Logo for Thermo Fisher Scientific

Product Security Engineer

Role overview

Qualifications

  • Bachelor's degree in Engineering/Computer Science or equivalent work experience
  • 1+ years of experience in software development including writing and/or testing software applications
  • Basic understanding of container technologies and cloud providers such as AWS
  • Familiarity with programming languages like C/C++, Java, .NET, JavaScript, Python, Bash, PowerShell, or Ruby

Responsibilities

  • Promote and implement secure software development lifecycle (SDLC) practices
  • Review software security architecture and code, and conduct security assessments
  • Develop and maintain security tools and automation, and mentor other engineers on security topics
  • Collaborate with product teams and stakeholders to drive process improvement initiatives

Key facts

Hard skills

Other skills

  • Detail Oriented
  • Mentorship

About the company

Thermo Fisher Scientific logo

Thermo Fisher Scientific

Biotechnology

About Thermo Fisher Scientific Thermo Fisher Scientific Inc. is the world leader in serving science, with annual revenue of approximately $40 billion. Our Mission is to enable our customers to make the world healthier, cleaner and safer. Whether our customers are accelerating life sciences research, solving complex analytical challenges, increasing productivity in their laboratories, improving patient health through diagnostics or the development and manufacture of life-changing therapies, we are here to support them. Our global team delivers an unrivaled combination of innovative technologies, purchasing convenience and pharmaceutical services through our industry-leading brands, including Thermo Scientific, Applied Biosystems, Invitrogen, Fisher Scientific, Unity Lab Services, Patheon and PPD. For more information, please visit www.thermofisher.com.

Company details

IndustryBiotechnology
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Work Schedule

Standard (Mon-Fri)

Environmental Conditions

Office

Job Description

About Thermo Fisher Scientific

Thermo Fisher Scientific Inc. (NYSE: TMO) is the world leader in serving science, with annual revenue of approximately $40 billion. Our Mission is to enable our customers to make the world healthier, cleaner and safer. Whether our customers are accelerating life sciences research, solving sophisticated analytical challenges, improving patient diagnostics and therapies or growing efficiency in their laboratories, we are here to support them. Our distributed team of more than 100,000 colleagues delivers an outstanding combination of innovative technologies, purchasing convenience and pharmaceutical services through our industry-leading brands, including Thermo Scientific, Applied Biosystems, Invitrogen, Fisher Scientific, Unity Lab Services, Patheon and PPD.


What we do

The Product Security team is a group of Builders, Breakers, and Fixers that specialize in collaborative security engagement. The goal of the Software Security (DevSecOps) team is to provide self-service security and to that end, the team is focused on enabling the 3 Ways of DevOps: Fast Flow, Rapid Feedback, and Continuous Learning. As the business moves through its digital transformation, the DevSecOps team is a vanguard for promoting and enabling DevOps practices across the organization. We aim to integrate and enhance current processes, remove bottlenecks, and enable safe experimentation whenever possible.


Job Description

We are seeking a highly skilled and experienced Software Security Engineer to join our Product Security team. The successful candidate will be responsible for ensuring the security of Software Development Life Cycle (SDLC) practices across the organization, from design to deployment.


How will you make an impact?

Software Security Engineer engages with product development teams across the organization and acts as a subject matter expert for providing mentorship related to secure software development practices.

Key responsibilities

As a software security engineer on the Product Security team, you will be responsible for promoting and implementing secure software development lifecycle (SDLC) practices, reviewing software security architecture and code, developing, and maintaining security tools and automation, and mentoring and training other engineers on security topics. You will also collaborate with product teams, security management, and other stakeholders to identify and drive process improvement initiatives and security metrics.

  • Work closely with development teams to identify and mitigate security risks in our software and systems.
  • Implement and maintain security tools and processes to ensure the security of our software development lifecycle.
  • Conduct security assessments and code reviews to identify vulnerabilities and ensure compliance with security standards and best practices.
  • Collaborate with cross-functional teams to ensure the timely and successful delivery of secure software.
  • Promote and implement Secure SDLC practices based on compliance requirements.
  • Develop solutions to automate processes and workflows.
  • Develop and promote automated scanning tools and practices throughout the organization.
  • Identify and drive process improvement initiatives to increase our productivity and/or reduce costs.
  • Develop metrics and reporting from aggregated sources to assist Software Security Management with remediation prioritization within the company.
  • Contribute to the team’s strategy and long-term roadmap.

How will you get here?

Education

  • Bachelor's degree in Engineering/Computer Science or equivalent work experience.

Experience

We are looking for candidates with 1+ years of experience in software development including:

  • Experience writing and/or testing software applications; experience with automation.
  • Basic understanding of container technologies and cloud providers such as AWS
  • Familiarity with one or more of the following languages: C/C++, Java, .NET, JavaScript, Python, Bash, PowerShell and/or Ruby.
  • Familiarity with one or more development tools such as: Eclipse, Visual Studio, Visual Studio Code, IntelliJ, Git, Jira, Jenkins, and/or Docker.
  • Strong attention to detail.
  • The ability to communicate effectively and professionally with a diverse group of people.

Knowledge, Skills, Abilities

In addition to the experience requirements, we are looking for candidates with the following:

  • Self-motivated person with an agile attitude
  • A track record of performing application security assessments either via Bug Bounty programs or capture the flag events.
  • A history of involvement in general information security practice and/or the community.
  • Proficient written and verbal communication in the English language.

Thermo Fisher Scientific is an EEO/Affirmative Action Employer and does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability or any other legally protected status.


We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Product Security Engineer Related jobs

Other jobs at Thermo Fisher Scientific

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.