Product Security Engineer

Inmar Intelligence

United States

On-site

USD 110,926 - 184,876

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, Dental, and Vision insurance
401(k) retirement plans with company match
Flexible time off and 11 paid holidays
Tuition Reimbursement and certification support

Job summary

A leading technology company is seeking a Product Security Engineer to conduct comprehensive security assessments across various products, including mobile applications and IoT hardware. The role involves vulnerability analysis, collaborating with cross-functional teams to enhance security, and managing third-party risks. Candidates must have a Bachelor’s degree in a related field and 5-7 years of relevant experience. This position offers a competitive salary and benefits package, emphasizing integrity and individual contributions.

Qualifications

  • Proficient in using debuggers, decompilers to analyze code across various architectures.
  • Strong understanding of binary file formats like PE and ELF.
  • Experience with application security testing and static/dynamic analysis tools.

Responsibilities

  • Conduct comprehensive security assessments on various products.
  • Collaborate with teams to enhance security measures.
  • Document findings and provide security recommendations.

Skills

Reverse engineering
Malware analysis
Vulnerability analysis
Network traffic analysis
Low-level data extraction
Analytical skills
Debugging

Education

Bachelor of Science in Computer Science, Electrical Engineering, or Cyber Security

Tools

QEMU
Verilog
tcpdump
Scapy
CycloneDX

Job description

The Product Security Engineer is responsible for conducting comprehensive security assessments on various products, including mobile applications, IoT hardware/firmware, compiled software, and browser extensions. This role involves identifying vulnerabilities, developing mitigation strategies, and collaborating with cross‑functional teams to enhance security. The engineer will use both offensive and defensive security tactics to safeguard products and manage third‑party risk. This role contributes to the organization’s mission by safeguarding the supply chain and managing third‑party risk.

Primary Accountabilities
Technical (70%)
  • Conduct comprehensive security assessments of mobile applications, IoT hardware / firmware, compiled software and browser extensions.
  • Perform reverse engineering and vulnerability analysis, and penetration testing to uncover security risks.
  • Analyze binary file formats (PE, ELF, Mach‑O) and runtime behaviors for security flaws.
  • Review browser extensions and software plugins for security flaws and compliance with best practices.
  • Perform product data analysis to identify potential vulnerabilities and determine access scope.
Operational (30%)
  • Collaborate with cross‑functional teams (e.g. engineering, product, and security) to enhance security measures and improve resilience against cyber threats.
  • Develop and recommend mitigation strategies and risk profiles for identified vulnerabilities.
  • Document findings and communicate security recommendations to both technical and non‑technical audiences.
  • Maintain organizational product inventory with security assessment status and secure configuration requirements.
  • Responsible for the production and maintenance of security documentation, such as bill of material repositories and analytical procedure guides.
Required Qualifications
  • Bachelor of Science in a related field, such as Computer Science, Electrical Engineering, or Cyber Security
  • 5‑7 years of relevant experience in software exploitation, reverse engineering, malware analysis, or related field; or any equivalent combination of experience and training that provides the required knowledge, skills, and abilities needed to complete the primary job responsibilities
  • Proficient in using debuggers, decompilers, and disassemblers to analyze code for vulnerabilities across various CPU architectures, including ARM and RISC‑V.
  • Strong understanding of binary file formats like PE, ELF, and Mach‑O, enabling analysis of applications for security flaws
  • Skilled in low‑level data extraction and analysis using tools like QEMU and Verilog to identify and verify vulnerabilities through emulation
  • Knowledgeable about Linux loaders, binary packing, and embedded systems tools such as BusyBox, binwalk, and u‑boot
  • Experienced in capturing and analyzing network traffic, including using tools like tcpdump and Scapy to dissect proprietary protocols
  • Experienced in BOM enumeration and leveraging tools like CycloneDX for inventory and risk assessment.
  • Strong analytical and problem‑solving skills, with a keen eye for identifying and mitigating security risks.
  • Excellent communication skills for documenting findings, providing security recommendations, and effectively disclosing vulnerabilities to technical and non‑technical audiences.
Preferred Qualifications
  • Prior experience working in cybersecurity research or security assessment functions.
  • Experience with application security testing and associated static and dynamic analysis tools.
  • Knowledge of cryptographic principles and secure coding practices.
  • Familiarity with security assessment frameworks and compliance standards.
  • Prior experience with radio signals analysis and associated security hardening methodologies.
Individual Competencies
  • Adaptable: Responds to change with a willingness to learn new ways to accomplish work objectives with a positive attitude.
  • Innovative: Ability to develop, sponsor, or support the introduction of new and improved methods, products, procedures or technologies.
  • Analytical and Critical Thinking: Ability to tackle a problem by using a logical, systematic, sequential approach.
  • Problem Solving: Gathers and analyzes information to generate and evaluate potential solutions to problems, issues and challenges while weighing the accuracy and relevance of the facts, data and information.
  • Communication: Giving and receiving messages and information in written, oral, and visual formats concisely for a complete understanding of meaning and intent.
  • Effective Execution: Gathers and analyzes information to generate and evaluate potential solutions to problems, issues and challenges while weighing the accuracy and relevance of the facts, data and information.
Physical Demands
  • Regularly required to use hands to finger, handle or feel objects, tools or controls, and reach with hands or arms.
  • Regularly required to talk or hear and read instructions on a computer monitor and/or printed on paper.
  • Occasionally required to stand, kneel or stoop, and lift and/or move up to 25 pounds.
  • Regularly required to view items at an extremely close range and must be able to adjust and readjust focus.
  • Regularly required to remain in a stationary position.
As An Inmar Associate
  • Put clients first and consistently display a positive attitude and behaviors that demonstrate an awareness and willingness to listen and respond to clients in order to meet their short‑term and long‑term needs, requirements and exceed their expectations.
  • Treat clients and teammates with courtesy, consideration and tact; you also can perceive the needs of internal and external clients and communicate effectively with the objective of delighting and retaining the client.
  • Build collaborative relationships and work cooperatively with others, inside and outside the organization, to accomplish objectives, develop and maintain mutually beneficial partnerships, leverage information and achieve results.
  • Set and attain achievable, yet aggressive, goals with a sense of urgency and accountability.
  • Understand that results are important and focus on turning mission into action to achieve results following the principles of agile, dynamic execution while consistently complying with quality, service and productivity standards to meet deadlines and exceed expectations by giving our clients the best possible outcome.
  • Support a safe work environment by following safety rules and regulations and reporting all safety hazards.
Benefits Overview

