Jobs
>
Austin

    Product Security Engineer - Austin, United States - Xylem

    Xylem
    Default job background
    Description

    Were Hiring for a Product Security Engineer

    If you are excited and passionate about helping #LetsSolveWater, consider joining our team today Xylem, Inc. is a leading global water technology company servicing more than 150 countries and is dedicated to solving the worlds most challenging water issues. We are looking for individuals to join our mission by exceeding customer expectations through smart sustainable solutions. At Xylem, you will have the opportunity to solve water by participating in our paid Volunteer Program, Xylem Watermark

    As member of Xylems Product Security team, the Senior Product Security Engineer is responsible for the implementation and execution of security programs and practices to support a growing, global water technology company. This position will work across software and firmware development teams to identify component and system level technical risks and evaluate critical failure points, determine technical security controls to mitigate risks, and work with cross functional teams to implement features according to product road maps.

    You will support security standards implementation, penetration testing and PSIRT programs of for our entire product portfolio. Your passion for security and in-depth knowledge of Product Security will ensure that you deliver high impact results.

    Essential Duties/Principal Responsibilities:

    Work with the business, devops and systems teams to support security integration into implementing new solutions, products and modules

    Conduct security architecture and technical assessments for a wide range of products, including embedded devices, enterprise software solutions, and mobile apps

    Engage in application and domain-specific threat modeling and attack surface analysis and reduction

    Provide guidance and leadership on best practices regarding security in software and firmware development

    Champion the Xylem security SDLC. This includes security testing, penetration testing, and identifying and fixing vulnerabilities in software and applications on all Xylem products.

    Implement or manage the implementation of common application security controls

    Assist other developers in remediating vulnerability findings by providing line-by-line guidance.

    Provide training and education to developers on software security best practices.

    Deliver key shared services to Xylem business units in the areas of software security, risk management, product inventory, and security testing

    Required Qualifications:

    Minimal education & experience, essential skills & abilities and required license/certification to perform this job.

    BS in Computer Science or equivalent with 7 to 10 years of experience

    Demonstrated expertise in product/application security architecture, Network security, application security, web services

    Experience with SAST, DAST, SCA and penetration testing tools

    In-depth experience identifying and protecting against web application and web service security vulnerabilities including those found in the OWASP Top 10 IoT Top 10 and CWE Top 25

    Meaningful experience in multiple programming languages

    Solid knowledge of the browser security model, crypto, and network security. Attacker mindset: Real passion for breaking all the things unbreakable.

    Knowledge of secure infrastructure architectures, application architectures, encryption, Cloud Security and broader security technologies.

    Strong operating systems knowledge Windows (all flavors), Debian Linux

    Experience on firmware security or IoT security or platform Security any one is a must.

    IoT network technologies (such as Bluetooth/BLE, WLAN, Z-Wave, Zigbee, identity/auth security)

    Experience with wireless technologies such as CDMA, E-HRPD, GSM, UMTS, TDS-CDMA, LTE-FDD / LTE-TDD, and 5Gexperience with Android RIL, Telephony, C and Embedded RTOS.

    Scripting knowledge Linux scripting (bash), Windows scripting, Python or Perl

    Awareness of secure coding, especially in OWASP top 10

    Good knowledge or experience in software security such as crypto, encryption, PKI, web security

    OSCP & GWAPT

    Preferred Qualifications:

    Relevant cyber security certifications

    Scripting skills (i.e.: Ruby, Python, Perl, shell scripts)

    Experience in software development

    Experience with cloud IaaS security operations

    Valuable: Preferred: forensic analysis skills

    SALARY:

    The estimated salary range for this position is $150,000 to $170,000 plus bonus. Starting pay is dependent on multiple factors, such as skills, experience and work location, and is not typically at the top of the range. At Xylem we offer a competitive compensation package with a generous benefit package, including Medical, Dental, Vision plans, 401(k) with company contribution, paid time off, paid parental leave and tuition reimbursement.

    At Xylem, we embrace diversity and strive to create avenues where employees feel valued and appreciated through our DE&I initiatives and Employee Resources Groups (ERG). Xylem is proud to be an Equal Employment Opportunity and Affirmative Action workplace. Xylem prohibits discrimination, harassment of any kind and does not discriminate in employment on the basis of race, color, religion, sex or sexual orientation (including pregnancy and gender identity), national origin, political affiliation, marital status, medical conditions or disability, genetic information, age, or other non-merit factors.

    Join the global Xylem team today Xylem is a team creating advanced technology solutions to the worlds water challenges through developing new technologies and services that will improve the way water is used, conserved, and re-used in the future is central to our work. Our products and services move, treat, analyze, monitor, and return water to the environment, in public utility, industrial, residential, and commercial building services settings. Xylem also provides a leading portfolio of smart metering, network technologies and advanced analytics solutions for water, electric and gas utilities.

    Disclaimer: The information listed within this job description is designed to indicate the general nature of work expected for this position and shall not be viewed as a comprehensive inventory of all duties, responsibilities, and qualifications required in this position. Employees must be able to perform the essential functions of the position satisfactorily and if requested, reasonable accommodations will be made to enable employees with disabilities to perform the essential functions of their job absent undue hardship. Xylem reserves the right to modify this job description or assign other duties to this position as needed.


  • Beth Page tech

    Security Engineer

    4 hours ago


    Beth Page tech Austin, United States

    Job Description · Job DescriptionRole Security Engineer (Monitoring) · Location Cupertino (Remote but prefers local candidates just in case requested to come onsite.) · Job Description · 5+ years of experience with Python · Experience using pandas with data from sources like rela ...

