招聘
福利待遇
•Healthcare
•401(k)
•Equity
•Parental Leave
•Learning
•Commuter
必备技能
Security Architecture
Threat Modeling
Linux Security
Go
Python
C/C++
Kubernetes
Container Security
About the Job :
Red Hat Product Security is looking for a Product Security Engineer (PSE) to join our global Resilient Development team. Red Hat's Resilient Development Team focuses on Secure Development and improving proactively the security posture of our Products and Services portfolio and their build pipelines. As a PSE working in the Secure Software Development team you will work to improve the security posture of our offerings. Your main responsibility will be to perform security architecture reviews and threat modeling, and the review of additional security testing of our offerings throughout the development lifecycle, in collaboration with Engineering and other Product Security teams, to make sure the expectations of our Secure Software Development Framework implementation are met. This process includes analyzing and documenting architecture from a security point of view, questioning security assumptions, finding potential problems, proposing improvements, performing code reviews, defining testing expectations, and promoting secure development best practices from our offerings through to their related open source communities. In other words, you will represent the security needs of our customers to our offering teams, advocating and planning for a solid foundation of security across the open source ecosystem.
Successful applicants must reside in a state where Red Hat is registered to do business.
What will you do?
-
Engage with Engineering teams to promote security-aware development of Red Hat technologies/solutions.
-
Understand current and emerging threats in the enterprise software product and service space.
-
Analyze complex software systems and identify potential weaknesses in their architecture.
-
Plan and carry out threat modeling activities, and realistic threat simulations across our offerings.
-
Consult with software developers and product teams on improved security architecture.
-
Ensure that product roadmaps and new features mitigate risk, adhere to security policies, and provide customers with minimal security risk.
-
Contribute to customer-facing security documentation, technical references, and other data as used by the Common Vulnerabilities and Exposures (CVE) pages.
-
Promote Red Hat Product Security efforts within the community and the greater public.
What will you bring?
-
Bachelor's degree in computer science/engineering or equivalent/relevant work experience.
-
Strong understanding of common security vulnerabilities, (e.g. OWASP Top Ten) including how to detect, demonstrate, mitigate and resolve them.
-
Good understanding of Linux security technologies and product security experience; for example:
-
POSIX permissions, ACLs, SELinux;
-
Seccomp, Linux namespaces and cgroups;
-
Linux administrations related to security: secure boot, TPMs, trusted execution environment, Linux boot chain, virtualization, containers and hypervisor security.
-
Experience with one or more programming languages like Go, Python, C/C++, and a willingness to learn new ones.
-
Knowledge and experience with modern container orchestration systems: Kubernetes, Openshift; comfortable with container technologies.
-
Work experience and/or certifications with cloud providers and cloud-related technologies (AWS, Azure, GCP, etc).
-
Ability to work with minimal supervision, in a fast-paced environment with a multicultural team distributed across multiple countries and time zones.
-
Solid communication and negotiation skills. Excellent collaboration skills and dedication as a teammate.
The following will be considered a plus:
-
Familiarity with open-source software and open-source as a business model.
-
Linux-specific and/or security-related certifications (e.g. RHCSA, RHCE, RHCA, CISSP, CISM, CSSLP, CISA etc).
About Red Hat
Red Hat is the world’s leading provider of enterprise open source software solutions, using a community-powered approach to deliver high-performing Linux, cloud, container, and Kubernetes technologies. Spread across 40+ countries, our associates work flexibly across work environments, from in-office, to office-flex, to fully remote, depending on the requirements of their role. Red Hatters are encouraged to bring their best ideas, no matter their title or tenure. We're a leader in open source because of our open and inclusive environment. We hire creative, passionate people ready to contribute their ideas, help solve complex problems, and make an impact.
Inclusion at Red Hat Red Hat’s culture is built on the open source principles of transparency, collaboration, and inclusion, where the best ideas can come from anywhere and anyone. When this is realized, it empowers people from different backgrounds, perspectives, and experiences to come together to share ideas, challenge the status quo, and drive innovation. Our aspiration is that everyone experiences this culture with equal opportunity and access, and that all voices are not only heard but also celebrated. We hope you will join our celebration, and we welcome and encourage applicants from all the beautiful dimensions that compose our global village.
Equal Opportunity Policy (EEO)
Red Hat is proud to be an equal opportunity workplace and an affirmative action employer. We review applications for employment without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, citizenship, age, veteran status, genetic information, physical or mental disability, medical condition, marital status, or any other basis prohibited by law.
Red Hat does not seek or accept unsolicited resumes or CVs from recruitment agencies. We are not responsible for, and will not pay, any fees, commissions, or any other payment related to unsolicited resumes or CVs except as required in a written contract between Red Hat and the recruitment agency or party requesting payment of a fee.
Red Hat supports individuals with disabilities and provides reasonable accommodations to job applicants. If you need assistance completing our online job application, email application-assistance@redhat.com. General inquiries, such as those regarding the status of a job application, will not receive a reply.
总浏览量
1
申请点击数
0
模拟申请者数
0
收藏
0
相似职位

Senior Business Security Officer
Invesco · Henley-on-Thames, Oxfordshire

Senior Systems Security Engineer (Anti-Tamper/Program Protection) - P3 (Onsite)
Collins Aerospace (RTX) · 3 Locations

Staff Security Engineer
Twelve Labs · Remote US- CA

Sr. Product Security Engineer (Starlink)
SpaceX · Bastrop, TX

Senior Principal Software Security Engineer - S3E
Raytheon (RTX) · US-AZ-TUCSON-801 ~ 1151 E Hermans Rd ~ BLDG 801 (External Site)
关于Red Hat

Red Hat
AcquiredRed Hat, Inc. is an American software company that provides open source software products to enterprises and is a subsidiary of IBM. Founded in 1993, Red Hat has its corporate headquarters in Raleigh, North Carolina, with other offices worldwide.
10,001+
员工数
Raleigh
总部位置
$34B
企业估值
评价
4.0
10条评价
工作生活平衡
3.2
薪酬
4.1
企业文化
4.3
职业发展
3.4
管理层
3.8
72%
推荐给朋友
优点
Great benefits and health coverage
Supportive management and leadership
Good compensation and pay
缺点
Work-life balance challenges and long hours
Communication issues and lack of direction
Fast-paced and stressful environment
薪资范围
993个数据点
Junior/L3
Mid/L4
Senior/L5
Junior/L3 · Associate Consultant
70份报告
$103,140
年薪总额
基本工资
$95,867
股票
-
奖金
$7,273
$67,733
$158,007
面试经验
2次面试
难度
4.0
/ 5
时长
14-28周
体验
正面 0%
中性 50%
负面 50%
面试流程
1
Screening Test
2
Phone Interview
3
Multiple Interview Rounds
4
Onsite
新闻动态
ABBYY, IBM & Red Hat announce DocLang, open source universal document format - Computer Weekly
Computer Weekly
News
·
5d ago
AlmaLinux OS Kitten 10 Adds i686 User-Space Packages - Phoronix
Phoronix
News
·
5d ago
Christians can follow Trump or Christ, but not both | Opinion - The Tennessean
The Tennessean
News
·
1w ago
Why this apparel brand's Phillies hat is catching heat from the left - USA Today
USA Today
News
·
1w ago