HireFT
Browse JobsHow it worksPricingAboutSuccess Stories
    Back to jobs
    RA

    Randstad Sourceright NA for Honeywell

    Automation and Control Solutions

    Advanced Cyber Sec Archt/Engr

    Bengaluru, IndiaOn-SiteFull-time5+ yrs experiencePosted 3w ago
    All Randstad Sourceright NA for Honeywell jobs

    Job description

    Honeywell Technologies is a global, pure-play automation company with a legacy of innovating to help solve the world’s most mission-critical challenges, enhancing the quality of life for people and communities around the world. We serve the building, industrial and process sectors with a broad portfolio of services, solutions and products, underpinned by our Honeywell Technologies Accelerator operating system and Honeywell Technologies Forge intelligence layer. By combining the deep domain expertise of our more than 50,000 employees with decades of data from our global installed base, we are uniquely positioned to lead the industrial sector’s transition from automation to autonomy.

    Qualifications

    Job Description

    The Advanced Cyber Security Engineer reports to the Product Security Assurance Leader and will be responsible for assessing and evaluating the security posture of a variety of Honeywell IA Products and partner technologies.  This role will be responsible for security services delivery, which may include use of web/application/network/Mobile/Cloud/AI ML/protocol/hardware/firmware security toolsets, detection of security defects, and remediation consultation of those weaknesses.  Our services support the identification of potential attack techniques and serve as the foundation for continuously improving the product development lifecycle.

    Responsibilities

    • Individual Contributor with Product Security Assurance Team
    • Deliver Security Testing across all IA products.
    • Report observations using our standardized reporting structure
    • Work with cross functional teams to develop remediation suggestions
    • Develop methodologies, determine scoping requirements
    • Assist in the development of modular, repeatable, effective Security Testing processes
    • Proactively anticipate escalations
    • Oversee and ensure client deliverables are on time, requirements are met
    • Partner with Tools and Technology Team to select, implement, develop, and automate testing with appropriate tools.
    • Assist with onboarding internal team training
    • Champion strategic Product Security initiatives

    Qualifications

    • Bachelor’s degree in computer science or software engineering, electrical engineering or equivalent experience
    • 5+ years of Cyber Security or Information Technology experience

    Preferred Qualifications

    • 5+ years of pentesting experience preferably in – Web, Mobile, Network, Thick Client, API, Web services, Cloud, Containers, AI ML, Embedded security ( Hardware and Firmware) , Protocol fuzzing
    • Has a Bachelor’s Engineering degree or equivalent, preferably in Computer Science
    • Perform penetration tests (Manual & Automated) for products spanning Web, Mobile (Android and iOS), Cloud, Dockers, Containers and Thick Clients
    • Familiarity with reverse engineering tools, debuggers, and dynamic analysis techniques
    • Analyze pen test results to identify the security vulnerabilities and suggest countermeasures for threat mitigation
    • Good understanding of Secure Development Lifecycle processes
    • Good knowledge of OWASP Top 10 and SANS Top 25 and how to effectively remediate vulnerabilities associated with each
    • Knowledge of attack frameworks like MITRE, VASTO, CIS Benchmarks, Virtualization Assessment Toolkit to exploit virtualization systems
    • Demonstrated manual product penetration testing experience; for example, simulate a SQL injection attack without using tools, simulate XSS attack, X-Path Injection, etc.
    • Good knowledge and hands-on experience using various penetration testing tools and frameworks like Nessus, Web Inspect, Nmap, Burp Suite, AppScan, ZAP, Kali Linux tools, IDA Pro, GHidra, OWASP, Metasploit, Nessus, Nmap, MObSF, Genymotion, Frida, APK Tool
    • Encryption tools and techniques for securing mobile and virtual machines
    • Understanding of application protocols, development, and common attack vectors.
    • Good cybersecurity capabilities and strong software engineering skills
    • Scripting experience in Python, Powershell and Bash preferred.
    • Experience working with other languages such as C, C++, Java, .NET or javascript.
    • Up to date knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities
    • Effective oral and written communication and negotiation skills
    • Good interpersonal skills
    • Ability to work with geographically distributed, cross-functional teams

    Good to Have Skills

    • Certification such as CEH, OSCP, OSWE, CCSP, CCSK, GPEN, CRTP, CRTO will be highly desirable
    • Strong Secure SDLC concepts
    • Experience in integrating pentest tools to CI/CD pipeline

    Employer Description

    Honeywell helps organizations solve the world's most complex challenges in automation, the future of aviation and energy transition. As a trusted partner, we provide actionable solutions and innovation through our Aerospace Technologies, Building Automation, Energy and Sustainability Solutions, and Industrial Automation business segments – powered by our Honeywell Forge software – that help make the world smarter, safer and more sustainable.

    Job details are sourced from the employer's original posting.

    Open job posting
    RA

    About the company

    Randstad Sourceright NA for Honeywell

    Honeywell Automation and Control Solutions (ACS) team members are part of a global, 65,000-employee network of smart and entrepreneurial, hard-working and inquisitive professionals who solve problems every single day. Put simply, our employees create safer, more energy efficient, more secure and more productive environments for our customers around the world.  ACS turnout gear protects firefighters from extreme temperatures; our thermostats keep homeowners comfortable; our security systems ensure the safety and security of facilities from backyard sheds to Las Vegas casinos; our rugged mobile computers track packages and goods as they are shipped across the globe; our sensors measure temperature and pressure in hemodialysis machines and other medical devices.   ACS energy management services have helped big-box retailers achieve double-digit reductions in their peak energy demand, and our process control systems are used in the world's top 50 oil refineries. As much as we are a product and solutions company, we are a technology company. In fact, our technology is in 150 million homes and 10 million buildings. Based in Minneapolis, Minnesota, with operations in more than 100 countries , ACS is organized into seven strategic business units -- five focused on products and two on services and solutions. ACS is an approximately $15 billion division of Honeywell, a Fortune 100 industrial technology company based in Morristown, New Jersey. We'd love to have you consider coming to work with us. We are Honeywell!

    View all Randstad Sourceright NA for Honeywell jobs
    Industry
    Automation and Control Solutions
    Open roles
    1361

    Interested in this role?

    Apply with HireFT

    Free to start — no card required.

    Your fit

    How well do you match?

    Sign in to see how your résumé lines up with this role.