Product Security Threat Intelligence Engineer

Posted:
8/23/2024, 9:52:16 AM

Location(s):
Lake Forest, California, United States ⋅ California, United States

Experience Level(s):
Junior ⋅ Mid Level ⋅ Senior

Field(s):
Software Engineering

Workplace Type:
Remote

At Alcon, we are driven by the meaningful work we do to help people see brilliantly. We innovate boldly, champion progress, and act with speed as the global leader in eye care. Here, you’ll be recognized for your commitment and contributions and see your career like never before. Together, we go above and beyond to make an impact in the lives of our patients and customers.

We foster an inclusive culture and are looking for diverse, talented people to join Alcon and we are looking for a Product Security Threat Intelligence Engineer in Lake Forest, CA.

In this role, a typical day will include:

  • Supports threat intelligence solutions and prioritization of vulnerabilities for remediation.

  • Builds competencies with gap analysis, process changes, and integration of automated tools across the product lifecycle.

  • Reviews and recommend remediations from software tooling analysis.

  • Builds strong collaboration with cross-functional stakeholders and teams across the product development lifecycle.

  • Contributes to analyzing risks, assessing security gaps, and recommending state of the art solutions.

  • Supports the creation of accurate documentation of security process results for management and stakeholders.

  • Provides intelligence input into management of security patches for operating systems, 3rd party software.

  • Provides support with development teams to derive solutions to existing security issues.

  • Communicate with stakeholders concerning discovered vulnerabilities and remediation suggestions.

  • Supporting incident response processes and PSIRT as required in addressing the identified incidents as necessary.

  • Provides support for penetration tests and reports as necessary.

  • Works closely with the Threat Intelligence Manager and support staff to support product security activities and associated deliverables.

  • Performs/supports yearly risk analysis of in market products; document and score findings, communicate results to development teams.

  • Supports yearly penetration tests as directed, create or reviewing final reports.

  • Becomes competent with SBOM creation from tools and scripts become a subject matter expert in the use and datamining of results.

  • Reviews security updates for possible negative affects against in market products and monitor media for new vulnerabilities.

  • Writes and/or review patching and update communications to customers and disseminate.

  • Supports preparation software for SAST, DAST, fuzzing scans; review and document results, provide recommendations for remediations.

  • Implements image hardening standards to include the use of DISA STIGs.

  • Summarizes product risks for biannual stakeholder reports.

  • Interacts with outside vendors, write/modify/convey host module requirements, and be able to identify and hold outside vendors accountable for their deliverables.

Experience

  • BS of Computer Science or other related discipline; or 4 years of relevant experience.

  • Scripting for Microsoft development environment, such as PowerShell

  • Familiar with Window OS services, processes, driver and registry configurations and analysis techniques

  • Familiar with Windows and Linux cybersecurity configurations.

  • Familiar with the following types of tools: SAST, DAST, SBOM, network forensics tools, fuzzing, standard penetration test tools is a plus.

  • Knowledge of networking

  • Familiar with Microsoft Visual Studios, ADO, or other integrated development environment (IDE) tool is a plus.

  • Ability to follow directions, identify issues, recommend and deliver quality results on schedule.

  • Understanding of Software Development Lifecycle Management (SDLC) – (Agile/Scrum, iterative) a plus.

  • Good interpersonal & Communication skills to build positive departmental and inter-departmental relationships in a virtual, remote, and asynchronous environment.

What You'll Bring to Alcon:

  • Bachelor’s Degree or Equivalent years of directly related experience (or high school +13 yrs; Assoc.+9 yrs; M.S.+2 yrs; PhD+0 yrs) 

  • The ability to fluently read, write, understand, and communicate in English

  • 5 Years of Relevant Experience

How You Can Thrive at Alcon:

  • Join Alcon’s mission to provide outstanding, innovative products and solutions to improve sight, improve lives, and grow your career!

  • Alcon provides robust benefits package including health, life, retirement, flexible time off, and much more!

  • Travel Requirements: 5-10%

  • Relocation assistance: yes

  • Sponsorship available: yes    

Alcon Careers

See your impact at alcon.com/careers

    #LI-DNI

      

    ATTENTION: Current Alcon Employee/Contingent Worker

    If you are currently an active employee/contingent worker at Alcon, please click the appropriate link below to apply on the Internal Career site.

    Find Jobs for Employees

    Find Jobs for Contingent Worker

      

    Total Rewards

    Alcon’s Total Rewards programs are designed to align to incentives with business goals, encourage the right values and behaviors, and deliver long-term value.  The first layer of our rewards program is compensation.  We offer a combination of fixed pay and variable pay, which includes short-term incentives, and long-term incentives for eligible population.  Our benefits program provides security for life events through life and disability insurance, supports savings for retirement, promotes good health and well-being and supports associates and their families during times of illness.  To learn more about Alcon’s Corporate Social Responsibility including our Total Rewards, click here

      

    Pay Range

    $114,400.00 - $171,600.00

      

    Pay Frequency

    Annual

      

    Alcon is an Equal Opportunity Employer and participates in E-Verify. Alcon takes pride in maintaining a diverse environment and our policies are not to discriminate in recruitment, hiring, training, promotion or other employment practices for reasons of race, color, religion, gender, national origin, age, sexual orientation, gender identity, marital or veteran status, disability, or any other legally protected status. Alcon is also committed to working with and providing reasonable accommodation to individuals with disabilities. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the application process, or in order to perform the essential functions of a position, please send an email to [email protected] and let us know the nature of your request and your contact information.