Security Analyst / Product Security Engineer
Advantest
About the role
Advantest - We enabletomorrowʻs technology. IoT, 5G and Artificial Intelligence. Unthinkable without us. More than half of all the microchips produced worldwide first pass through our hands. As the global market leader of automated test systems in the semiconductor industry we help the world to realize the digital transformation, enable our customers to shape the future and offer you the exciting jobs intended for pioneers. Are you seeking answers and opportunities for your future? At our site in Böblingen you will find both as Security Analyst / Product Security Engineer (Software) (m/f/d) Your ResponsibilitiesDefine and maintain the security architecture of the tester software platform, primarily focusing on Linux workstation software.Translate Cyber Resilience Act (CRA) essential cybersecurity requirements into concrete software development practices and product requirements.Perform threat modeling and security risk analysis for the software architecture, interfaces, and external integrations.Identify and analyze security vulnerabilities in the software stack (C++, Java, Linux environment).Establish and maintain secure development practices, including:secure coding guidelinessecurity-focused code reviewsuse of static and dependency security analysis toolsMonitor security advisories and vulnerability databases (e.g. CVEs) for third-party libraries, Linux components, and external dependencies used by the product.Investigate reported vulnerabilities or security incidents affecting the software and coordinate root cause analysis and remediation with development teams.Define and maintain processes for vulnerability handling and disclosure, including tracking, prioritization, and remediation.Support development teams in implementing security controls, such as:authentication and authorization mechanismssecure use of cryptographic functionsprotection against common software vulnerabilitiesDefine requirements and concepts for secure software updates and software integrity protection.Contribute to security documentation required for CRA compliance, including risk assessments and security-related product documentation.Act as security advisor for development teams, helping them design and implement secure solutions.Assess security implications of executing customer-provided test programs and define safeguards such as sandboxing, permissions, or execution isolation. Your QualificationsSoftware Security:Strong understanding of secure software design and architectureExperience with secure development practices for large software systemsKnowledge of common software vulnerabilities and mitigation techniques (e.g. OWASP Top 10, memory safety issues)Familiarity with security aspects of C++ and Java developmentUnderstanding of Linux operating system security concepts Security Engineering:Experience with threat modeling and security risk analysisFamiliarity with security testing techniques, such as static analysis, dependency scanning, and vulnerability analysisAbility to analyze vulnerability reports and determine product impactExperience with investigating software defects and root causes Standards and Compliance:Understanding of Cyber Resilience Act (CRA) requirements for software productsKnowledge of secure development lifecycle (SDL) practicesFamiliarity with industry security standards and guidelines (e.g. OWASP, NIST, ISO/IEC security practices)Collaboration Ability to work closely with software architects and development teamsAbility to translate security and regulatory requirements into practical development guidelinesStrong analytical and problem-solving skillsAbility to communicate security risks and recommendations clearly Our offerFlexibilityBenefitsDevelopmentFitnessSecurityFlexible and trust-based working hours, 30 vacation days + option for additional vacation days, mobile working, individual part-time models and programs for extended periods of absenceAttractive salary, share in Advantest ́s success through our exceptionally appealing bonus program as well as numerous subsidies, discounts and offerings (e.g. bike leasing)Structured onboarding programs and mentoring, development discussions, technical and soft skill trainings, language courses and knowledge sessionsErgonomic working environment, sports and fitness options and events (e.g. Global Challenge) as well as health daysAttractive company pension scheme, comprehensive insurance coverage and support in emergency situations Take your next career step with us! Apply now, preferably via our online application tool.If you have any questions, Alena Nicolai will be happy to answer them at+49 (0) 7031.204.8380 For further information visit: www.advantest-career.de Apply nowWould you like to know more about jobs at Advantest and about our unique team spirit? Our employees offer you their personal insights into our working environment.Would you like to take a closer look how our working environment looks like? Here you can take a short virtual 360° tour of our company - click the link to get to know us better.Böblingen Amerang
Salary: EUR 55000 - 70000 per year
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free