热门公司

招聘

职位ABB

Application/Product Security Engineer

ABB

Application/Product Security Engineer

ABB

Krakow; Lodz

·

On-site

·

Full-time

·

1w ago

At ABB, we help industries run leaner and cleaner—and every person here makes that happen. You’ll be empowered to lead, supported to grow, and proud of the impact we create together. Join us and help run what runs the world.

This position reports to:

Software Product Development Team Leader:

__

We are an international pioneering technology leader that is writing the future of industrial digitalization. At the forefront is our Corporate Technology Center which provides industry leading software and deep domain expertise to help the world’s most asset-intensive industries solve their biggest challenges.

To strengthen our team in IIoT Platform and Applications stream, we are looking for a Application/Product Security Engineer, who is an effective team player with excellent communication skills. As an IIoT P&A stream we are developing unified approach for software which consists of set of services and apps with individual lifecycles hosted on top of ABB common platforms for on-prem execution and cloud. Seize this unique opportunity and see your work transformed into a hive of tangible products.

As an Application/Product Security Engineer you will be working with cross-functional and agile teams which operates in an international environment.

The work model for the role is: hybrid

You will be mainly accountable for:

  • Security Assessments: Conduct regular security assessments, including threat modeling, At-tack Surface Analysis, Critical Analysis.
  • Security Architecture: Design and implement security architecture and controls for new and existing products.
  • Code Review: Review source code for security vulnerabilities and provide actionable feedback to development teams.
  • Secure Coding Practices: Educate and advocate for secure coding practices among development teams through workshops, training sessions, and documentation.
  • Tool Implementation: Evaluate and implement application security tools (e.g., static and dynamic analysis tools) to automate security testing processes.
  • Incident Response: Assist in incident response activities related to application security breaches, including root cause analysis and remediation strategies.
  • Collaboration: Work closely with cross-functional teams, including software developers, DevOps, and IT security, to ensure security considerations are integrated into the development process.
  • Monitoring and Reporting: Monitor application security metrics and provide regular reports to management on security posture and compliance.

Qualifications for the role:

  • University degree in Computer Science or similar field
  • Understanding of programming languages such as Java, C#, Python, or JavaScript.
  • Strong understanding of application security principles and secure coding practices.
  • Strong understanding of application security principles like network security, encryption, access management and their best practices
  • Experience with security tools and processes such as SAST, DAST, SCA, and vulnerability scanners (e.g., Sonar Qube, OWASP ZAP, Nessus, Invicti)
  • Knowledge of security frameworks (e.g., OWASP Top Ten, NIST, ISO 27001), cloud platforms (e.g., AWS, Azure, Google Cloud) and their security features
  • Hands on experience with containerization and orchestration tools such as Docker and Kubernetes
  • Fluency in English
  • Certifications: Relevant certifications such as Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP), or Offensive Security Certified Professional (OSCP) are a plus

Building a cleaner, smarter future takes all kinds of minds: the curious, the courageous, and the creative. That's why we welcome people from all backgrounds and experiences.

Ready to make an impact?

Apply today or visit [

https: //www.abb.com](https://www.abb.com) to learn more about the impact of our solutions across the globe.

总浏览量

0

申请点击数

0

模拟申请者数

0

收藏

0

关于ABB

ABB

ABB

Public

ABB is a multinational technology corporation that provides electrification, robotics, automation, and motion solutions for industrial and infrastructure applications.

10,001+

员工数

Zurich

总部位置

$28.5B

企业估值

评价

3.5

3条评价

工作生活平衡

3.0

薪酬

2.0

企业文化

2.5

职业发展

3.5

管理层

2.0

35%

推荐给朋友

优点

Award ceremonies and achievement recognition

Professional experience opportunities

Relevant marketing and writing experience

缺点

Awards only recognize sales and leadership teams

Auxiliary departments excluded and understaffed

No cost of living raises provided

薪资范围

405个数据点

Mid/L4

Senior/L5

Mid/L4 · Project Manager

102份报告

$117,433

年薪总额

基本工资

$109,179

股票

-

奖金

$8,254

$79,130

$175,443

面试经验

5次面试

难度

3.8

/ 5

时长

14-28周

录用率

20%

体验

正面 0%

中性 60%

负面 40%

面试流程

1

Application Review

2

Phone Screen

3

Technical Interview

4

System Design/Panel Interview

5

Onsite/Final Round

6

Offer Decision

常见问题

Technical Knowledge

System Design

Behavioral/STAR

Past Experience

Problem Solving