ALTASNET logo
ALTASNET

Cibersegurança . Redes . Data Center & Cloud . Automação de processos

Senior Product Security Consultant

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 51-200Since 2002H1B No SponsorCompany SiteLinkedIn

Location

Brazil

Posted

1 day ago

Salary

0

Seniority

Senior

Bachelor Degree5 yrs expPortugueseEnglishAWSCloudIoT

Job Description

Senior Product Security Consultant

ALTASNET

• Participate in architecture and design reviews across the AMI product stack — metering devices, RF/cellular modules, gateways, cloud pipelines and SaaS portals — providing security guidance from the early stages of the development lifecycle. • Perform threat modeling (STRIDE, PASTA) across the AMI architecture, identifying attack surfaces and trust boundaries from the meter to the cloud. • Support firmware security standards and coordinate security testing of metering hardware, including firmware extraction/analysis and review of supply chain components. • Work with Cloud and DevOps teams to embed security controls into Infrastructure as Code (IaC) templates and CI/CD pipelines. • Execute or coordinate SAST, DAST and SCA testing in the CI/CD pipelines of NTG’s utility management applications and consumer portals. • Assess authentication, authorization and API security in multi-tenant SaaS portals intended for utility administrators, end customers and integration partners. • Serve as the primary point of contact between Security & Compliance and Product Development, ensuring requirements are implemented in practice — not just documented — and supporting evidence collection for audits across firmware, cloud and SaaS. • Provide technical support during product security incidents and post-incident reviews, converting findings into architectural improvements or engineering backlog items.

Job Requirements

  • Bachelor’s degree in Computer Science, Computer Engineering, Electrical Engineering, Information Security or a related field (or equivalent experience).
  • More than 5 years of experience in product security, application security or embedded/IoT security.
  • Hands-on experience with SAST, DAST, SCA and manual code review for web applications, APIs or embedded software.
  • Ability to engage technically with firmware engineers, hardware designers and SaaS developers.
  • Fluent English - Essential.
  • Solid knowledge of AWS.

Benefits

  • Competitive market-aligned salary;
  • Performance-based bonus;
  • Health plan - Unipart Flex;
  • Dental plan - Bradesco;
  • Flash card - R$55.00 per day;
  • Day off;
  • English course - reimbursement modality;
  • Well-being benefits – Total Pass, Clude and C4Life.

Related Categories

Related Job Pages

More Security Engineer Jobs

ContinuityGS logo

Field Safety/Security Manager

ContinuityGS

Offering Global Risk Mitigation Solutions to Complex Problems

Full TimeRemoteTeam 1,001-5,000Since 2002H1B No Sponsor

• Provide leadership and oversight for field operations • Ensure personnel safety, operational effectiveness, and compliance with contractual requirements • Foster a positive, professional, and mission-focused work environment • Oversee daily field operations to ensure work is completed accurately, efficiently, and in accordance with contractual requirements • Monitor field workflow to ensure timely and accurate documentation and reporting • Resolve operational issues that arise during daily field activities • Conduct field audits and quality assurance reviews to verify compliance, completeness, and accuracy • Maintain program reference materials, operational documentation, policies, procedures, and project files • Provide guidance to field staff regarding operational procedures, safety protocols, and contractual requirements • Oversee field activities involving address verification, interviews with family members and sponsors, case management support, and wellness checks • Ensure timely identification, documentation, and reporting of sensitive situations, including suspected trafficking, abandonment, neglect, or other safety concerns • Coordinate with leadership to support operational readiness, risk mitigation, and continuous improvement • Perform other duties as assigned • Requires regular field oversight. Travel may be required to support operational needs.

