Job Role: Product Security Engineer
Location: Bangalore
Experience: 5+ years
Work Mode: Hybrid
Category: Product and Engineering
Cisco is looking for an experienced Product Security Engineer to secure firmware running on its enterprise networking devices. You will work with the Device Trust Assurance team and contribute to vulnerability management, secure development lifecycle, and automated security testing frameworks.
Key Responsibilities
- Implement and maintain SecDevOps practices across the full Secure Development Lifecycle.
- Build automated security testing frameworks: static, dynamic and fuzz testing.
- Run secure CI/CD pipelines with integrated security controls.
- Collaborate with engineering teams to apply security-by-design principles.
- Develop and maintain SDL security metrics.
- Triage security issues from Cisco’s public bug bounty program.
- Mentor teams on SecDevOps tools and practices.
Qualifications
- 5+ years of experience in software or firmware security.
- Strong knowledge of Linux, embedded systems, and secure development practices.
- Programming experience in Python, Go or Ruby, plus C/C++ for embedded systems.
- Hands-on experience with build tools like OpenWrt, Yocto, GNU toolchain and U-Boot.
- Experience with Jenkins, GitLab CI, Docker, Kubernetes.
- Familiarity with SAST, DAST, SCA and container security tools.
- Strong documentation and communication skills.
- Experience working with distributed global teams.
Bonus Skills
- Agile development experience.
- Embedded or IoT security background.
- Experience with fuzzing, pentesting or static analysis tools.
- Knowledge of AI, ML, networking protocols and industry security standards.
- Security certifications like CCNA/CCNP Security, CISSP, CEH.
📌 Apply Now:
https://careers.cisco.com/global/en/job/1449571/Product-Security-Engineer-5-yrs
Disclaimer:
This job information is based on details available on the official Cisco Careers page. Please refer to the company website for the most accurate and updated information before applying.