Aptiv

Senior Engineer - Product Security

Aptiv Bengaluru, Karnataka, India

Automation Machinery Manufacturing · 10,001+ employees

20 h ago
Mid (2-5 yrs) Full-time India
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

You will collaborate with engineering and software development teams to implement secure-by-design infrastructure and security controls for cloud-native solutions. Your role involves managing vulnerability assessments, penetration testing, and pipeline automation to ensure high levels of software security.

What they look for

AWS Azure Infrastructure as Code DevSecOps Application security API security Penetration testing Python Container hardening Vulnerability management Coverity BurpSuite Trivy Prisma Cloud Tenable CrowdStrike

Requirements

The role requires 3-5 years of IT security experience with proficiency in public cloud management and DevSecOps technologies. Candidates must hold a bachelor's degree in Computer Science or a related engineering field and possess strong programming skills in Python.

Benefits

Health insurance Dental insurance Life insurance Short-term disability coverage Long-term disability coverage RRSP matching Flexible time-off policies Employee assistance program Learning benefits LinkedIn Learning subscription

Full description

ABOUT WIND RIVER  

Wind River is a global leader in delivering software for mission-critical intelligent systems. For more than four decades, the company has been an innovator and pioneer, powering billions of systems that require the highest levels of security, safety, and reliability.   

Wind River helps customers across automotive, aerospace, defense, industrial, medical, and telecommunications industries solve complex technology challenges on their journey toward the new intelligent machine economy. The company’s software powers generation after generation of the safest, most secure systems in the world.  Examples include playing a key role in NASA space missions such as Artemis I, the James Webb Space Telescope, and multiple Mars rovers. We’ve achieved recent 5G milestones including the world’s first successful 5G data session with Verizon and building one of the largest Open RAN networks in the world with Vodafone.  

The company has received industry recognition for its technology innovation and leadership, and for its workplace culture, including global Great Place to Work certification and being named a “Top Workplace” for ten consecutive years. If you want to be part of a unique culture where the lived experience is based on our cultural attributes of growth mindset, customer-focus, and diversity, equity, inclusion & belonging, come join us and help advance the future software defined world.  

   YOUR ROLE 

As a Security Engineer at Wind River, you will play a pivotal role in our mission. You’ll work closely with Product Engineering, Software Development, QA, and our customer-facing teams to ensure requisite levels of infrastructure, applications, and software security. Collaboration and teamwork are key, as you'll actively participate in global projects, working with colleagues from around the world. Your responsibilities will span from providing secure by-design hybrid infrastructure and security controls implementation for cloud-native solutions. To succeed in this role, you should have 3-5 years of IT security experience, be proficient in public cloud management leveraging IAC, and possess a strong understanding of DevSecOps technologies, pioneering new security tools, processes and capabilities for cloud-native solutions. A proactive mindset, solid technical skills, and the ability to work autonomously are essential.

What You'll Do

  • Deep understanding and hands-on experience in AWS and Azure native services
  • Secure OnPrem and Public Cloud environments leveraging IAC and policy as code
  • Practical hands-on application security, API security and Penetration testing
  • Good understanding of security tools Coverity, BurpSuite, Trivy, Prisma Cloud , Tenable, CrowdStrike etc.
  • Working experience in container and cluster hardening
  • Excellent programming skills using Python
  • Proficiency in pipeline automation leveraging Gitlab, Jenkins, Jira etc.
  • Strong foundation of vulnerability management, remediation, and troubleshooting skills
  • Proactive and adaptable with a willingness to learn

Required Skills

Education & Experience 

  • Bachelor's in Computer Science, Electronics/Electrical Engineering, or related field.
  • you should have 3-5 years of IT security experience, be proficient in public cloud management leveraging IAC, and possess a strong understanding of DevSecOps technologies.

Technical Skills

  • Practical hands-on application security, API security and Penetration testing
  • Good understanding of security tools Coverity, BurpSuite, Trivy, Prisma Cloud , Tenable, CrowdStrike etc.

IT’S WHAT WE OFFER YOU

  • Hybrid work model for workplace flexibility
  • Comprehensive health, dental, and life insurance
  • Short and long-term disability coverage
  • RRSP matching for financial security
  • Flexible time-off policies for work-life balance
  • Employee assistance program for mental well-being
  • Learning benefits, including a LinkedIn Learning subscription and seminars

“Windriver is an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, gender identity, sexual orientation, disability status, protected veteran status or any other characteristic protected by law”

#LI-MS5

Privacy Notice - Active Candidates: https://www.aptiv.com/privacy-notice-active-candidates

Aptiv is an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, gender identity, sexual orientation, disability status, protected veteran status or any other characteristic protected by law.