HonorHer Jobs


Job Information

Siemens Product and Solution Security Expert (PSSE) in Chennai, India

Job Family: Cybersecurity

Req ID: 423435

Hello Visionary!

We empower our people to stay resilient and relevant in a constantly changing world. We’re looking for people who are always searching for creative ways to grow and learn. People who want to make a real impact, now and in the future.

Does that sound like you? Then it seems like you’d make a great addition to our vibrant team.

Siemens founded the new business unit Siemens Advanta (formerly known as Siemens IoT Services) on April 1, 2019 with its headquarter in Munich, Germany. It has been crafted to unlock the digital future of its clients by offering end-to-end support on their outstanding digitalization journey. Siemens Advanta is a strategic advisor and a trusted implementation partner in digital transformation and industrial IoT with a global network of more than 8000 employees in 10 countries and 21 offices. Highly skilled and experienced specialists offer services which range from consulting to craft & prototyping to solution & implementation and operation – everything out of one hand.

We are looking for a Product and Solution Security Expert (PSSE).

This position is for Pune Location.

Your Responsibilities:

1. Integration with SDLC:

• Collaborate with software development teams to integrate security practices throughout the Software Development Life Cycle (SDLC).

• Perform security code reviews and analyze vulnerabilities during different SDLC phases.

• Ensure security requirements are included in the design, development, testing, and deployment stages of software projects.

2. Security Activities:

• Develop and implement security protocols, guidelines, and best practices for software development.

• Conduct threat modelling and risk assessments to identify potential security issues early in the development process.

• Provide guidance on secure coding practices and remediation of identified vulnerabilities.

3. Stakeholder Interaction:

• Work closely with key stakeholders, including product managers, project managers, and business analysts, to support and promote security activities within products.

• Communicate security risks, issues, and mitigation strategies effectively to both technical and non-technical stakeholders.

• Foster a security-aware culture within the development teams and across the organization.

4. Security Tools and Technologies:

• Implement and manage security tools such as static and dynamic analysis tools, intrusion detection systems, and vulnerability scanners.

• Stay updated with the latest security tools, trends, and best practices to enhance the organization's security posture.

5. Incident Response:

• Assist in the development and implementation of incident response plans and procedures.

• Participate in security incident investigations and provide expertise in resolving security breaches.

6. Training and Awareness:

• Conduct security training and awareness programs for development teams.

• Promote continuous improvement and knowledge sharing related to application security.

Skills and Qualifications:

1. Technical Skills:

• In-depth knowledge of application security, secure coding practices, and common vulnerabilities (e.g., OWASP Top Ten).

• Experience with security tools and technologies such as static analysis tools (SAST), dynamic analysis tools (DAST), and vulnerability scanners.

• Proficiency in programming languages such as Java, C#, Python.

• Understanding of DevSecOps practices and integration of security into CI/CD pipelines.

• Promote continuous improvement and knowledge sharing related to application security.

2. Soft Skills:

• Strong communication and interpersonal skills.

• Ability to explain complex security concepts to non-technical stakeholders.

• Strong analytical and problem-solving skills.

• Collaborative mindset and ability to work effectively with cross-functional teams.

3. Certification Preferred:

• Certified Secure Software Lifecycle Professional (CSSLP).


• Proven experience working with software development teams and integrating security practices into the SDLC.

• Experience interacting with key stakeholders and supporting security activities within software products.

You’ll win us over by:

• Having An engineering degree B.E/B.Tech/MCA/M.Tech/M.Sc with good academic record.

• Minimum 5 years of experience in cybersecurity, with a focus on application security.

We’ll support you with:

• Hybrid working Opportunities.

• Diverse and inclusive culture.

• Great variety of learning & development opportunities.

Join us and be yourself!

We value your unique identity and perspective, recognizing that our strength comes from the diverse backgrounds, experiences, and thoughts of our team members. We are fully committed to providing equitable opportunities and building a workplace that reflects the diversity of society. We also support you in your personal and professional journey by providing resources to help you thrive. Come bring your authentic self and create a better tomorrow with us.

Make your mark in our exciting world at Siemens.

This role is based in Pune and is an Individual contributor role. You might be required to visit other locations within India and outside. In return, you'll get the chance to work with teams impacting - and the shape of things to come. We're Siemens. A collection of over 379,000 minds building the future, one day at a time in over 200 countries.

Find out more about Siemens careers at: www.siemens.com/careers