At Inmar, we put people first and that means empowering our associates to thrive at every stage of life and career. Our comprehensive and competitive benefits package is thoughtfully designed to support a wide range of lifestyles and life stages.

Eligible Associates Have Access To
  • Medical, Dental, and Vision insurance
  • Basic and Supplemental Life Insurance options
  • 401(k) retirement plans with company match
  • Health Spending Accounts (HSA/FSA)
We Also Offer
  • Flexible time off and 11 paid holidays
  • Family‑building benefits, including Maternity, Adoption, and Parental Leave
  • Tuition Reimbursement and certification support, reflecting our commitment to lifelong learning
  • Wellness and Mental Health counseling services
  • Concierge and work/life support resources
  • Adoption Assistance Reimbursement
  • Perks and discount programs
Compensation

At Inmar, Compensation Reflects Our Belief In Integrity, Transparency, And The Value Of Individual Contributions. The Hiring Range For This Position Is 110,926.13 – 184,876.88 USD Annual. The final offer may vary based on factors such as geographic location, job‑related skills, education, certifications, work experience, and other relevant considerations. Depending on the job level and role, it may include: annual discretionary bonuses through our Core Company Performance Bonus Plan; equity grants, sign‑on bonuses, and other tailored incentive opportunities; additional discretionary compensation such as Growing Revenue Incentives, Corporate or VIP Bonuses, and Deferred compensation opportunities.

Equal Opportunity Employer

We are an Equal Opportunity Employer, including disability/vets. This position is not eligible for student visa sponsorship, including F‑1 OPT or CPT. Candidates must have authorization to work in the U.S. without the need for employer sponsorship now or in the future.

Recruitment Fraud Notice

Recruitment fraud is an increasingly common scam where individuals pose as employers to offer fictitious job opportunities. Scammers sometimes impersonate Inmar recruiters on LinkedIn and other channels. We will never ask for payment or sensitive personal information during the hiring process. Verify any role on our official Workday Careers site and learn how to spot scams in our full notice.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Project Manager
Technical Project Manager

RXinsider LTD. • North Carolina

On-site
USD 90,000 - 120,000
Test Engineer
Test Engineer

Inmar Intelligence • Winston-Salem (NC)

On-site
USD 71,000 - 120,000
Medical insurance
Dental insurance
Vision insurance
+10
Administrative Assistant
Administrative Assistant

Inmar Intelligence • Libertyville (IL)

On-site
Flexible time off
11 paid holidays
Tuition Reimbursement and cert. 지원
+4
Principal Software Engineer
Principal Software Engineer

Inmar Intelligence • Winston-Salem (NC)

On-site
USD 164,000 - 274,000
Medical, Dental, and Vision insurance
401(k) retirement plans with company match
Flexible time off and paid holidays
Product Manager – RCM (Pharmacy)
Product Manager – RCM (Pharmacy)

Inmar Intelligence • Winston-Salem (NC)

On-site
USD 91,000 - 152,000
Medical insurance
401(k) plan with company match
Flexible time off
Warehouse Operations Associate
Warehouse Operations Associate

Inmar Intelligence • Libertyville (IL)

On-site
USD 20,195 - 28,763
Medical, Dental, and Vision insurance
401(k) retirement plans with company match
Paid time off and holidays
+1
Process Engineer, Process Improvement
Process Engineer, Process Improvement

Inmar Intelligence • Grand Prairie (TX)

On-site
USD 75,000 - 95,000
Medical, Dental, and Vision insurance
401(k) retirement plans with company match
Flexible time off and 11 paid holidays
+1
Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

Inmar Inc. • Northern (KY)

Hybrid
USD 140,000 - 190,000
Medical, Dental, Vision
401(k) retirement plans
Flexible time off
+1
Application Engineer, Cyber Security
Application Engineer, Cyber Security

Inmar Inc. • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+2
Executive Assistant, Healthcare
Executive Assistant, Healthcare

Inmar Intelligence • Winston-Salem (NC)

On-site
USD 60,000 - 85,000
Medical, Dental, and Vision insurance
401(k) retirement plans with company 

Tuition Reimbursement and certified