Security Engineer (m/w/d)
Sign up free to see how well your resume matches this role.
What you'll do
- Support the product development during the specification and design of security features
- Support the review of the software architecture and design to ensure a “secure by design” product development
- Participate and provide technical input to the vulnerability scanning and analysis and scoring process and generate vulnerability reports
- Support security and penetration testing of our product lines
- Contribute to security certification work: Help preparing the product security target (ST), support a gap analysis and help collecting, managing and improving certification evidences
- Support tracking of certification maintenance and re-certification activities
- Support the specification development and maintenance of automated external (CVSS) and internal (Jira) vulnerability issue monitoring tools
- Integration of SBOM generation tools into the CI/CD pipeline
- Support the selection, configuration and integration of code analysis tools
What they're looking for
- Strong knowledge on operating systems, embedded systems, hypervisors or other types of safety and security critical software
- Strong knowledge of the ‘C’ programming language as well as Python, Shell scripting, tool interactions via REST API and various data formals like XML, Json or YAML
- Strong verbal and written communication skills, fluent English is a must
Nice to have
- Exposure to security certifications, e.g., in the avionic, industrial automation, railway or automotive is a plus
Summarised by NextRaise from the employer’s description, which follows in full below.
Full description from employer
Product Security Requirements
· Support the product development during the specification and design of security features
· Support the review of the software architecture and design to ensure a “secure by design” product development
· Participate and provide technical input to the vulnerability scanning and analysis and scoring process and generate vulnerability reports
· Support security and penetration testing of our product lines
Product Certification
· Contribute to security certification work: Help preparing the product security target (ST), support a gap analysis and help collecting, managing and improving certification evidences
· Support tracking of certification maintenance and re-certification activities
Tool Development and Maintenance
· Support the specification development and maintenance of automated external (CVSS) and internal (Jira) vulnerability issue monitoring tools
· Integration of SBOM generation tools into the CI/CD pipeline
· Support the selection, configuration and integration of code analysis tools
· Strong knowledge on operating systems, embedded systems, hypervisors or other types of safety and security critical software
· Strong knowledge of the ‘C’ programming language as well as Python, Shell scripting, tool interactions via REST API and various data formals like XML, Json or YAML
· Exposure to security certifications, e.g., in the avionic, industrial automation, railway or automotive is a plus
· Strong verbal and written communication skills, fluent English is a must
- An open, cooperative and particularly good working atmosphere
- A permanent employment contract in a modern, well-equipped workplace
- Exciting tasks and individual training opportunities
- Flexible working time model with core and flexitime
- Tutor and introduction week during the initial training period
- Mobile working
- Company events
Company
Company facts come from this company's own listings. We only show what the postings themselves carry.