Simplify Logo

Full-Time

Product Security Engineer

Confirmed live in the last 24 hours

Xylem

Xylem

5,001-10,000 employees

Water technology solutions for sustainability

Hardware
Industrial & Manufacturing
Energy

Compensation Overview

$70.5k - $126.5kAnnually

Senior, Expert

Morton Grove, IL, USA

Category
Cybersecurity
IT & Security
Required Skills
Bash
Python
Communications
Perl
Android Development
Development Operations (DevOps)
Linux/Unix
Requirements
  • BS in Computer Science or equivalent with 5-years of experience
  • Demonstrated expertise in product/application security architecture, Network security, application security, web services
  • Experience with SAST, DAST, SCA and penetration testing tools
  • In-depth experience identifying and protecting against web application and web service security vulnerabilities including those found in the OWASP Top 10 IoT Top 10 and CWE Top 25
  • Meaningful experience in multiple programming languages
  • Solid knowledge of the browser security model, crypto, and network security. Attacker mindset: Real passion for breaking all the things unbreakable.
  • Knowledge of secure infrastructure architectures, application architectures, encryption, Cloud Security and broader security technologies.
  • Strong operating systems knowledge Windows (all flavors), Debian Linux
  • IoT network technologies (such as Bluetooth/BLE, WLAN, Z-Wave, Zigbee, identity/auth security)
  • Experience with wireless technologies such as CDMA, E-HRPD, GSM, UMTS, TDS-CDMA, LTE-FDD / LTE-TDD, and 5G experience with Android RIL, Telephony, C and Embedded RTOS.
  • Scripting knowledge Linux scripting (bash), Windows scripting, Python or Perl
  • Strong English communication skills, including written and spoken, is required.
Responsibilities
  • Work with the business, devops and systems teams to identify the right architecture for implementing new solutions, products and modules. Develop, implement and maintain product security strategy for the entire product portfolio covering IoT and Smart-device suites
  • Conduct complete lifecycle security architecture and technical assessments for a wide range of products, including embedded devices, enterprise software solutions, and mobile apps
  • Engage in application and domain-specific threat modeling and attack surface analysis and reduction
  • Provide guidance and leadership on best practices regarding security in software and firmware development
  • Contribute to the development and evolution of the application and infrastructure security reference architecture. Develop, implement and maintain the security architecture for Xylem product portfolio
  • Champion the Xylem security SDLC. This includes threat modeling, security testing, penetration testing, and identifying and fixing vulnerabilities in software and applications on all Xylem products.
  • Implement or manage the implementation of common application security controls
  • Assist other developers in remediating vulnerability findings by providing line-by-line guidance.
  • Provide training and education to developers on software security best practices.
  • Expert level operational support for security escalations from customers
  • Participation in Xylem Watermark volunteer activities

Xylem develops solutions to address global water challenges using smart technology. The company provides hardware like water pumps and treatment systems, as well as software for hydrographic applications, serving clients such as municipalities and industrial businesses. Xylem stands out by combining both hardware and software offerings while focusing on sustainability and long-term contracts. Its goal is to ensure water security and meet the demand for eco-friendly solutions in the water sector.

Company Stage

Seed

Total Funding

$10.2M

Headquarters

Washington, District of Columbia

Founded

2011

Simplify Jobs

Simplify's Take

What believers are saying

  • Significant investments from firms like Jennison Associates LLC and SageView Advisory Group LLC indicate strong market confidence in Xylem's growth potential.
  • Innovative projects like Reuse Brew demonstrate Xylem's leadership in sustainable water management, potentially attracting more eco-conscious clients and partners.
  • Recognition through awards for sustainability excellence enhances Xylem's reputation as a leader in the water technology sector, which can boost employee morale and attract top talent.

What critics are saying

  • The complexity of managing both hardware and software solutions could lead to operational inefficiencies and increased costs.
  • Dependence on long-term contracts with municipalities and industrial clients may expose Xylem to financial risks if these clients face budget cuts or economic downturns.

What makes Xylem unique

  • Xylem's dual focus on both hardware and software solutions, including advanced water pumps and hydrographic software, sets it apart from competitors who may specialize in only one area.
  • The company's commitment to sustainability and innovative projects like Reuse Brew highlight its proactive approach to addressing global water challenges, unlike competitors who may not prioritize eco-friendly solutions.
  • Xylem's long-term contracts with municipalities and industrial clients provide a steady revenue stream, offering financial stability that many competitors lack.

Benefits

Professional Development – To advance the capabilities of our people, we offer a wide variety of experiences to support our employees’ professional growth and continuous learning.

Total Rewards – We offer comprehensive programs for compensation, benefits, recognition, learning and development, work-life integration and corporate citizenship.

Watermark – Watermark is our corporate social responsibility program working to provide education and access to safe water to ensure healthy lives, gender equality, and resilient communities. Employees have the opportunity to learn and volunteer on various water-related projects.

Employee Networks – Our Employee Networks provide a professional, supportive network for employees from diverse backgrounds, including Women’s, LGBT+ and Allies, Veteran’s, People of Color and Allies, Hispanic Origin & Latin Affinity, Emerging Leaders, and Working Parents Networks.