ironquill.tech/board

$ cat jobs/product-security-engineer-inmar-intelligence-7a8d6cf2a969.json

Product Security Engineer

inmar intelligence·US·United States·mid
Apply on himalayas → Get AI match score →
The Product Security Engineer is responsible for conducting comprehensive security assessments on various products, including mobile applications, IoT hardware/firmware, compiled software, and browser extensions. This role involves identifying vulnerabilities, developing mitigation strategies, and collaborating with cross-functional teams to enhance security. The engineer will use both offensive and defensive security tactics to safeguard products and manage third-party risk. This role contributes to the organization's mission by safeguarding the supply chain and managing third-party risk. Primary Accountabilities: Technical (70%) Conduct comprehensive security assessments of mobile applications, IoT hardware / firmware, compiled software and browser extensions. Perform reverse engineering and vulnerability analysis, and penetration testing to uncover security risks. Analyze binary file formats (PE, ELF, Mach-O) and runtime behaviors for security flaws. Review browser extensions and software plugins for security flaws and compliance with best practices. Perform product data analysis to identify potential vulnerabilities and determine access scope. Operational (30%) Collaborate with cross-functional teams (e.g. - engineering, product, and security) to enhance security measures and improve resilience against cyber threats. Develop and recommend mitigation strategies and risk profiles for identified vulnerabilities. Document findings and communicate security recommendations to both technical and non-technical audiences. Maintain organizational product inventory with security assessment status and secure configuration requirements. Responsible for the production and maintenance of security documentation, such as bill of material repositories and analytical procedure guides. Required Qualifications: Bachelors of Science in a related field, such as Computer Science, Electrical Engineering, or Cyber Security 5-7 years of relevant experience in software exploitation, revers