Product Security Engineer securing embedded products, firmware, and industrial components at Rockwell Automation. Focused on firmware security, secure architecture, and secure development lifecycle practices.
Responsibilities
The Product Security Engineer secures embedded products, firmware, and industrial components across the full product lifecycle.
Your role combines firmware security, secure architecture, reverse engineering, and secure development lifecycle practices.
You will report to the Product Security Leader/Officer (PSL) and partner with engineering teams through the engineering Vee to mature security controls in high-visibility industrial products.
You will assess vulnerabilities, analyze SBOM and CVE data, model threats, score risk, and support secure-by-design decisions.
You will help create and refine security controls such as secure boot, trusted hardware, cryptographic protections, and secure update mechanisms.
You will assist teams during design reviews, testing, debugging, and remediation activities.
You will evaluate diagnostics, logs, test results, and firmware images to identify weaknesses or anomalies.
You will have lifecycle responsibility for threat model components which will be used by Security Champions for Models.
You will lead evaluations of Threat model Dispositions.
You will help ensure products meet secure software development framework (SSDF) DevSecOps processes.
Requirements
Bachelor's degree in Computer Engineering, Computer Science, Electrical Engineering, or a related field
Legal authorization to work in the U.S.
Typically requires 8+ years of experience in embedded systems, firmware development, cybersecurity, or product security
Proficiency in C/C++, embedded operating systems, microcontrollers, Linux, Infrastructure as Code and device drivers
Experience using debugging, tracing, or reverse engineering tools
Experience performing vulnerability analysis or threat modeling
Experience with industrial or real-time embedded systems
Experience with IEC 62443, NIST 800-53, NIST 800-82, or Common Criteria
Security certifications such as CISSP, CSSLP, OSCP, GPEN, GREM, or IEC 62443
Travel, including internationally, up to 25% of time.
Benefits
Health, Medical, Dental, Vision, Life & Disability Insurance
Consultant for Phishing Security working with a Swiss bank to enhance IT - security. Involves development of phishing simulations and training for cybersecurity awareness.
Linux Kernel & Security Developer in Mobileye’s Autonomous Driving Software Group designing secure embedded software solutions. Collaborate with engineers to enhance security in automotive technologies.
Experienced Security Linux Kernel Engineer designing secure embedded software for autonomous vehicles. Researching and implementing Linux kernel drivers with a focus on security innovations.
Linux Kernel & Security Developer designing and implementing secure embedded software solutions at Mobileye. Work with talented engineers on cutting - edge innovations in automotive technologies.
AI Security Engineer at Cross River designing secure AI systems to protect customer data and meet regulations. Focusing on scalable guardrails and tools for innovative financial technology.
Senior Cybersecurity Consultant leading IT - Security projects for SMBs and key accounts in Germany. Responsibilities include project planning, client advisory, and technical implementation.
Security Content Engineer at Securonix building analytics content and threat detection models for their SIEM platform. Collaborating with the Detection Engineering team to combat advanced cyber threats.
IT Infrastructure and Security Administrator for a dynamic construction company ensuring IT security and infrastructure optimization. Responsibilities include project planning, team collaboration, and monitoring security incidents.
Red Team Security Consultant conducting complex Red - Team operations, including technical attacks and security checks for various clients. Collaborating with clients to enhance security measures and reporting findings effectively.
Senior IT Consultant SAP - Security implementing tailored SAP security solutions and compliance measures. Collaborating on enhancing security policies and advising on IT projects.