Data Platform Manager and Product Owner, the Technical Lead will collaborate with the technical dev team, Scrum Master, Architect, Business Analysts providing the Data Requirements.
What we offer
What we offer
  • Competitive salary
  • annual performance-based bonus
  • additional bonuses for recognition awards
  • Multisport card
  • private medical care
  • life insurance
  • one-time reimbursement of home office set-up (up to 800 PLN)
  • corporate parties & events
  • CSR initiatives
  • nursery discounts
  • Fulltime
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.