Senior Software Cyber Security Developer
Salva questo lavoro e mantieni la tua ricerca organizzata
Crea un account gratuito per salvare lavori, creare avvisi e tornare a questa inserzione dalla tua dashboard.
Do you want to be part of a business that genuinely values entrepreneurialism, innovation and individual accountability? We focus on our customers and are proud of the difference our technology makes. We partner with some of the biggest manufacturing companies in the world and our technical innovations are used to enhance well-known brands across multiple industries.
Do you have a true passion for the Pharmaceutical or Electronic industries and for delivering the best solutions for our customers?
We are looking for Senior Software Cyber Security Developer.
What you will doThe Senior Software Cyber Security Developer is responsible for designing, developing, and maintaining robust software solutions for industrial applications, with a focus on low-level communication and integration with hardware devices. The role requires strong analytical skills, autonomy, and the ability to work collaboratively within an Agile team. In the specific scope, he/she will:
- Develop and maintain software following secure coding practices and secure software development lifecycle (SSDLC) principles.
- Perform root cause analysis of security vulnerabilities, software defects and field issues.
- Design, develop, test and validate security patches, mitigations and temporary workarounds for identified vulnerabilities.
- Manage the vulnerability lifecycle, including identification, assessment, prioritization, remediation and verification activities.
- Analyze CVEs, security advisories and vulnerability disclosures to evaluate potential impact on company products.
- Assess and prioritize vulnerabilities using CVSS scoring methodologies and risk-based approaches.
- Participate in threat modeling activities during product design and development phases.
- Support emergency response activities, including development and deployment of hot fixes for critical security issues.
- Collaborate with QA and cybersecurity teams to validate remediation effectiveness and prevent vulnerability recurrence.
- Manage source code versioning, branching strategies and release processes using Git-based workflows.
- Contribute to secure architecture reviews and software security improvement initiatives.
- Document security findings, remediation activities, risk assessments and technical decisions.
- Degree in Computer Science, Engineering (Electrical, Electronic, Biomedical, Telecommunications, Automation) or related field.
- At least 6 years of professional experience in software development, software maintenance or cybersecurity-related software engineering roles.
- Strong knowledge of secure coding practices and common software vulnerability classes (OWASP Top 10, CWE).
- Experience developing, testing and deploying security patches, mitigations and emergency hot fixes.
- Proven experience performing root cause analysis and corrective action definition.
- Knowledge of vulnerability management processes and vulnerability lifecycle management.
- Understanding of CVE (Common Vulnerabilities and Exposures) and CVSS (Common Vulnerability Scoring System).
- Ability to read, interpret and assess security advisories, vulnerability disclosures and vendor bulletins.
- Experience with source code management, branching strategies and release management using Git, Bitbucket or similar tools.
- Familiarity with threat modeling methodologies and risk assessment techniques.
- Experience working in Agile and DevOps environments with CI/CD pipelines.
- Solid experience in object-oriented programming (Delphi/Object Pascal with RAD preferred, C++, C#).
- Proven experience with industrial communication protocols (Modbus RTU/TCP), TCP/IP socket programming, OPC, and serial interfaces (RS485).
- Experience with database management (SQL/NoSQL; Embarcadero and/or, PostgreSQL is a plus).
- Familiarity with unit testing frameworks (DUnit, TestInsight or similar).
- Experience reviewing public security advisories and CVE disclosures.
- Contribution to or collaboration with open-source projects and communities.
- Familiarity with coordinated vulnerability disclosure processes.
- Knowledge of vulnerability databases such as NVD, MITRE CVE and CISA advisories.
- Experience interacting with external security researchers or product security incident response teams (PSIRT).
- Security certifications or specialized security training.
- Experience or knowledge in machine learning frameworks (e.g., TensorFlow, PyTorch, scikit-learn).
- Ability to design and implement basic machine learning models for industrial data analysis or predictive maintenance.
- Familiarity with