Senior Software Cybersecurity Engineer
Core
Analyze software designs and implementations for security, identify vulnerabilities, and propose remediations throughout the software development lifecycle (SDLC) for cloud and container environments.
Role type
Senior IC software cybersecurity engineer (product security)
Builds
Secure software products and CI/CD pipelines for safety-critical communications and collaboration technologies
Domain
Cybersecurity, Cloud Infrastructure, Container Security, DevSecOps
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Threat modelling, risk assessment, security code reviews, Key Management, Identity and Access Management (IAM), Software Composition Analysis (SCA), Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Secret Detection, Vulnerability Management, Kubernetes security, Cloud security (AWS/Azure/GCP), Go, C#, Cryptography, Network protocols (HTTP, TCP, UDP, TLS), CI/CD pipeline integration
Preferred skills
Manual penetration testing, Web application security, Distributed systems design, SIEM/log analysis (Splunk, OSQuery), AI/ML security considerations, Privacy threat controls
Technologies
AWS, Azure, Google Cloud, Docker, Kubernetes, Go, C#, Splunk, OSQuery, OWASP, NIST, ISO 27001, CIS Controls, OWASP ASVS
Responsibilities
Perform threat modelling, risk assessments, and architecture reviews; Design and enforce Key Management and IAM controls; Oversee deployment of SCA, SAST, DAST, and Secret Detection tools in CI pipelines; Triage and validate security vulnerabilities; Support incident response and root cause analysis; Establish secure coding standards and DevSecOps practices
Seniority
Senior, hands-on IC