Staff Cyber Security Engineer in Bengaluru, India - Jobeax
Vacancy description
Staff Cyber Security Engineer in Bengaluru, India
Ge Healthcare
HybridMix of office and remote
On-siteWork from the office
India, Bengaluru
Staff Cyber Security Engineer in Bengaluru, India is listed on Jobeax. Browse 30,000+ vacancies available.
Sun, 08/30/2026 - 00:41
Job Description Summary
The Staff Cyber Security Engineer will serve as the Product Security Representative (PSR) for AIS Digital Ecosystems – Imaging360, a cloud-enabled enterprise healthcare platform that connects with on-premises imaging scanners and integrates with third-party products and services. This role is responsible for embedding cybersecurity, privacy, and regulatory expectations into product design, software development, cloud operations, integrations, and lifecycle management. The successful candidate will partner with Product Security Leaders, engineering, architecture, product management, cloud operations, quality, compliance, and external vendor teams to ensure Imaging360 follows the GE HealthCare Design Engineering Privacy and Security (DEPS) process. The role requires strong experience securing enterprise-scale cloud products, distributed healthcare workflows, hybrid cloud/on-premises connectivity, APIs, identity and access management, third-party integrations, vulnerability management, and secure product lifecycle practices. The Senior Cyber Security Engineer will be expected to leverage open-source technology and industry standard programming languages to enhance cyber security operations. Success in this role will require delivery of engineering, software development, and build-automation projects in an agile environment.
Job Description
Key Responsibilities
Serve as the Product Security Representative for multiple Imaging360 products and releases, representing cybersecurity and privacy requirements throughout the product lifecycle.
Drive execution of the GEHC DEPS process, including security and privacy planning, threat modeling, cybersecurity risk assessment, secure design reviews, vulnerability management, lifecycle security artifacts, and phase-appropriate security deliverables from concept through development and evaluation.
Own Security Design Reviews across the product lifecycle, including concept definition, architecture and design, development execution, verification / evaluation, and release readiness for Imaging360 capabilities and integrations.
Partner with Product Security Leaders and product teams to interpret and apply GEHC cybersecurity standards, regulatory expectations, and quality management system requirements.
Lead threat modeling and security architecture reviews for cloud-hosted enterprise applications, APIs, data flows, scanner connectivity, on-premises integrations, identity services, and third-party product integrations.
Assess cybersecurity risks associated with hybrid deployments involving cloud services, customer networks, on-premises scanners, edge components, and external vendor systems.
Define and influence implementation of security controls for authentication, authorization, encryption, audit logging, secrets management, network segmentation, secure communication, data protection, and system hardening.
Own or support cybersecurity management plans, vulnerability triage, remediation planning, risk acceptance discussions, and closure tracking across multiple product teams.
Coordinate SAST, SCA, DAST, penetration testing, infrastructure scanning, container security, cloud security reviews, and remediation activities in partnership with engineering and operations teams.
Generate, maintain, and assess Software Bill of Materials (SBOM) content, including open-source, commercial, and third-party components integrated into the product.
Evaluate third-party product integrations for cybersecurity, privacy, data protection, interface security, supportability, and operational risk.
Collaborate with architecture, platform, DevOps, cloud operations, quality, regulatory, privacy, and program teams to ensure secure-by-design and compliant delivery.
Provide cybersecurity guidance to scrum teams, review design and implementation decisions, and help teams adopt secure SDLC and DevSecOps practices.
Support fielded product security activities, including vulnerability impact assessments, customer notifications, remediation planning, patch strategy, and lifecycle risk management.
Champion Imaging360-level security KPI reporting, governance dashboards, and ongoing monitoring of security health indicators, including vulnerability posture, remediation progress, open risks, security test coverage, SBOM readiness, and DEPS compliance status.
Prepare clear technical and leadership-level communication on security posture, risks, remediation status, and product security readiness.
Qualifications
Bachelor’s degree in Computer Science, Computer Engineering, Cybersecurity, Information Security, Software Engineering, or a related STEM discipline.
12+ years of experience in software engineering, product security, application security, cloud security, or cybersecurity engineering for enterprise products.
Hands-on experience securing cloud-hosted enterprise applications and distributed systems, preferably in AWS, Azure, or similar cloud environments.
Experience with enterprise products that integrate with on-premises systems, connected devices, customer networks, or scanner / equipment workflows.
Strong understanding of secure software development lifecycle practices, threat modeling, cybersecurity risk management, vulnerability management, and security control implementation.
Working knowledge of application, API, container, infrastructure, network, and cloud security concepts.
Experience with security assessment tools and practices such as SAST, SCA, DAST, penetration testing, container scanning, cloud posture management, SBOM generation, and dependency vulnerability analysis.
Knowledge of OWASP Top 10, secure coding principles, identity and access management, encryption, audit logging, secure communications, and privacy-by-design principles.
Ability to work effectively in a regulated product development environment and maintain compliance with quality, privacy, and cybersecurity processes.
Demonstrated technical leadership, stakeholder management, and communication skills across engineering, product, quality, regulatory, security, and leadership audiences.
Desired Skills
Experience serving as a Product Security Representative, security architect, or product security owner for multiple products or releases.
Experience with healthcare software, medical device software, imaging workflows, DICOM environments, or connected clinical systems.
Familiarity with GEHC DEPS or equivalent product cybersecurity lifecycle processes in regulated industries.
Understanding of applicable cybersecurity and privacy frameworks such as FDA cybersecurity guidance, NIST, ISO 27001, IEC 81001-5-1, HIPAA, GDPR, SOC 2, or similar standards.
