Arrow Electronics, Inc. Logo

Arrow Electronics, Inc.

Industrial Cybersecurity Engineer - Embedded/DevSecops

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in Hinjawadi, Pune, Mahārāshtra, IND
Senior level
Remote
Hiring Remotely in Hinjawadi, Pune, Mahārāshtra, IND
Senior level
Lead industrial cybersecurity activities for embedded systems: perform vulnerability assessments, threat modeling, firmware security testing, static and software composition analysis, enforce standards (IEC 62443, ISO 27001, NIST), investigate incidents, and integrate DevSecOps practices into CI/CD pipelines.
The summary above was generated by AI
Position:Industrial Cybersecurity Engineer - Embedded/DevSecops

Job Description:

Key Responsibilities
•    Conduct vulnerability assessments, coordinate penetration testing activities, and perform risk analysis.
•    Support secure system architecture reviews and threat modeling initiatives.
•    Enforce organizational security policies, standards, and procedures.
•    Investigate security incidents and lead root cause analysis along with remediation actions.
•    Ensure alignment with relevant standards such as IEC 62443, EN18031, and ISO 27001.
•    Support cybersecurity compliance initiatives including IEC 62443, EU CRA, ISO 27001, and NIST frameworks.
•    Maintain security documentation, playbooks, and incident response plans.
•    Ensure secure design principles are applied, including least privilege, defense in depth, and secure defaults.
•    Validate secure implementation of requirements and mitigation strategies.
•    Perform security testing on firmware releases from development teams.
•    Apply Static Code Analysis techniques to identify security vulnerabilities in code.
•    Conduct Software Composition Analysis to support software supply chain security.
•    Participate in unit testing and secure code reviews.
•    Continuously improve security practices by staying informed on emerging threats, tools, and industry practices.
•    Collaborate with DevOps and engineering teams to integrate security practices within CI/CD pipelines.
Required Qualifications
•    Minimum 5 years of experience in industrial cybersecurity or IT/OT security environments.
•    Engineering degree or equivalent experience in Software Engineering, Computer Science, or Cybersecurity.
•    Strong programming skills in C and C++.
•    Solid understanding of encryption algorithms, key management, and secure protocols such as TLS and SSH.
•    Knowledge of common software vulnerabilities including OWASP Top 10 and CWE/SANS Top 25.
•    Familiarity with Linux, Windows, RTOS environments, and network protocols such as TCP/IP, DNS, and HTTPS.
•    Understanding of industrial communication protocols including Serial, Modbus, and HART.
•    Familiarity with cybersecurity frameworks and standards such as IEC 62443, ISO 27001, NIST, and OWASP.
•    Self-motivated with the ability to work effectively in a collaborative team environment.
•    Experience working with Software Bill of Materials (SBOM).
Preferred Qualifications
•    Experience implementing DevSecOps practices within software development lifecycles.
•    Hands-on experience with Azure DevOps or similar CI/CD platforms.
 

Location:IN-MH-Pune, India-Blue Ridge-Hinjewadi (eInfochips)

Time Type:Full time

Job Category:Engineering Services

Similar Jobs

5 Hours Ago
Easy Apply
Remote
India
Easy Apply
Senior level
Senior level
Cloud • Security • Software • Cybersecurity • Automation
As a Senior Backend Engineer, you will design backend features for supply chain security, implement policies, and manage integrations, focusing on security and performance in a collaborative environment.
Top Skills: GoGraphQLPostgresRedisRestRuby On Rails
5 Hours Ago
Easy Apply
Remote
India
Easy Apply
Senior level
Senior level
Cloud • Security • Software • Cybersecurity • Automation
As a Staff Backend Engineer, you'll design backend architecture for AI governance, ensuring auditability and compliance, while collaborating with engineering teams to enhance product capabilities.
Top Skills: ClickhouseGraphQLPostgresPythonRest ApisRuby On Rails
5 Hours Ago
Easy Apply
Remote
India
Easy Apply
Senior level
Senior level
Cloud • Security • Software • Cybersecurity • Automation
The Staff Backend Engineer will lead the architecture and development of backend systems for enhancing GitLab's Software Supply Chain Security, focusing on security, performance, and compliance.
Top Skills: Ci/CdContainer OrchestrationDockerGoRuby On RailsSigstore

What you need to know about the Pune Tech Scene

Once a far-out concept, AI is now a tangible force reshaping industries and economies worldwide. While its adoption will automate some roles, AI has created more jobs than it has displaced, with an expected 97 million new roles to be created in the coming years. This is especially true in cities like Pune, which is emerging as a hub for companies eager to leverage this technology to develop solutions that simplify and improve lives in sectors such as education, healthcare, finance, e-commerce and more.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account