Apply now »

Title:  Network Security Engineer

Location: 

Bangalore, Karnataka, IN

Requisition ID:  135882

Job Summary

As a PSIRT Engineer Level (IC) 4, you will play a pivotal role in NetApp’s Global Security Product Security Incident Response Team, contributing to the identification, analysis, and resolution of security vulnerabilities across our product portfolio. This senior-level position requires a seasoned security professional with a deep understanding of product security vulnerability management, incident response, and secure development practices.
In this role, you will leverage advanced technologies, including AI-driven tools, to enhance vulnerability detection, assessment, and remediation. You will also act as a key technical leader, collaborating with cross-functional teams to drive security initiatives, mentor junior team members, and contribute to the continuous improvement of NetApp’s product security posture.
This hybrid role requires the candidate to work onsite three days a week and with the choice of remotely for the remainder.

Job Requirements

Product Security Incident Response Team
Lead the identification, triage, and prioritization of security vulnerabilities across NetApp products and services, leveraging AI-driven tools and methodologies.
Collaborate with engineering, product management, and security teams to assess the impact of vulnerabilities and define effective remediation strategies.
Act as a key responder for product security incidents, coordinating cross-functional efforts to contain, investigate, and resolve issues.
Develop and maintain incident response playbooks and processes, incorporating advanced technologies and best practices.
Monitor emerging threats and vulnerabilities relevant to NetApp’s ecosystem, providing actionable insights to proactively mitigate risks.
Draft and publish security advisories, bulletins, and updates for internal and external audiences, ensuring clear and effective communication during security incidents.

Leadership and Collaboration
Serve as a technical leader within the PSIRT team, mentoring junior engineers and fostering a culture of collaboration and knowledge sharing.
Act as a liaison between the PSIRT team and internal stakeholders, ensuring alignment on security priorities and initiatives.
Partner with external researchers, vendors, and industry groups to validate and address reported vulnerabilities.

Process Improvement and Innovation
Identify opportunities to enhance PSIRT processes, tools, and workflows to improve efficiency and scalability.
Drive the adoption of AI-driven methodologies to enhance vulnerability detection, assessment, and remediation.
Contribute to the development and implementation of strategies to address evolving security challenges, including regulatory changes and emerging technologies.

Documentation and Reporting
Maintain accurate and comprehensive documentation of vulnerabilities, incidents, and remediation efforts.
Generate regular reports and metrics to provide visibility into NetApp’s product security posture and the effectiveness of PSIRT activities.

Education

Required Qualifications
Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
6+ years of experience in product security, vulnerability management, or incident response, with a strong focus on software and application security.
Deep understanding of common security vulnerabilities (e.g., OWASP Top 10, CVSS) and secure development practices.
Hands-on experience with vulnerability scanning tools, static/dynamic analysis tools, and penetration testing methodologies.
Strong analytical and problem-solving skills, with the ability to assess complex security issues and develop effective solutions.
Excellent communication and interpersonal skills, with the ability to convey technical concepts to both technical and non-technical audiences.
Proven ability to manage multiple priorities and work effectively in a fast-paced, dynamic environment.

Preferred Qualifications
Advanced certifications such as CISSP, OSCP, or GIAC are highly desirable.
Experience with AI-driven security tools and techniques.
Knowledge of secure coding practices and familiarity with programming languages such as Python, Java, or C++.
Experience with cloud security and containerized environments (e.g., AWS, Azure, Kubernetes, Docker).
Familiarity with regulatory and compliance frameworks (e.g., GDPR, ISO 27001, NIST).
Experience engaging with external security researchers and managing vulnerability disclosure programs.

What We Offer
A dynamic and inclusive work environment that values innovation and collaboration.
Opportunities for professional growth and development in a cutting-edge security organization.
Competitive compensation and benefits package.


Job Segment: Network, Compliance, Product Manager, Business Process, Technology, Legal, Management, Marketing, Operations

Apply now »