Full-Time

Product Security Engineer

Posted on 2/18/2025

Hewlett Packard Enterprise

Hewlett Packard Enterprise

10,001+ employees

Provides enterprise IT solutions and services

Hardware
Enterprise Software
AI & Machine Learning

Compensation Overview

$78.7k - $181.2kAnnually

+ Variable Incentives

Mid

Remote in USA

Candidates can be based in any of the listed states, as the job is remote.

Category
Cybersecurity
IT & Security
Required Skills
Python
Java
Go
C/C++

You match the following Hewlett Packard Enterprise's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • BS in Information Security, Computer Science, or related technical field.
  • A background in software security, either academic or work experience, including reverse engineering, vulnerability classes such as buffer overflows and their prevention, web application security, and/or cloud security.
  • Programming knowledge of at least one programming language (e.g. C, Go, Java, Python) with the ability to look at source code and analyze for policy violations. Familiarity with the purpose of tools such as IDEs, compilers, source code revision control systems, and code scanners.
  • Minimum 3 years of experience working directly in software engineering or in an adjacent field with exposure to the software engineering environment.
  • Experience conducting risk assessments, threat modeling, and/or compliance assessments. This includes the application of frameworks such as ISO 27001, NIST CSF, NIST SP 800-218, etc. against various products or infrastructure.
  • Experience supporting the integration of security practices through the software development lifecycle. This includes but is not limited to reviewing code, providing secure coding guidance, developing and maintaining SDLC policies, and collaborating effectively with product teams to implement security controls.
Responsibilities
  • Assist in the execution of product compliance assessments against various frameworks (e.g. NIST SP 800-218, SP 800-53, CIS Benchmarks, EU CRA)
  • Assist in the development and/or maintenance of GRC and SDLC tooling implementations, including scripting and automation.
  • Operate as a representative of HPE Aruba in working groups, with government representatives, and with auditors.
  • Provide consulting, information, and advice to product teams around implementing and improving the maturity of our SDLC.
  • Document known issues and provide information to product teams in a manner which allows for easy interpretation and corrective actions to be performed.
  • Monitor worldwide government standards and communicate to management and product teams when changes are made that may impact an existing control or introduce new requirements.
  • Minimal travel (approximately 5-10%) may be required at times.
Desired Qualifications
  • Strong foundation in cybersecurity principles, including knowledge of various attack vectors, vulnerabilities, and security best practice.
  • Industry certifications such as CISSP, CISA, CCSP, CSSLP, CGRC, or GIAC are helpful; we will help you obtain these if you don’t have them already.
  • Knowledge of relevant regulations and standards and how to interpret and implement these requirements within the organization's products.
  • Ability to develop and implement security policies, procedures, and guidelines that align with organizational goals and compliance requirements.
  • Technical experience with scripting and automation.
  • Experience with participating in or leading external security standards communities or working groups.
  • Familiarity with the Agile development methodology.
  • Ability to manage security projects, setting priorities, and meeting deadlines as an independent performer.
  • Strong communicator with ability to collaborate with various teams.
  • Experience with Project Management software (e.g. Jira, Asana, Confluence)
  • Experience with the procurement process for IT tools, particularly with product evaluations.
Hewlett Packard Enterprise

Hewlett Packard Enterprise

View

Hewlett Packard Enterprise provides enterprise IT solutions with a focus on cloud services, artificial intelligence, and edge computing. Their products include HPE Ezmeral for managing containers, HPE GreenLake for cloud services, and HPE Aruba for networking. These solutions help businesses improve their performance and adapt to digital changes. HPE's business model includes selling hardware, software, and services, as well as offering subscription-based services and long-term contracts. What sets HPE apart from competitors is its commitment to open-source projects and its active developer community, which supports collaboration and innovation. The company's goal is to empower organizations to transform digitally and optimize their operations.

Company Size

10,001+

Company Stage

IPO

Total Funding

N/A

Headquarters

Houston, Texas

Founded

1939

Simplify Jobs

Simplify's Take

What believers are saying

  • HPE's acquisition of Juniper Networks boosts AI-driven innovation in networking.
  • OpsRamp acquisition enhances HPE's IT management with AI-based automation capabilities.
  • Axis Security integration strengthens HPE's cloud security offerings with SASE solutions.

What critics are saying

  • Integration challenges with Juniper Networks may delay AI-driven networking benefits.
  • Competition from startups like Flywheel could impact HPE's AI and cloud services.
  • HPE's acquisition strategy may strain resources and distract from core operations.

What makes Hewlett Packard Enterprise unique

  • HPE's GreenLake offers a unique hybrid cloud platform for diverse IT environments.
  • HPE Ezmeral provides advanced container management, enhancing enterprise AI and analytics capabilities.
  • HPE's Aruba solutions integrate cloud security and networking for seamless, secure connectivity.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Flexible Work Hours

Hybrid Work Options

Professional Development Budget

Wellness Program

Company News

Hewlett Packard Enterprise
Aug 17th, 2024
Hewlett Packard Enterprise to acquire Morpheus Data

HPE GreenLake cloud will simplify hybrid IT operations and provide customers with a future-proof destination for cloud-native and AI workloads

Financial IT
Mar 23rd, 2024
Greenly Raises a $52 Million Series B to Drive Widespread Adoption of Emissions Reporting Amidst Regulatory Push in the US and Europe

Leading carbon accounting startup Greenly has announced a $52 million Series B funding round led by Fidelity International Strategic Ventures, two years after a successful $23 million Series A. This latest fundraising effort establishes Greenly as a global leader in a market poised for massive adoption, spurred by new regulations like the EU's Corporate Sustainability Reporting Directive and the recent US requirement for public companies to report their greenhouse gas (GHG) emissions.

Global Legal Post
Jan 11th, 2024
Wachtell, Skadden called in for Hewlett Packard Enterprise’s $14bn Juniper acquisition

Freshfields and Covington also advise on deal highlighting increased appetite for big ticket deals after slump in 2023

Juniper Networks
Jan 10th, 2024
HPE to Acquire Juniper Networks to Accelerate AI-Driven Innovation

Highly complementary combination enhances secure, unified, cloud and AI-native networking to drive innovation from edge to cloud to exascale

Business Wire
Jun 28th, 2023
Revolutionizing Medical AI Development: Flywheel Announces $54 Million in Series D Funding led by Novalis LifeSciences and NVentures

Flywheel, the leading medical imaging data and AI platform, announces it has raised $54 million in Series D funding.