Product Security Engineer
Product Security Engineer
This role has been designated as 'Remote/Teleworker', which means you will primarily work from home.
Who We Are:
Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work.
We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today's complex world.
Our culture thrives on finding new and better ways to accelerate what's next.
We know varied backgrounds are valued and succeed here.
We have the flexibility to manage our work and personal needs.
We make bold moves, together, and are a force for good.
If you are looking to stretch and grow your career our culture will embrace you.
Open up opportunities with HPE.
Job Description:
Role and Responsibilities:
* Assist in the success of the Secure SDLC program for HPE Aruba Networking products
* Assist in the execution of product compliance assessments against various frameworks (e.g.
NIST SSDF, NIST SP 800-218, SP 800-53, CIS Benchmarks)
* Assist in the development and/or maintenance of GRC and SDLC tooling implementations, including scripting and automation.
* Operate as a representative of HPE Aruba in working groups, with government representatives, and with auditors.
* Provide consulting, information, and advice to product teams around implementing and improving the maturity of our SDLC.
* Document known issues and provide information to product teams in a manner which allows for easy interpretation and corrective actions to be performed.
* Monitor worldwide government standards and communicate to management and product teams when changes are made that may impact an existing control or introduce new requirements.
* Minimal travel (approximately 5-10%) may be required at times.
Qualifications and Education Requirements (We do not expect a single candidate to meet every one of these requirements.
An ideal candidate would meet three or more of these qualifications):
* BS in Information Security, Computer Science, or related technical field.
* A background in software security, either academic or work experience, including reverse engineering, vulnerability classes such as buffer overflows and their prevention, web application security, and/or cloud security.
* Programming knowledge of at least one programming language with the ability to look at source code and figure out what it's doing.
* Familiarity with the purpose of tools such as IDEs, compilers, source code revision control systems, ASPM, SCA and code scanners.
* Minimum 3 years of experience working directly in software engineering or in an adjacent field with exposure to the software engineering environment.
* Experience conducting risk assessments, threat modeling, and/or compliance assessments.
This includes the application of frameworks such as ISO 2700...
- Rate: Not Specified
- Location: Sacramento, US-CA
- Type: Permanent
- Industry: Finance
- Recruiter: Hewlett Packard Enterprise Company
- Contact: Not Specified
- Email: to view click here
- Reference: HPE1US1189436EXTERNALENUS
- Posted: 2025-06-15 08:23:16 -
- View all Jobs from Hewlett Packard Enterprise Company
More Jobs from Hewlett Packard Enterprise Company
- Floater
- Probationary Position
- Area Sales Manager (m/w/d)
- Registered Nurse (NICU)
- Accounting Clerk
- Patient Access Registrar
- Security Officer
- Registered Nurse (MICU)
- Registered Nurse (MICU)
- Teacher I
- Community Health Worker - Maternity
- Supply Technician
- Physical Therapist II
- Cafeteria Cashier
- Emergency Department Tech
- Emergency Department Tech
- Emergency Department Tech
- Histotechnician I - Lab PD
- Procurement Manager
- Production Worker Relief Operator 2nd shift