San Juan, Puerto Rico

Senior Product Security Engineer

 Job Description:

***Positions posted by El Comeback are done on behalf of companies that we support in their search for candidates.***

Our client, Hewlett Packard Enterprise (HPE), is looking for a Senior Product Security Engineer.

Locations: 

  • San Juan, Puerto Rico 
  • Aguadilla, Puerto Rico

This role has been designed as Hybrid with an expectation that you will work on average 2 days per week from an HPE office.

Who We Are:

Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in todays complex world. Our culture thrives on finding new and better ways to accelerate whats next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.

Job Description:

Designs and develops security programs for software enhancements and new products. Develops solutions for security of software including operating systems, compilers, routers, networks, utilities, databases and Internet-related tools. Determines hardware compatibility and/or influences security hardware design.

Management Level Definition:

Contributions impact technical components of HPE products, solutions, or services regularly and sustainably. Applies advanced subject matter knowledge to solve complex business issues and is regarded as a subject matter expert. Provides security expertise and partnership to functional and technical project teams and may participate in cross-functional initiatives. Exercises significant independent judgment to determine best method for achieving objectives. May provide team leadership and mentoring to others.

Responsibilities:

  • Play a critical role in identifying and mitigating potential security risks, collaborating with cross-functional teams and other stakeholders, and maintaining compliance with industry standards and regulations.
  • Conduct secure design assessments and vulnerability tests to identify potential security threats and develop strategies to mitigate them.
  • Collaborates with all stakeholders like product management and engineering teams to integrate security into all stages of design and development for complex products and platforms, including solution design, analysis, coding, testing, and integration.
  • Provide guidance and support to product development teams in implementing secure coding practices and security best practices.
  • Implement automated tooling strategies and techniques that include but are not limited to static analysis (SAST), dynamic analysis (DAST), software composition analysis (SCA), etc.
  • Lead key initiatives to mature HPEs security programs like secret management, cloud security, supply chain security, AI/LLM security etc.
  • Educating and communicating security information and best practices to other stakeholders at HPE.
  • Lead investigations into security incidents and develop corrective action plans to prevent future occurrences.
  • Monitor the effectiveness of security controls and drive innovation and integration of new security technologies within the organization.
  • Represent HPE at industry events and conferences as a product security subject matter expert.
  • Provides guidance and mentoring to less- experienced staff members.

Education and Experience Required:

  • Bachelor's or Master's degree in Computer Science, Information Systems, or equivalent.
  • Typically 6-10 years experience in a security role.

Knowledge and Skills:

  • Extensive experience with product security for multiple software systems design tools and languages.
  • Experience in cloud security technologies.
  • Experience in common security vulnerability classes and taxonomies.
  • Experience in security constructs in programming languages like python, java, go, and C.
  • Experience in overall architecture of software systems for products and solutions.
  • Excellent analytical and problem-solving skills.
  • Excellent written and verbal communication skills; mastery in English and local language. Ability to effectively communicate product architectures, design proposals and negotiate options at senior management levels.

Additional Skills:

Cloud Architectures, Cross Domain Knowledge, Design Thinking, Development Fundamentals, DevOps, Distributed Computing, Microservices Fluency, Full Stack Development, Security-First Mindset, Solutions Design, Testing & Automation, User Experience (UX)

***El Comeback is a non-profit program from ConPRmetidos that attracts and retains professional talent for Puerto Rico-based jobs. Register at elcomebackpr.org/registration-form to get matched with professional opportunities on the island.***



  Required Skills:

Security