  • Amazon

    Security Engineer

    3 weeks ago


    Amazon Austin, United States

    Amazon Web Services (AWS) provides companies of all sizes with an infrastructure web services platform in the cloud (Cloud Computing). With AWS you can requisition compute power, storage, and many other services gaining access to a suite of elastic IT infrastructure services as y ...

  • Uptime

    Security Engineer

    3 days ago


    Uptime Austin, United States

    Job Description · Job Description is a dynamic tech company in the website monitoring space. Our mission is to ensure seamless digital experiences for our clients' users. We are currently seeking a dedicated Security Engineer to join our team and play a vital role in maintaining ...

  • Zenoss

    Security Engineer

    3 weeks ago


    Zenoss Austin, United States

    Job Description · Job DescriptionWho is Zenoss? · Building an exceptional company starts with the right people. Zenoss recruits and retains high-caliber people with "can-do" attitudes, creates an environment where they can innovate and achieve their best, and rewards them for de ...

  • TEKsystems

    Security Engineer

    3 weeks ago


    TEKsystems Austin, United States

    Job Description · Job DescriptionTop Skills' Details · 1. Container security with admission control focus - performing regular upgrades to ensure that the latest version of container scanning across UAT and PROD environments Security experience. · 2. AWS - EKC, ESK, Fargate, ECR ...


  • Amazon Development Center U.S., Inc. Austin, United States Full time

    Help us protect not only the Amazon Web Services (AWS) cloud computing environment but all of our customers as well Since 2006, our great team at AWS has been enabling our customers to bring great ideas to life in ways that aren't possible in traditional IT environments. With AWS ...


  • CrowdStrike, Inc. N/A, United States

    About the Role: · Help us protect the Security Cloud from the most advanced threats As a Sr. Security Engineer in Product Security, you will work hand-in-hand as a Security Partner to product engineers designing and implementing new services across our various Product teams to en ...


  • SADA Austin, United States

    Join SADA as a Security Solutions Engineer · Your Mission · Are you deeply passionate about security technologies, particularly within the Google Cloud environment? Are you a technical security expert driven by the challenge of solving intricate problems for clients? If you hav ...


  • CORRIDOR Aviation Service Software Austin, United States

    CAMP Systems is the leading provider of aircraft compliance and health management services to the global business aviation industry. CAMP is the pre-eminent brand in its industry and is the exclusive recommended service provider for nearly all business aircraft manufacturers in t ...


  • TEKsystems Austin, United States

    : Job Description · We are currently seeking to fill a full time position for a Network Security Engineer within the Security Architecture and Engineering team, part of LPLs Technology Information Security organization. This individual will be focusing on complex, enterprise lev ...


  • Amazon Services LLC Austin, United States Full time

    In Amazon Stores, we ship some of the widest arrays of technology found at any · company. From to world class machine learning pipelines, from · cutting-edge digital healthcare to no-checkout retail, we push the boundaries of · technology in every direction using the globe's ...


  • Advanced Micro Devices , Inc. Austin, United States

    Overview: · WHAT YOU DO AT AMD CHANGES EVERYTHING · We care deeply about transforming lives with AMD technology to enrich our industry, our communities, and the world. Our mission is to build great products that accelerate next-generation computing experiences the building bloc ...


  • Dice Austin, United States

    Dice is the leading career destination for tech experts at every stage of their careers. Our client, The HT Group, is seeking the following. Apply via Dice today · Our client is seeking a Senior Security Engineer in Austin (Hybrid) Full Time. · Duties/Responsibilities: · Deplo ...


  • Procore Technologies Austin, United States

    Job Description · Job DescriptionJob Description · We're on the lookout for a Senior Security Engineer specializing in Detection and Response, to become a vital part of Procore's Cybersecurity Team. This role is designed for a professional who thrives on enhancing Security Orches ...


  • Shopify Austin, United States

    Company Description · About Shopify · Opportunity is not evenly distributed. Shopify puts independence within reach for anyone with a dream to start a business. Since 2006, weve grown to over 10,000 employees and generated over $500 billion in sales for millions of merchants in ...


  • NVIDIA Austin, United States

    NVIDIA is searching for a highly motivated, creative engineer with experience in low-level system software and background in security to join the GPU System Software team. You will focus on offensive security efforts in our production GPU kernel driver and embedded software. · G ...


  • Circle Austin, United States

    Circle is a financial technology company at the epicenter of the emerging internet of money, where value can finally travel like other digital data — globally, nearly instantly and less expensively than legacy settlement systems. This ground-breaking new internet layer opens up p ...


  • CORRIDOR Aviation Service Software Austin, United States

    CAMP Systems is the leading provider of aircraft compliance and health management services to the global business aviation industry. CAMP is the pre-eminent brand in its industry and is the exclusive recommended service provider for nearly all business aircraft manufacturers in t ...


  • Braze Austin, United States

    At Braze, we have found our people. Were a genuinely approachable, exceptionally kind, and intensely passionate crew. · We seek to ignite that passion by setting high standards, championing teamwork, and creating work-life harmony as we collectively navigate rapid growth on a gl ...


  • Amazon Services LLC Austin, United States Full time

    In Amazon Stores, we ship some of the widest arrays of technology found at any · company. From to world class machine learning pipelines, from · cutting-edge digital healthcare to no-checkout retail, we push the boundaries of · technology in every direction using the globe's ...