Experience assessing third-party products, SaaS services, APIs, vendor integrations, and data exchange workflows for cybersecurity and privacy risk.
Hands-on experience with tools such as threat modeling tools, Black Duck, Syft, Grype, SonarQube, Burp Suite, Wiz, Twistlock / Prisma Cloud, or equivalent security platforms.
Experience with DevSecOps practices, CI/CD security gates, automated security testing, infrastructure-as-code security, container security, and cloud-native monitoring.
Strong understanding of identity federation and access control technologies such as SAML, OAuth, OIDC, SCIM, RBAC, and least-privilege access models.
Security certifications such as CISSP, CSSLP, CISM, CCSP, CEH, or equivalent credentials are a plus.
Ability to influence without authority, simplify complex security topics, and drive timely risk-based decisions across global and cross-functional teams.
... Cybersecurity, Computer Science, Information Security, Electronics, Instrumentation, or a related field. A PhD is a plus. Relevant industry certifications in cybersecurity, industrial cybersecurity, governance, risk, or related domains will be desirable. Minimum of 3 years of experience in cybersecurity, OT/ICS environments, ...
... in ME/M.Tech Experience ~8 years of proven experience in managing security architecture reviews independently. Skills and Attributes Strong understanding of cybersecurity and information security principles. Knowledge of enterprise security architecture standards and best practices. Ability to analyze threat landscapes ...
... Translate complex security risks and technical findings into clear recommendations for engineering teams and senior leadership. WHAT YOU BRING - 8+ years of cybersecurity experience, including significant experience in Security Operations, Attack Surface Management, Vulnerability Management, or Security Engineering. - ...
... Head of Cyber Security Location: Mumbai Experience: 18+ Yrs We are looking for an experienced Head of Cyber Security to lead and strengthen our organization’s cybersecurity strategy, governance, risk management, and security operations. Define and drive the overall cybersecurity strategy and roadmap - Lead security operations, ...
... a recognised institution. Post-graduation: Experience ~ Minimum of 2 to 5 years of relevant experience in cybersecurity, including hands-on assessments and security operations within BFSI, IT/ITES industry. Proficiency in vulnerability assessment, penetration testing, and application security. Understanding of network traffic ...
... Support supplier security governance and contractual security requirements Lead enterprise awareness programs and phishing initiatives Promote organization-wide security culture initiatives Required Qualifications - Bachelor's degree in Cybersecurity / IT / Engineering or related fields - 8–12+ years cybersecurity experience ...
India, Bengaluru
View vacancy
IR.MITWPU -Dr. Vishwanath Karad MIT World Peace University
... give required exposure Research Development Expected to show a high level of proficiency in research in Computer Science and allied areas (AI/ML, Data Science, Cybersecurity, Cloud Computing, IoT, etc.) Responsible to write research papers Responsible for publishing papers nationally/internationally in peer-reviewed journals ...
... with Agile Tribes and Squads across Quarterly Planning, Sprint Planning, Sprint Refinement, and Sprint Retrospectives. Embed cybersecurity and information security best practices into architecture and solution design. Ensure solutions are designed with appropriate reliability, resiliency, security, and performance considerations. ...
Head of IT Risk / Cybersecurity Risk 15+ Years Chennai / Navi MumbaiSummary : We are hiring an experienced Head of IT Risk / Cybersecurity Risk to lead the 2nd Line of Défense (Corporate IT Risk) function for a leading global banking GCC. This leadership role is responsible for driving enterprise IT risk governance, independent ...
Role : Security Operations Center (SOC) LeadDepartment : Cyber Operations & EngineeringLocation : MumbaiExperience Required : 8 - 10 YearsReporting To : Head of Cybersecurity / CISORole Summary : The SOC Lead oversees 24x7 security operations, advanced detection engineering, and high-severity incident response. This role ...
... expertise in one or more of the following areas are encouraged to apply: Artificial Intelligence & Machine Learning Data Science & Big Data Analytics Cyber Security / Information Security Cloud Computing & Distributed Systems Internet of Things (IoT) Computer Networks Database Management Systems Software Engineering Web ...
... traditional tradeoffs. Join Coupang now to create an epic experience in this always-on, high-tech, and hyper-connected world. Role Overview As a Systems & Platform Engineer, you will design and develop responsive applications, scalable APIs, and domain-specific AI models while driving performance, reliability, and automation. You ...
... organizations worldwide, OneTrust is shaping the future where trusted data becomes a transformative force for business and society. The Challenge We're looking for a Staff Software Engineer with a passion for solving problems to join our agile Product Engineering team at OneTrust. Senior Software Engineers own the delivery of complex ...
... platform systems such as distributed compute, data orchestration, distributed storage, streaming infrastructure ensuring scalability, reliability, efficiency and security - Working with Product engineering team to influence designs with data, AI and analytics use cases in mind - In depth experience in System design involving ...
... protecting the future of work. We are a globally-minded company dedicated to delighting our customers across the world. We are looking for an experienced full stack Staff Software Engineer (with a focus on UI) who is passionate about building large-scale, mission-critical infrastructure in a fast-paced agile environment. The ideal ...
... restaurants and local businesses succeed in a digital world, helping business owners operate, increase sales, engage customers, and keep employees happy. As a Staff Engineer on the Catalog and Inventory team you will deliver significant products and core capabilities across teams, building the backend systems behind what ...
... Your role ensures the overall security and integrity of our corporate network by leveraging network security best practices, innovative products, and rigorous security validation. Reporting to the Network Engineering Manager, this operations-focused role is distinct from core Network Engineering and Network Security, centering ...