Product Security Engineer

hace 5 días


Mexico City Aspen Technology A tiempo completo

The Role AspenTech is an AI-powered software company helping the world’s leading energy, chemical and engineering companies succeed in their digital transformation, making their operations more efficient and reducing impact on the environment. At AspenTech, you will be part of a global market‑leading company with double‑digit growth and a blue‑chip customer base. The role is a key member of day‑to‑day operations of Product Security, working under the VP of Product Security to protect clients, enable teams to deliver secure development and position the company for future security needs. Your Impact Responsible for supporting the design, implementation, and oversight of Product Secure Development Lifecycle, including security requirements, secure architecture/design, risk assessment, threat models, security scanning, triage, vulnerability management, security design reviews, and product security validation/verification. Administers product security practices to product teams, technology, and security champions across the organization. Drives Product Security efforts to resolve challenges, enable automation, and impact organization security culture. Monitors information security best practices, standards, regulations, and industry threats for improvements to product security practices. Maintains a deep understanding of current information security issues, subscribing to major industry newsgroups and mailing lists, and assessing the impact of emerging issues on AspenTech’s systems and practices. Monitors security bulletins and alerts from all AspenTech vendors, evaluates vulnerability impact, and formulates and executes risk mitigation plans for product security. Member of the AspenTech Security Emergency Response Team (ASERT) providing expert analysis of security incidents reported by customers; works with information owners, product teams, technology teams, client support and customer contacts during and after incidents. Occasionally works after hours and on weekends to perform tasks that cannot be completed during business hours. What You’ll Need Bachelor’s degree (B.A./B.S.) or equivalent in computer science or a technical discipline from an accredited college or university. 1–3+ years of experience in IT and in an information security role or with security and development teams. Knowledge of information security regulatory requirements for privacy, secure by design, secure by default and defense in depth. Broad understanding of information security frameworks and regulations such as ISO27002, NIST 800, ISO 27001, and NIST 800‑53. Desired experience with Application/Product Security, Risk Assessment, Threat Models, Secure Architecture/Design, compliance, and audit. Desirable experience with cloud solutions such as Azure and AWS, including security policy, procedures, tools, services, and cloud security models. Demonstrated ability to plan, design, develop, deploy, and maintain application security best practices. Ability to assume high levels of responsibility and work with minimal supervision. Ability to work cooperatively and effectively with people at all organizational levels and build consensus through negotiation and diplomacy. Preferable exposure to IEC 62443‑4‑1, IEC 62443‑4‑2, NIST 800‑53, ISO 27001, ISO 27002, CSA, CISA, SANS, OWASP, CWE 25, and AI Security best practices. Desired domain knowledge and/or certifications such as CISSP, CISA, CCSP, CSSLP, CEH, SANS GIAC, AWS or Azure security certifications. Desired knowledge of static application security testing (SAST), dynamic application security testing (DAST), and software composition analysis (SCA). Desired experience with application security best practices such as web security, cloud security, pen testing, fuzz testing, security coding guidelines, security architecture/design principles, CVSS, STRIDE, and DREAD. Experience with application development technologies, processes, and best practices such as SAFE/Agile, RUP, CI/CD, and DevSecOps. Senior level: Mid‑Senior level Employment type: Full‑time Job function: Information Technology Industry: Software Development Location: Mexico City Metropolitan Area #J-18808-Ljbffr



  • Mexico City Aspen Technology, Inc. A tiempo completo

    Product Security Engineer page is loaded## Product Security Engineerlocations: Mexico Citytime type: Full timeposted on: Posted Yesterdayjob requisition id: R8131The driving force behind our success has always been the people of AspenTech. What drives us, is our aspiration, our desire and ambition to keep pushing the envelope, overcoming any hurdle,...


  • Mexico City Aspen Technology, Inc. A tiempo completo

    A leading AI-powered software firm in Mexico City is seeking a Product Security Engineer. This role requires a Bachelor's degree in a relevant field and experience in IT and information security. The candidate will support the design and oversight of security practices and collaborate with teams to enhance product security. This position offers opportunities...


  • Mexico City TTEC A tiempo completo

    Join to apply for the Application Security Engineer role at TTEC1 day ago Be among the first 25 applicantsJoin to apply for the Application Security Engineer role at TTECBe the spark that brightens days and ignite your career with TTEC’s award-winning employment experience. As an Application Security Engineer working remotely in Mexico, you’ll be a part...


  • Mexico City TTEC A tiempo completo

    Join to apply for the Application Security Engineer role at TTEC1 day ago Be among the first 25 applicantsJoin to apply for the Application Security Engineer role at TTECBe the spark that brightens days and ignite your career with TTEC’s award-winning employment experience. As an Application Security Engineer working remotely in Mexico, you’ll be a part...


  • Mexico City Epsilon Solutions Ltd. SA de CV. A tiempo completo

    Job profile:- Application Security Engineer Location : Mexico (REMOTE) Job: Long Term Contract This role is with top clients offering strong technical exposure and career growth. If you're open to new opportunities, I'd love to share more details.

  • Security Test Engineer

    hace 20 horas


    Mexico City Zurich Insurance A tiempo completo

    Join to apply for the Security Test Engineer role at Zurich Insurance. 3 days ago – Be among the first 25 applicants. At Zurich Capability Center, we are looking for a Security Test Engineer. The role focuses on ensuring that security testing deliverables meet the highest technical security standards, with a special emphasis on providing penetration...

  • Security Engineer

    hace 3 semanas


    Mexico City BairesDev A tiempo completo

    Security Engineer - Remote Work Join to apply for the Security Engineer - Remote Work role at BairesDev At BairesDev®, we've been leading the way in technology projects for over 15 years. We deliver cutting‑edge solutions to giants like Google and to the most innovative startups in Silicon Valley. Our diverse, 4,000+ team, composed of the world's Top 1%...

  • Security Engineer

    hace 3 semanas


    Mexico City BairesDev A tiempo completo

    Security Engineer - Remote Work Join to apply for the Security Engineer - Remote Work role at BairesDev At BairesDev®, we've been leading the way in technology projects for over 15 years. We deliver cutting‑edge solutions to giants like Google and to the most innovative startups in Silicon Valley. Our diverse, 4,000+ team, composed of the world's Top 1%...

  • Cloud Security Engineer

    hace 1 semana


    Mexico City Immunotec A tiempo completo

    Immunotec is a privately held company whose mission is to offer, through a sales network, high quality nutritional and wellness products supported by scientific research that improve quality of life and performance. Immunotec has offices in Canada, United States, Dominican Republic, Mexico, Guatemala, Colombia, Peru, Ecuador, Bolivia, Ireland and Spain. The...

  • Security Test Engineer

    hace 2 semanas


    Mexico City Zurich A tiempo completo

    Security Test Engineer Security Test Engineer is responsible to assure that Security Testing deliverables are meeting the highest quality Security Standards from the technology perspective and with focus on providing Penetration testing and App sec toolset administration support for the Security Testing BTS Team. As part of this role, it is expected to...