India
5 days ago
Product Security Lead

This role required to define and implement security strategies, policies, and standards for software products, Lead the integration of security best practices into the software development lifecycle, conduct security threat assessments, identify vulnerabilities, and develop mitigation strategies, manage vulnerability detection, tracking, and resolution across product lines, collaborate with development teams to ensure timely remediation of security issues, ensure product security aligns with industry standards such as OWASP, ISO 27001, and NIST, maintain awareness of evolving security threats and proactively improve security defenses, conduct security training sessions for developers, testers, and product teams, foster a security-first culture across engineering teams.

You have:

9+ years of experience in software development or testing within Telecommunications Networks, with expertise in cloud-native design and development.Hands on experience with any vulnerability management tool (Ex, VAMS)Involved with Security tests (Black duck hub, Tenable, Codenomicon, Malware, NMAP, NetSparker, DOS/DDOS attack, etc) and report analysis.Design for Security and privacy kept in mind. Ensure that Design for Security & Privacy methodologyWorking knowledge on secure protocols (TLS/DTLS/SSH ), Encryption methodology, Ciphers etc.

It would be nice if you also had:

Knowledge on cloud, containerization and related security aspectsKnowledge about the security architecture of the product.Any Certification on Security Management is an added advantageExposure to SAFe agile methodologies will be a plus.Handle security and privacy aspects of CSCF product.Able to understand telecom security topics and do impact analysis on products / feature areas.Interface with Customer teams, Product management and connect well internally with feature teamsContribute to R&D improvements from product security point of view.Handle/manage SOC, Threat & Risk analysis for a product, conduct security threat assessments, identify vulnerabilities, and develop mitigation strategies.Perform risk assessments on existing and new software products.Guide development teams in implementing secure coding practices, secure design principles, and code review processes.Develop tools and frameworks to automate security testing in CI/CD pipelines.
Confirm your E-mail: Send Email
All Jobs from Nokia