Product Security Engineer Resilient Development (EMEA)

Red Hat

Not Interested
Bookmark
Report This Job

profile Job Location:

Brno - Czech Republic

profile Monthly Salary: Not Disclosed
Posted on: Yesterday
Vacancies: 1 Vacancy

Job Summary

Red Hat Product Security is looking for a Product Security Engineer to join our global Resilient Development team. Red Hats Resilient Development Team focuses on Secure Development and improving proactively the security posture of our Products and Services portfolio and their build pipelines. You will perform security architecture reviews and security assessments of those offerings throughout their development life cycle in collaboration with Engineering and other Product Security teams to make sure the expectations of our Secure Software Development Framework implementation are met. This process includes analyzing and documenting architecture from a security point of view questioning security assumptions finding potential problems proposing improvements performing code reviews defining testing expectations and promoting secure development best practices from our offerings through to their related open source communities. As a Product Security Engineer you will represent the security needs of our customers to our Engineering teams advocating and planning for a solid foundation of security architecture across the open source ecosystem.

Our role is open as onsite/hybrid in our offices (Milan Brno Barcelona Madrid) or remote in Poland Italy Portugal Spain Czech Republic.

What you will do

  • Engage with engineering teams to promote security-aware development of Red Hat technologies/solutions.
  • Understand current and emerging threats in the enterprise product and service space.
  • Analyze complex software systems and identify potential weaknesses in their architecture.
  • Plan and carry out threat modeling activities and realistic threat simulations across our offerings.
  • Consult with software developers and product teams on improved security architecture.
  • Ensure that product roadmaps and new features mitigate risk adhere to security policies and provide customers with minimal security risk.
  • Contribute to customer facing security documentation reference and other data as used by the common vulnerabilities and exposures (CVE) pages.
  • Promote Red Hat Product Security efforts within the community and the greater public.

What you will bring

  • Strong understanding of common security vulnerabilities (e.g. OWASP Top Ten) including how to detect demonstrate mitigate and resolve them.
  • Good understanding of Linux security technologies and product security experience; for example:POSIX Permissions ACL SELinux; Seccomp Linux namespaces and cgroups Linux administrations related to security: secure boot TPMs trusted execution environment Linux boot chain virtualization containers and hypervisor security.
  • Experience with one or more programming languages like Go Python C/C and a willingness to learn new ones.
  • Knowledge and experience with modern container orchestration systems: Kubernetes Openshift; comfortable with container technologies.
  • Ability to work with minimal supervision in a fast-paced environment with a multicultural team distributed across multiple countries and time zones.
  • Solid communication and negotiation skills. Excellent collaboration skills and dedication as a teammate.

The following will be considered a plus:

  • Familiarity with open source software and open source as a business model.
  • Linux-specific and/or security-related certifications (e.g. RHCSA RHCE RHCA CISSP CISM CSSLP CISA etc.)
  • Work experience and/or certifications with cloud providers and cloud-related technologies (AWS Azure GCP Tekton Jenkins etc.)

About Red Hat

Red Hat is the worlds leading provider of enterprise open source software solutions using a community-powered approach to deliver high-performing Linux cloud container and Kubernetes technologies. Spread across 40 countries our associates work flexibly across work environments from in-office to office-flex to fully remote depending on the requirements of their role. Red Hatters are encouraged to bring their best ideas no matter their title or tenure. Were a leader in open source because of our open and inclusive environment. We hire creative passionate people ready to contribute their ideas help solve complex problems and make an impact.

Inclusion at Red Hat
Red Hats culture is built on the open source principles of transparency collaboration and inclusion where the best ideas can come from anywhere and anyone. When this is realized it empowers people from different backgrounds perspectives and experiences to come together to share ideas challenge the status quo and drive innovation. Our aspiration is that everyone experiences this culture with equal opportunity and access and that all voices are not only heard but also celebrated. We hope you will join our celebration and we welcome and encourage applicants from all the beautiful dimensions that compose our global village.

Equal Opportunity Policy (EEO)
Red Hat is proud to be an equal opportunity workplace and an affirmative action employer. We review applications for employment without regard to their race color religion sex sexual orientation gender identity national origin ancestry citizenship age veteran status genetic information physical or mental disability medical condition marital status or any other basis prohibited by law.


Red Hat does not seek or accept unsolicited resumes or CVs from recruitment agencies. We are not responsible for and will not pay any fees commissions or any other payment related to unsolicited resumes or CVs except as required in a written contract between Red Hat and the recruitment agency or party requesting payment of a fee.


Red Hat supports individuals with disabilities and provides reasonable accommodations to job applicants. If you need assistance completing our online job application email . General inquiries such as those regarding the status of a job application will not receive a reply.


Required Experience:

IC

Red Hat Product Security is looking for a Product Security Engineer to join our global Resilient Development team. Red Hats Resilient Development Team focuses on Secure Development and improving proactively the security posture of our Products and Services portfolio and their build pipelines. You wi...
View more view more

Key Skills

  • Joomla
  • Banking
  • C
  • Market Research
  • Bpcs

About Company

Company Logo

We revolutionized the operating system with Red Hat® Enterprise Linux®. Now, we have a broad portfolio, including hybrid cloud infrastructure, middleware, agile integration, cloud-native application development, and management and automation solutions. With Red Hat technologies, compa ... View more

View Profile View Profile