Summary As a Product Security Analyst, you will be collaborating with development teams to complete security testing and tool development for our GEHC products. You will be responsible for Performing VAPT for thick and thin clients, webservices, embedded devices and cloud. Conducting Compliance/Benchmark assessments using DISA Stigs/CIS Benchmarks .Review, Test and Suggest best practices for Cryptography, PKI (web and non-web perspective). Conducting Source code review and discuss with development teams in mitigating the issues and eliminating false positives.
GE Healthcare is a leading global medical technology and digital solutions innovator. Our mission is to improve lives in the moments that matter. Unlock your ambition, turn ideas into world-changing realities, and join an organization where every voice makes a difference, and every difference builds a healthier world.
Roles and Responsibilities
You are a skilled Analyst who enjoys security work and is an expert in systems security, product / OT security and application security.
In this role, you will:
Work with product managers, independent researchers, and in-house researchers to identify, rate, report and manage product vulnerabilities and incidents.
Be responsible for providing technical leadership and defining, developing, and evolving security within software in a fast-paced and agile development environment using the latest secure software development technologies and infrastructure.
Work with Cyber Security Leaders and SMEs to understand product requirements
Translate security requirements / vision into a prioritized list of user stories, completing work according to required timelines and quality standards
Assist security champions in completing Threat Modeling and Architecture Risk Analysis on product features
Perform Security Code Reviews, Vulnerability Analysis and research on application code
Coach and mentor developers to implement cryptography solutions securely (PKI, Code Signing, Stored Secrets, et cetera)
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.