United States
Full TimeRemoteTeam 10,001

Role Description The Security Engineer - Identity role exists to protect Hallmark’s digital assets and ensure the confidentiality, integrity, and availability of its information systems. This position is crucial in defending against cyber threats, mitigating vulnerabilities, ensuring secure access/authentication, and maintaining compliance with security regulations and industry standards. - Implement robust security measures and respond to security incidents. - Safeguard the company's reputation and operational continuity. - Support Hallmark’s mission by enabling a secure environment for business operations and innovation. Qualifications - Bachelor’s degree or 4 years’ professional work experience. - Experience in security tools and technologies, such as: - Firewalls - Zero trust solutions - Antivirus software - Vulnerability scanning tools - Access management tools - Authentication and authorization tools - Privileged access management tools - Security for various SAP systems - At least 4 years of experience in information security with: - Security operations - Incident response - Threat analysis - Familiarity with security frameworks and standards, such as NIST, ISO 27001, and CIS Controls - Experience handling moderately complex issues and problems. Requirements - Degree in Cybersecurity, Information Security, Computer Science, or a related field. - Certifications such as: - Certified Information Systems Security Professional (CISSP) - Certified Information Security Manager (CISM) - Certified Cloud Security Professional (CCSP) - Offensive Security Certified Professional (OSCP) - Certified Identity and Access Manager (CIAM) - Solid working knowledge of subject matter. - Experience with cloud security platforms (AWS, Azure, Google Cloud) and knowledge of securing cloud environments. - Proficiency in scripting and programming languages such as Python, PowerShell, or Bash for automation and security tool development. - Experience with security information and event management (SIEM) systems, endpoint detection and response (EDR) solutions, and advanced threat protection (ATP) tools. - In-depth understanding of identity and access management processes, including least privileged access. - Deep understanding of access methods such as single sign-on and multi-factor authentication and their use in developing a zero-trust model. - Deep understanding of privileged access management and how it can be used to limit access and risk in the case of a breach. - Understanding of how security works in SAP systems including S/4HANA, HANA, ECC, SCM, CRM, etc. Benefits - Salary range: $100,000 - $110,000. - U.S.-based remote role with access to virtual tools and team support. - Annual merit-based increases aligned with individual and company performance. - Competitive benefits package, including: - Medical, dental, and vision plans - Paid time off - 401K with company match - Profit-sharing

United States
$100K - $110K / year
CannonDesign logo

Project Electrical IV – Cyber Security

CannonDesign

We design solutions that help people continuously flourish. Living-Centered Design is how we do it.

Full TimeRemoteTeam 1,001-5,000H1B No Sponsor

• Perform electrical engineering systems design for building construction • Initiate project designs and help to develop design goals and systems • Participate or lead project teamwork planning sessions • May serve as project manager or project engineering leader and lead engineering meetings • Assume project engineering responsibilities and adhere to financial and work goals • Design lighting, power distribution, signaling, communications and/or telecommunication systems for healthcare, education/higher education and commercial clients per applicable codes • Prepare construction documents including drawings and specifications • Guide less experienced team members in execution of drawings • Specify electrical equipment • Complete quality control checks of engineering documents • Participate or lead value engineering sessions with Architectural/Engineering team • Recommend improvements with reference standards and processes to improve quality, coordination, and to streamline production efforts • Review and markup of shop drawings and submittals • Respond to RFI’s and review of change orders in the preparation of construction documents • Conduct job site visits to verify existing conditions and observe construction progress • Attend and participate in construction meetings • Support the implementation and verification of cyber-informed design principles and operational technology security requirements for critical infrastructure projects • Apply and interpret NIST SP 800-82 guidance and industry best practices when evaluating operational technology systems supporting electrical and MEP infrastructure • Coordinate with clients, facility operators, technology consultants, and engineering teams to identify and mitigate risks associated with connected building systems and operational technology networks • Lead workshops and technical discussions related to facility resiliency, operational continuity, and cyber-informed design strategies • Track and document compliance status, risk assessments, and recommendations through project reports and owner updates • Familiarity with operational technology systems, cyber-informed design principles, NIST SP 800-82, or critical infrastructure security considerations preferred.

United States
$96.0K - $120.0K / year
Full TimeRemoteTeam 51-200Since 2020H1B No Sponsor

• Build bolttech's Product Security program and roadmap from scratch • Own the end-to-end security posture of each product as a complete system • Govern how products are deployed on cloud platforms such as AWS and Azure • Oversee multi-tenant data isolation • Govern privileged and administrative access • Ensure audit-ready logging • Drive the product's compliance and customer-trust posture (certifications, due-diligence, security questionnaires) • Facilitate threat modelling and design reviews from the earliest stages of new products and features • Prioritize remediation with product and engineering owners • Embed security requirements for AI-enabled capabilities alongside the AI Security function • Maintain a Group-wide view of risks and findings, collaborating closely with other teams.

Portugal
€2.3K - €3.1K / month