Product & Solution Security Professional - Pune, India - Siemens Technology and Services Private Limited

    Default job background
    Permanent
    Description

    Hello Visionary

    We empower our people to stay resilientand relevant in a constantly changing world. We're looking for people who arealways searching for creative ways to grow and learn. People who want to make areal impact, now and in the future.

    Does that sound like you? Then it seemslike you'd make a great addition to our vibrant team.

    Siemens founded the new business unit SiemensAdvanta (formerly known as Siemens IoT Services) on April 1, 2019 with itsheadquarter in Munich, Germany. It has been crafted to unlock the digitalfuture of its clients by offering end-to-end support on their outstandingdigitalization journey. Siemens Advanta is a strategic advisor and a trustedimplementation partner in digital transformation and industrial IoT with aglobal network of more than 8000 employees in 10 countries and 21 offices.Highly skilled and experienced specialists offer services which range fromconsulting to craft & prototyping to solution & implementation andoperation – everything out of one hand.

    We are looking for a Product &Solution Security Professional

    You'll make a difference by:

    Mandatory Skills -

    ·Needsto be specialized in at least one/two of different areas: Secure Architecture& Design, Threat & Risk Analysis, Secure Project Integration. Networksecurity – firewall & network IDS, IPS

    ·PSSEwill be primarily involved in the secure architecture and design, definessecure design principles, supports selection of secure suppliers andtechnologies and the development of secure configuration standards and securitytopics such as IDS, security patch management or Anti-Virus systems must beconsidered. Also, as part of project integration- defines, supervises, andtests the components/ subsystems with regards to system security, defines andestablishes zones and conduits taking physical security concerns into accountand prepares and performs security handover of complex systems to customers.

    ·Supportsand consults the project leaders in implementing the required product &solution security.

    ·Supportsproject teams in conducting the corresponding security activities during theproject execution process and / or services.

    ·Cansupport multiple projects and should occupy the function for the main part ofis defined working time.

    ·Reportsto the Project / Functional Lead and the Product & Solution SecurityOfficer.

    ·Specificationand maintenance of secure coding, secure design guidelines, configuration, andhardening guidelines

    ·Synchronizeadequately with Information Security organization to ensure architecture anddesign, and integration IT-infrastructure is sufficiently secure.

    ·Specificationand maintenance of security requirements for the project. Support for meetinginternational and regional security standards and regulations (like IEC62443,ISO27000, CENELEC, NIST, SANS) in the project.

    ·Planningand performing threat and risk analysis and definition of countermeasures inline with risk acceptance criteria of organization.

    ·Evaluationof third-party components regarding product & solution security.

    ·Clearanceof implementation and documentation of security critical components (e.g.,cryptographic functions, hidden function, firewall settings)

    ·Verificationof implementation regarding security requirements (e.g., as part of systemtest, factory, or site acceptance test). This includes recommendation andcreation of security testing tools.

    ·Validation(e.g., friendly hacking, penetration testing) to ensure that implementationfulfills security expectations.

    ·Involvementin the analysis and handling of security vulnerabilities & incidents.

    ·Soundunderstanding of Product and solution security topic.

    ·Handson experience of Threat and Risk Analysis (TRA)

    ·Supportingthe systems engineering for security issues.

    ·Monitoringand evaluation of vulnerabilities and security incidents

    ·Assessmentof security-related requirements

    ·Proficientin MS Word, Excel (Writing Macros) and PowerPoint Management and Reporting

    ·Exhibitingexcellent communication and analytical skills

    DesiredSkills:

  • 9+ years of experience is required.
  • GreatCommunication skills.
  • Analytical and problem-solvingskills

  • Join us and be yourself

    We value your unique identity and perspectiveand are fully committed to providing equitable opportunities and building aworkplace that reflects the diversity of society. Come bring your authenticself and create a better tomorrow with us.

    Make your mark in our exciting world atSiemens.

    This role is based in Pune and is anIndividual contributor role. You might be required to visit other locationswithin India and outside. In return, you'll get the chance to work with teamsimpacting - and the shape of things to come. We're Siemens. A collection ofover 379,000 minds building the future, one day at a time in over 200countries. We're dedicated to equality, and we welcome applications thatreflect the diversity of the communities we work in. All employment decisionsat Siemens are based on qualifications, merit and business need. Bring yourcuriosity and imagination and help us shape tomorrow.