Jobs›Product Security, Bangalore

Product Security Leader

TE Connectivity · Bangalore
Senior
PayPay not listed
WhereBangaloreKarnataka
TypeFull time
Posted30 Sep9 days ago, via SimplyHired
Kaam checked
No fee, deposit or pay-to-apply signs
Good spoken and written English expected
Day work
No vehicle or licence needed
Skills they list70 named
Risk assessmentsDevSecOps practicesCustomer communicationData centre experienceExecutive communicationIncident managementSignal processingRequirements designStakeholder collaborationBachelor's degree – Electrical EngineeringCompliance record maintenanceTeam leadershipTechnical specificationsClient communicationFirmwareIT security awareness training implementationCompliance audits and assessmentsMaster's degree – Cyber SecurityMaster's degreeWorkload prioritisationCyber risk evaluationInformation security complianceSystem design for system developmentSecurity system vulnerability testingStakeholder coordinationProduct developmentIT security architectureRisk management framework implementationNIST standardsTask prioritisationEmbedded softwareRequirements analysisNetwork protocolsStaff trainingInformation security policiesTechnical compliance checksBachelor's degree – Computer EngineeringComputer EngineeringIncident investigationPolicy writingVulnerability managementSystem requirements definitionProblem identificationISO 27001Information security guidelinesMultidisciplinary collaborationPenetration testing implementationStakeholder influencingTraceabilitySecurity breach responseRoot cause analysisDesign validationData encryption implementationClient communication skillsImplementation of security compliance measuresMaster's degree – Computer EngineeringElectrical EngineeringCross-functional collaborationThird-party risk assessmentDesign reviewInformation asset protection assessmentIncident response implementationCommunication skillsIncident management responsibilitiesSupplier risk evaluationCross-functional communicationAudit supportIdentity & access managementSDLCIT risk management
About this job

TE Connectivity Ltd. is a $16 billion global technology and manufacturing leader creating a safer, sustainable, productive, and connected future. For more than 75 years, our connectivity and sensor solutions, proven in the harshest environments, have enabled advancements in transportation, industrial applications, medical technology, energy, data communications, and the home. With 80,000 employees, including more than 8,000 engineers, working alongside customers in approximately 140 countries, TE ensures that EVERY CONNECTION COUNTS. Learn more at www.te.com

BUSINESS UNIT DESCRIPTION

Digital Data Networks (DDN) business in TE Connectivity you will play a key role in the design of products for high-speed products in the connector, cable assembly, and/or radio system industry—targeting high-speed communications and connectivity within datacenters and wireless infrastructure.

ROLE DESCRIPTION

The Cyber Security Officer (Product & Embedded Systems is responsible for defining, implementing, and governing the cybersecurity strategy across all product development activities within the DDN Business Unit, with a focus on high-speed connectivity solutions used in data center environments. This role ensures that products containing integrated circuits, firmware, and embedded software are designed, validated, and maintained to mitigate cyber threats and prevent unauthorized access or exploitation.

The position operates at the intersection of hardware, firmware, and system-level architecture, addressing cybersecurity risks throughout the full product lifecycle—from concept through deployment and sustainment.

The Cyber Security Officer will define and govern the cybersecurity policies, procedures and governance model and oversee the incorporation into the LeanPD process for applicable products.

Roles and Responsibilities

Product Security Strategy & Governance

Develop and lead the business unit’s product cybersecurity strategy aligned with business objectives and customer requirements.

Establish cybersecurity policies, standards, and secure design principles for hardware, firmware, and embedded software.

Define security architecture requirements for high-speed connectivity products (e.g., cables, connectors, active interconnects, modules).

Ensure alignment with industry standards (e.g., secure development lifecycle, zero trust principles).

Secure Product Development Lifecycle (SPDLC)

Integrate cybersecurity into all phases of New Product Introduction (NPI).

Define and enforce secure coding standards, threat modeling, and design reviews.

Ensure cybersecurity requirements are embedded in system and component specifications.

Partner with engineering teams to implement security-by-design practices.

Threat Modeling & Risk Assessment

Identify and evaluate potential attack vectors across

o Embedded firmware

o ASIC/FPGA interfaces

o High-speed data paths

o External interfaces (I/O, management interfaces, etc.)

Conduct product-level threat modeling and risk assessments.

Define mitigation strategies and validate their effectiveness.

Vulnerability Management & Testing

Establish processes for

o Static and dynamic code analysis

o Penetration testing (internal and third-party)

o Firmware and hardware security validation

Lead root cause analysis and remediation of identified vulnerabilities.

Maintain vulnerability disclosure and response processes.

Supply Chain & Component Security

Define cybersecurity requirements for suppliers of ICs, firmware, and software components.

Assess third-party components for security risks (including open-source software).

Implement secure provisioning, authentication, and anti-tampering mechanisms.

Product Architecture & System Security

Collaborate with system architects to

o Design secure communication protocols

o Implement encryption, authentication, and key management

o Ensure secure boot, firmware integrity, and update mechanisms

Address risks associated with data center deployment environments (e.g., lateral movement, hardware-based attacks).

Incident Response & Monitoring

Develop and maintain product cybersecurity incident response plans.

Support investigation of field incidents and potential breaches involving company products.

Coordinate with customers and internal teams during security events.

Compliance & Certification

Ensure products meet relevant cybersecurity regulations and standards (customer-driven and regulatory).

Support audits, certifications, and customer security assessments.

Maintain documentation for compliance and traceability.

Training & Culture

Drive cybersecurity awareness across engineering and product teams.

Train engineers on secure design practices and emerging threats.

Act as a subject matter expert and advisor to leadership.

Mandate Skills

  • Bachelor’s or Master’s degree in Computer Engineering, Electrical Engineering, Cybersecurity, or related field
  • 10+ years in cybersecurity, with strong emphasis on embedded systems and/or hardware-integrated products.
  • Experience in high-speed electronics, data center infrastructure, or networking products strongly preferred.
  • Proven experience implementing secure development lifecycle practices.
  • Technical Expertise

o Embedded systems security (firmware, RTOS, low-level software)

o Hardware security (ASICs, FPGAs, side-channel risks, secure elements)

o Cryptography, secure boot, authentication protocols

o Network and data path security in high-speed systems

o Vulnerability assessment tools and penetration testing methods

o Secure firmware update and key management systems

  • Frameworks Knowledge

o Secure development lifecycle frameworks

o Product security standards relevant to data center and networking environments

o Zero Trust Architecture concepts

  • Standards Knowledge

o ISO/IEC 27001:2022: The premier international standard, providing a framework for setting up an Information Security Management System (ISM

Never pay to get work. If a listing asks for a fee, it is a scam. The ten signs →

Apply on SimplyHired
Opens simplyhired.co.in in a new tab