HTC Global Services

Software Product Security Engineer

HTC Global Services$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree required.
  • 6+ years of IT experience demanded.
  • 4+ years in software development essential.
  • Proficiency in two coding languages or advanced expertise in one required.
  • Familiarity with software development lifecycle needed.
  • Background in cybersecurity, web applications, and web technologies favored.
  • Strong troubleshooting and problem-solving skills required.

Responsibilities

  • Guide development teams in addressing security findings from various testing reports.
  • Act as the communication bridge between engineers and security stakeholders.
  • Consult on secure architecture and coding practices across multiple cloud platforms.
  • Automate security testing in CI/CD pipelines with DevOps collaboration.
  • Assist teams in managing technical debt and software supply chain risks.
  • Communicate complex security issues effectively to diverse stakeholders.
  • Support activities for cybersecurity compliance across the organization.

Benefits

  • Hybrid work environment promoting flexibility and work-life balance.
  • Opportunity for professional development and training.
  • Engagement with cutting-edge security technologies and practices.
  • Collaboration with cross-functional teams for enriched knowledge sharing.
  • Involvement in strategic decision-making for security risk management.
Full Job Description
Software Product Security Engineer

Overview / Summary

We are seeking a Software Product Security Engineer to work closely with development and security teams to identify, prioritize, and remediate software security risks. This role will help translate security risks into practical actions while supporting secure architecture, application security, cloud security, software development, and cybersecurity compliance activities.

The ideal candidate understands the developer perspective while bringing a strong cybersecurity and risk-management mindset. This role requires the ability to work through technical and business considerations and help development and business teams make appropriate security decisions.

Key Responsibilities
  • Guide development teams in triaging and remediating findings from SAST, DAST, SCA, and bug bounty/vulnerability reports.
  • Serve as a liaison between engineering and security stakeholders, translating security risks into practical and prioritized actions.
  • Consult on secure architecture, API security, IAM, logging, and secure coding practices across Azure, GCP, and AWS cloud platforms.
  • Integrate and automate security testing within CI/CD pipelines in collaboration with platform and DevOps teams.
  • Help development teams manage technical debt, upgrade paths, software supply chain risks, and SBOM-related risks.
  • Communicate complex technical risks clearly to engineering and business stakeholders.
  • Support cybersecurity compliance activities.
  • Work with development and business teams to evaluate technical and security considerations and arrive at appropriate security decisions.

Required Qualifications
  • Bachelor's degree.
  • 6+ years of experience in IT.
  • 4+ years of development experience.
  • Practical experience in two coding languages or advanced practical experience in one coding language.
  • Experience with software development and the Software Development Lifecycle.
  • Experience with cybersecurity and web applications/web technologies.
  • Experience with scripting and troubleshooting/problem solving.
  • Experience with TCP/IP and network protocols and standards.
  • Experience with data integrity and data/analytics dashboards.
  • Experience with application development and software development.
  • Knowledge of cybersecurity, information security, and network security.
  • Knowledge of IAM, JSON, Python, Java, JavaScript, or other listed development technologies is applicable based on experience.
  • Strong analytical and problem-solving skills.

Preferred Qualifications
  • Master's degree.
  • Certifications such as CISSP, CISA, or CISM.
  • Experience with cloud computing and cloud infrastructure.
  • Experience with Google Cloud Platform.
  • Experience with risk management, risk assessment, and business risk management.
  • Experience with solution/application architecture.
  • Experience with penetration testing and tools such as Burp Suite.
  • Experience with Spring Security, Spring Boot, J2EE, Apache Tomcat, React, JQuery, Salesforce, Pega, Dynatrace, or SharePoint.
  • Knowledge of ISO 27001.
  • Experience with disaster recovery, change control, configuration management, and tooling.
  • Experience with Linux, network security, and application design.

#LI-Hybrid #LI-KK1

About HTC Global Services

HTC Global Services is a global provider of IT and Business Process Services and Solutions. Founded in 1990, HTC is headquartered in Troy, Michigan with delivery centers across multiple locations in North America, Europe, India, and Malaysia. HTC is an Inc. 500 Hall of Fame company and has been recognized by numerous industry and trade publications as a top provider of services. HTC has a strong client base of Global 2000 customers. HTC has a strong focus on healthcare, retail, financial services, and automotive verticals. HTC has a strong commitment to corporate social responsibility and has been recognized for its contributions to the community.
Learn more about HTC Global Services
Size
17,575 employees
Industry
Founded
1990
NASDAQ

Similar Jobs

More Jobs at HTC Global Services

More Information Technology Jobs

Find similar Software Product Security Engineer jobs: