Senior Product Security Engineer

Rockwell AutomationMayfield Heights, OH
77d

About The Position

Rockwell Automation is a global technology leader focused on helping the world’s manufacturers be more productive, sustainable, and agile. As a Product Security Engineer reporting to a leader in Digital Trust, you will play an important part in enhancing our security frameworks, policy and standards management. You will provide product security expertise to product development teams throughout all phases of our security development lifecycle, improve adoption of security practices, provide mentoring and guidance on secure design across the portfolio. This ensures our commitment to improve the security posture of our products and solutions. You will collaborate with and support engineering communities working on the latest technologies in software, artificial intelligence, cloud, and embedded systems.

Requirements

  • Bachelor's Degree.
  • Legal authorization to work in the US or Canada is required.

Nice To Haves

  • Typically requires 5+ years of experience in relevant product security areas.
  • Degree in Computer Engineering, Computer Science, Electrical Engineering, or similar discipline.
  • Experience in Operational Technology cybersecurity.
  • Experience in one of security domains: Secure SW Engineering, HW Security, Embedded Security, and other related fields.
  • Experience developing software, automated tests and tools in high-level languages like Python, with or without AI Augmentation.
  • Good understanding in disciplines such as Trusted platform module, Secure Boot, different cryptography technologies, web application security, network security, operating system internals and hardening.
  • Experience working with development teams to review design, construct threat models and secure coding practices.
  • Understanding of security by design principles and architecture level security concepts.
  • Experience with CI/CD environments, SAST and DAST tools.
  • Experience of industrial protocols, especially Common Industrial Protocol (CIP).
  • Industrial cybersecurity and/or information technology certifications such as 62443 CyberSecurity specialist, (ISC)² CISSP, or SANS GICSP - or you are ready to obtain it shortly.
  • Ability to travel, including internationally, up to 20% of time.

Responsibilities

  • Contribute to the refinement and rollout of security frameworks and policies.
  • Participate in organization wide cybersecurity activities, including risk assessments, roadmap development, and stakeholder engagement.
  • Partner with technical security thought leaders to evolve the SDL strategy and direction.
  • Represent the central security office function with external certifying bodies.
  • Participate in security architecture and design review meetings.
  • Review product architectures for security design gaps and vulnerabilities and consult with product teams to mitigate cyber risk.
  • Develop and maintain solutions to automate security governance processes and workflows.
  • Collaborate with DevSecOps and architecture teams to integrate automation into existing platforms and CI/CD pipelines.
  • Maintain knowledge of security threats and vulnerabilities for OT environment.
  • Provide product security related mentoring and security expertise.
  • Participate in standards and research opportunities outside of RA.

Benefits

  • Health Insurance including Medical, Dental and Vision.
  • 401k.
  • Paid Time off.
  • Parental and Caregiver Leave.
  • Flexible Work Schedule.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

Bachelor's degree

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service