Product Security Test Engineer
Hewlett Packard Enterprise Company
- Aguadilla, PR
- Permanente
- Tiempo completo
As part of our HPE Operations Cybersecurity Lab, the Security Systems/Software Engineer and Tester will be responsible for supporting the design, development, and implementation of security solutions to enhance product and supply chain security and transparency. The scope of this role includes the development of product security tests, design and development of penetration tests to improve product security and factory environments, conducting cryptographic security testing and validation, and contributing to the development of automated solutions and tools to improve the efficiency of supply chain processes.In a typical day as a Security Systems/ SW Developer and Tester, you would...Designs security enhancements, updates, and programming changes for portions and subsystems of systems software, including operating systems, compliers, networking, utilities, databases, and Internet-related tools.
Analyzes design and determines coding, programming, and integration activities required based on security requirements and general objectives and knowledge of overall architecture of product or solution.
Design, develop, test, and maintain robust, scalable, and high-quality security and software solutions.
Supports application and systems security strategy, architecture and roadmaps, review application architectures, code and system services from a security perspective.
Writes and executes complete security testing plans, protocols, and documentation for assigned portion of application; identifies and debugs, and creates solutions for issues with code and integration into application architecture.
Leads a project team of other software systems engineers and internal and outsourced development partners to develop reliable, cost effective and high quality solutions for assigned systems portion or subsystem.
Collaborates and communicates with management, internal, and outsourced development partners regarding software systems design status, project progress, and issue resolution.
Represents the software systems engineering team for all phases of larger and more-complex development projects. Provides guidance and mentoring to less-Education and Experience Required:
- Bachelor's or Master's degree in Computer Science, Information Systems, or equivalent.
- Typically 4-6 years experience.
- Expertise in multiple software systems design tools and languages.
- Experience of relational database management systems and their query languages (e.g. SQL)
- Strong Experience writing software using any modern language and technology stack, i.e Python, Javascript, and frameworks for building APIs and user interfaces
- Knowledge of tools like Metasploit, Nmap, Burp Suite, Wireshark, vulnerability scanning tools, network mapping, and packet analysis
- Experience in overall architecture of software systems for products, solutions and IT systems.
- Expertize working in a DevSecOps environment
- Knowledge of OWASP Top 10 vulnerabilities, web-based attacks (SQL injection, XSS, CSRF), and web protocols
- Experience with encryption methods and their applications
- Identifying and prioritizing potential security risks
- Strong analytical and problem solving skills.
- Designing software systems running on multiple platform types.
- Software systems testing methodology, including writing and execution of test plans, debugging, and testing scripts and tools.
- Excellent written and verbal communication skills; mastery in English and local language. Ability to effectively communicate product architectures, design proposals and negotiate options at management levels.
- Security Certifications: preferred ( CompTIA Security+, Certified Ethical Hacker (CEH), CompTIA PenTest+, Certified Security Testing Associate (CSTA), Offensive Security Certified Professional (OSCP)).
EngineeringJob Level:
TCP_03HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT employer. We do not discriminate on the basis of race, gender, or any other protected category, and all decisions we make are made on the basis of qualifications, merit, and business need. Our goal is to be one global team that is representative of our customers, in an inclusive environment where we can continue to innovate and grow together. Please click here: Equal Employment Opportunity.Hewlett Packard Enterprise is EEO Protected Veteran/ Individual with Disabilities.HPE will comply with all applicable laws related to employer use of arrest and conviction records, including laws requiring employers to consider for employment qualified applicants with criminal histories.
eQuest