채용
The Cyber Security Engineer III reports to the Product Security Assurance Leader and will be responsible for assessing and evaluating the security posture of a variety of Honeywell HCE Products and partner technologies. This role will be responsible for security services delivery, which may include use of web/application/network/Mobile/Cloud/AI ML/protocol/hardware/firmware security toolsets, detection of security defects, and remediation consultation of those weaknesses. Our services support the identification of potential attack techniques and serve as the foundation for continuously improving the product development lifecycle.
- Bachelor’s degree in computer science or software engineering, or equivalent experience
- Total Experience – Minimum 5 years
- 4+ years demonstrated experience in penetration testing
- 1+ years project management skills
Preferred Qualifications:
- 4+ years of pentesting experience preferably in – Web, Mobile, Network, Thick Client, API, Web services, Cloud, Containers, AI ML, Protocol fuzzing
- Has a Bachelor’s Engineering degree or equivalent, preferably in Computer Science
- Perform penetration tests (Manual & Automated) for products spanning Web, Mobile (Android and iOS), Cloud, Dockers, Containers and Thick Clients
- Reverse engineering of applications and detailed analysis of pen test results to identify the security vulnerabilities and suggest countermeasures for threat mitigation
- Good understanding of Secure Development Lifecycle processes
- Good knowledge of OWASP Top 10 and SANS Top 25 and how to effectively remediate vulnerabilities associated with each
- Knowledge of attack frameworks like MITRE, VASTO, CIS Benchmarks, Virtualization Assessment Toolkit to exploit virtualization systems
- Demonstrated manual product penetration testing experience; for example, simulate a SQL injection attack without using tools, simulate XSS attack, X-Path Injection, etc.
- Good knowledge and hands-on experience using various penetration testing tools and frameworks like Nessus, Web Inspect, Nmap, Burp Suite, App Scan, ZAP, Kali Linux tools, IDA Pro, GHidra, OWASP, Metasploit, Nessus, Nmap, MObSF, Genymotion, Frida, APK Tool
- Encryption tools and techniques for securing mobile and virtual machines
- Understanding of application protocols, development, and common attack vectors.
- Good cybersecurity capabilities and strong software engineering skills
- Scripting experience in Python, Powershell and Bash preferred.
- Experience working with other languages such as C, C++, Java, .NET or javascript.
- Excellent understanding of security by design principles and architecture level security concepts
- Experience and knowledge of penetration testing methodologies and tools
- Up to date knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities
- Familiarity with reverse engineering tools, debuggers, and dynamic analysis techniques
- Experience in integrating pentest tools to CI/CD pipeline
- Effective oral and written communication and negotiation skills
- Good interpersonal skills
- Experience in security testing within the appropriate domain
- Demonstrated project management skills.
- Ability to work with geographically distributed, cross-functional teams
Good to Have Skills:
- Certification such as CEH, OSCP, OSWE, CCSP, CCSK, GPEN, CRTO will be highly desirable
- Strong Secure SDLC concepts
- Public speaking at Technical Conferences
- Individual Contributor with Product Security Assurance Team, with minor team leadership accountabilities
- Provide mentorship, expertise and direction to junior team members
- Assist with onboarding internal team training
- Champion strategic Product Security initiatives
- Oversee and ensure client deliverables are on time, requirements are met
- Proactively anticipate escalations
- Lead initiatives to engineer better solutions
- Develop methodologies, determine scoping requirements
- Deliver Security Testing across all HCE products.
- Assist in the development of modular, repeatable, effective Security Testing processes
- Partner with Tools and Technology Team to select, implement, develop, and automate testing with appropriate tools.
- Work with cross functional teams to develop remediation suggestions
- Report observations using our standardized reporting structure
총 조회수
0
총 지원 클릭 수
0
모의 지원자 수
0
스크랩
0
비슷한 채용공고

SME - Azure DevOps, Terraform
HCL Technologies · Bengaluru, India

SME - Ansible, Terraform, GITHub
HCL Technologies · Bengaluru, India

CYBER SECURITY ANALYST L4
Wipro · Bengaluru, India

Network Automation Engineer
Databricks · Bengaluru, India
IT Systems Engineer - Devops Infra/Platforms
NXP Semiconductors · Bangalore
Honeywell 소개

Honeywell
PublicHoneywell International Inc. is an American publicly traded, multinational conglomerate corporation headquartered in Charlotte, North Carolina. It primarily operates in four areas of business: aerospace, building automation, industrial automation, and energy and sustainability solutions (ESS).
10,001+
직원 수
Charlotte
본사 위치
$130B
기업 가치
리뷰
2.3
2개 리뷰
워라밸
2.5
보상
3.5
문화
2.0
커리어
2.0
경영진
1.5
15%
친구에게 추천
장점
Good compensation potential
Competitive pay scale
단점
Poor communication from recruiters
Inadequate safety training
Poor management response to incidents
연봉 정보
901개 데이터
Director
Director · Director Cyber Security
1개 리포트
$287,455
총 연봉
기본급
$249,395
주식
-
보너스
-
$287,455
$287,455
면접 경험
3개 면접
난이도
3.0
/ 5
소요 기간
14-28주
합격률
33%
경험
긍정 0%
보통 33%
부정 67%
면접 과정
1
Application Review
2
Recruiter Screen
3
Technical Interview
4
Assessment/Testing
5
Final Interview
6
Offer
자주 나오는 질문
Technical Knowledge
Behavioral/STAR
Past Experience
Problem Solving
Culture Fit
뉴스 & 버즈
GF Fund Management CO. LTD. Buys 5,921 Shares of Honeywell International Inc. $HON - MarketBeat
MarketBeat
News
·
3d ago
Honeywell International Inc. $HON Shares Sold by Asset Management One Co. Ltd. - MarketBeat
MarketBeat
News
·
3d ago
EPA, EGLE, and Honeywell will begin work near the Lake Linden Recreation Area in June - The Keweenaw Report
The Keweenaw Report
News
·
4d ago
Petrobas picks Honeywell technology for SAF project in Brazil - Biofuels International Magazine
Biofuels International Magazine
News
·
4d ago