Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Senior Product Security Engineer @ Red Hat

Home > Devops






 Senior Product Security Engineer

Job Description

About the Job :
Product Security Engineer (PSE) to join our global Resilient Development team. Red Hat''s Resilient Development Team focuses on Secure Development and improving proactively the security posture of our Products and Services portfolio and their build pipelines. As a PSE working in the Secure Software Development team you will work to improve the security posture of our offerings. Your main responsibility will be to perform security architecture reviews and threat modeling, and the review of additional security testing of our offerings throughout the development lifecycle, in collaboration with Engineering and other Product Security teams, to make sure the expectations of our Secure Software Development Framework implementation are met. This process includes analyzing and documenting architecture from a security point of view, questioning security assumptions, finding potential problems, proposing improvements, performing code reviews, defining testing expectations, and promoting secure development best practices from our offerings through to their related open source communities. In other words, you will represent the security needs of our customers to our offering teams, advocating and planning for a solid foundation of security across the open source ecosystem.
Successful applicants must reside in a state where Red Hat is registered to do business.
What will you do?
  • Engage with Engineering teams to promote security-aware development of Red Hat technologies/solutions.
  • Understand current and emerging threats in the enterprise software product and service space.
  • Analyze complex software systems and identify potential weaknesses in their architecture.
  • Plan and carry out threat modeling activities, and realistic threat simulations across our offerings.
  • Consult with software developers and product teams on improved security architecture.
  • Ensure that product roadmaps and new features mitigate risk, adhere to security policies, and provide customers with minimal security risk.
  • Contribute to customer-facing security documentation, technical references, and other data as used by the Common Vulnerabilities and Exposures (CVE) pages.
  • Promote Red Hat Product Security efforts within the community and the greater public.
What will you bring?
  • Bachelor''s degree in computer science/engineering or equivalent/relevant work experience.
  • Strong understanding of common security vulnerabilities, (e.g. OWASP Top Ten) including how to detect, demonstrate, mitigate and resolve them.
  • Good understanding of Linux security technologies and product security experience; for example:
- POSIX permissions, ACLs, SELinux;
- Seccomp, Linux namespaces and cgroups;
- Linux administrations related to security: secure boot, TPMs, trusted execution environment, Linux boot chain, virtualization, containers and hypervisor security.
  • Experience with one or more programming languages like Go, Python, C/C++, a nd a willingness to learn new ones.
  • Knowledge and experience with modern container orchestration systems: Kubernetes, Openshift; comfortable with container technologies.
  • Work experience and/or certifications with cloud providers and cloud-related technologies (AWS, Azure, GCP, etc).
  • Ability to work with minimal supervision, in a fast-paced environment with a multicultural team distributed across multiple countries and time zones.
  • Solid communication and negotiation skills. Excellent collaboration skills and dedication as a teammate.
The following will be considered a plus:
  • Familiarity with open-source software and open-source as a business model.
  • Linux-specific and/or security-related certifications (e.g. RHCSA, RHCE, RHCA, CISSP, CISM, CSSLP, CISA etc).

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: Engineering - Software & QA
Role Category: DevOps
Role: Site Reliability Engineer
Employement Type: Full time

Contact Details:

Company: Red Hat
Location(s): Mumbai

+ View Contactajax loader


Keyskills:   architecture kubernetes enterprise software python software development virtualization cissp threat modeling security testing gcp security architecture linux container orchestration cisa aws red hat programming azure

 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Lead Software Engineer, Cloud Site Reliability (SRE)

  • Icertis
  • 7 - 12 years
  • Pune
  • 3 days ago
₹ Not Disclosed

GCP Devops Engineer

  • Zuci Systems India
  • 4 - 8 years
  • Chennai
  • 3 days ago
₹ Not Disclosed

Devops Engineer

  • Peoplelogic Business
  • 7 - 12 years
  • Hyderabad
  • 3 days ago
₹ Not Disclosed

Software Engineer, Cloud Site Reliability (SRE)

  • Icertis
  • 6 - 11 years
  • Pune
  • 5 days ago
₹ Not Disclosed

Red Hat

Founded in 1993, Red Hat is the premier Linux and open source provider. The most recognized Linux brand in the world. We serve global enterprises through technology and services made possible by the open source model. Solutions include Red Hat Enterprise Linux operating platforms, sold through a sub...