Product Security Engineer

Aspen TechnologyMedina, MN
2d

About The Position

The driving force behind our success has always been the people of AspenTech. What drives us, is our aspiration, our desire and ambition to keep pushing the envelope, overcoming any hurdle, challenging the status quo to continually find a better way. You will experience these qualities of passion, pride and aspiration in many ways — from a rich set of career development programs to support of community service projects to social events that foster fun and relationship building across our global community. The Role Digital Grid Management (DGM) is looking for a Product Security Engineer to join our Research & Development department. This role will help protect our clients, enable teams to deliver secure development, and position us for future security needs. As a Product Security Engineer, you will help drive mitigation of risk through activities such as managing risks and vulnerabilities, facilitating assessments and communication with internal and external customers, and ensuring security documentation and compliance with security lifecycle activities for product security releases. This role will work closely with development teams, development leadership, and teams across the organization. The Product Security Engineer will support the development and execution of product security strategic efforts to meet business and technology objectives. This role will also maintain a vigilant awareness of industry threats, standards, regulations, and best practices to enhance our security profile.

Requirements

  • Bachelor's degree in computer science, computer engineering, electrical engineering, or related technical field.
  • 1-3+ years of experience in Industrial Control Systems required.
  • Knowledge of information security regulatory requirements for privacy, secure by design, secure by default and defense in depth.
  • Demonstrated ability to plan, design, develop, deploy, and maintain application security best practices.
  • Ability to create automations of typical vulnerability management and other security processes.
  • Ability to write security material for in house and customer consumption in a concise manner that is appropriate for the audience.
  • Maintains a broad understanding of information security including ISO27001/2, NIST 800, NERC CIP and information security frameworks and regulations.

Responsibilities

  • Responsible for supporting the design, implementation, and oversight of Product Secure Development Lifecycle. Including aspects such as security requirements, secure architecture/design, risk assessment, threat models, security scanning, triage, vulnerability management, security design reviews, and product security validation/verification.
  • Assist in the administration of product security practices to product teams, technology, and security champions across the organization.
  • Drive Product Security efforts to resolve challenges, enable automation, and impact organization security culture.
  • Monitor information security best practices, standards, regulations, industry threats and risks for improvements to product security practices.
  • Maintain a deep understanding of current issues in the realm of information security.
  • Maintain awareness of major industry changes and trends and assess the impact of all emerging issues on systems and practices at AspenTech Digital Grid Management.
  • Monitor security bulletins and alert from all AspenTech information system vendors.
  • Evaluate vulnerability impact and formulate and execute risk mitigation plans for product security.
  • Member of the AspenTech Security Emergency Response Team (ASERT) providing expert analysis of security customer reported security incidents.
  • Works with information resource owners during and after security incidents; work with product teams for analysis; recommends best practices and solutions.
  • Where appropriate, work with product teams, technology teams, client support, and customer contacts.

Benefits

  • paid time off
  • charitable giveback day
  • medical/dental/vision insurance
  • retirement benefits
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service