Senior Product Security Analyst
Are you a Product Security Analyst expert looking for a challenging opportunity?
Join our Product Security team.
We operate at the heart of the digital transformation of our business. Our team is responsible for Product Security including application security for our global organization.
Partner with the best.
We are looking for a Senior Product Security Analyst, with a focus in Product Security. In this role, you will work in a team and demonstrate working knowledge of systems and products and how they are secured in customers' businesses.
As a Senior Product Security Engineer, you will be responsible for:
Being responsible for providing technical leadership and defining, developing, and evolving security within software in a fast-paced and agile development environment using the latest secure software development technologies and infrastructure.Working with Cyber Security Leaders and SMEs to understand security requirementsPerforming penetration testingCollaborating with product and engineering teams to integrate security into the software development lifecycle (SDLC).Conducting threat modeling, design reviews, and code reviews to identify and mitigate security vulnerabilities.Performing static and dynamic application security testing (SAST/DAST), and manage results and remediation efforts.Leading security assessments of new and existing products, including third-party components and APIs.Developing and maintain secure coding guidelines and best practices.Supporting incident response and forensic investigations related to product security.Staying current with emerging threats, vulnerabilities, and security technologies.Assisting security champions in completing Threat Modeling and Architecture Risk Analysis on product featuresProviding guidance and advice on writing secure code that meets standards and delivers desired functionality, using the technology selected for the projectUnderstanding application security methodologies and frameworksLeveraging Baker Hughes Digital’s tailored Secure SDL practice into specific engineering engagementsResearching new application security technologies and implement them to improve application security.Maintaining a backlog of security-related tools that will improve the maintainability and security of our code and the pace of developmentPromoting best practices based on OWASP, SANS Top 25, and the Baker Hughes Digital SDL.Fuel your passion
To be successful in this role you will:
Have Bachelor's Degree in Computer Science or “STEM” Majors (Science, Technology, Engineering and Math). A minimum 2 years of professional experience in STEM related degree, Political Science/Government/International Affairs.Desired Characteristics
Have Detailed working knowledge of two modern programming languages, such as java, python, or rubyHave Strong written and oral communication skills and successful security consulting background.Have at least 2 years of security consulting involvement with development team(s) that delivered software-based servicesHave Experience in developing secure applicationsHave a high energy and a result-oriented attitude/approach, with an understanding of release timelines and the need to enable development teams, not slow them downHave experience with Security Development Lifecycle processesHave Contribute to and lead discussions and communications within the team and outside, including customers and other business unitsHave Strong knowledge of Object Oriented Analysis and Design, Software Design Patterns and coding principlesHave Experience with penetration testing tools, ability to replicate security defects uncovered by groups such as red teamHave Good understanding of security tools and technologies to facilitate secure development.Working with us
Our people are at the heart of what we do at Baker Hughes. We know we are better when all our people are developed, engaged and able to bring their whole authentic selves to work. We invest in the health and well-being of our workforce, train and reward talent and develop leaders at all levels to bring out the best in each other.
Working for you
Our inventions have revolutionized energy for over a century. But to keep going forward tomorrow, we know we must push the boundaries today. We prioritize rewarding those who embrace change with a package that reflects how much we value their input. Join us, and you can expect: