
Cyber Security Engineer
Hewlett Packard Enterprise
full-time
Posted on:
Location Type: Hybrid
Location: Spring • Colorado • Massachusetts • United States
Visit company websiteExplore more
Salary
💰 $137,000 - $315,000 per year
About the role
- Partner with product engineering teams to embed security practices into the software development lifecycle, from design through deployment.
- Define and maintain security patterns for common platform components (APIs, services, identity, secrets, data storage).
- Provide actionable remediation guidance for engineering teams, aligned to business risk and delivery timelines.
- Manage and triage findings across: SAST / SCA Container and artifact scanning Secret scanning DAST (where applicable) Malware Cloud security posture and configuration findings.
- Drive consistent risk scoring, prioritization, and remediation tracking aligned to SLAs.
- Validate fixes through testing and evidence-driven verification.
- Integrate security tooling and controls into CI/CD pipelines with a focus on automation and developer usability.
- Improve pipeline outcomes by reducing false positives and creating security guardrails that scale.
- Build automation and scripts for security testing, enforcement, metrics, and reporting.
- Assess and advise on security controls for: IAM and access policies Network segmentation and security groups Encryption and key management Logging and monitoring.
- Assist in root cause analysis and drive remediation actions that prevent recurrence.
- Contribute to security standards, runbooks, and operational readiness.
Requirements
- 7+ years in security or IT roles.
- 3+ years of hands-on experience in cybersecurity engineering, product security, DevSecOps, or secure platform engineering.
- Strong understanding of common application security risks and mitigations (OWASP Top 10, secure coding patterns).
- Experience integrating security scanning into CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins, Azure DevOps, etc.).
- Working knowledge of cloud security fundamentals (AWS, Azure, or GCP).
- Experience in at least one scripting/programming language (Python, Go, Java, JavaScript/TypeScript, or similar).
- Ability to communicate security risk clearly and pragmatically to engineering teams and technical leadership.
Benefits
- Health & Wellbeing
- Personal & Professional Development
- Unconditional Inclusion
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cybersecurity engineeringDevSecOpssecure platform engineeringapplication security riskssecure coding patternssecurity scanningscriptingprogrammingcloud security fundamentalsrisk scoring
Soft Skills
communicationremediation guidanceroot cause analysiscollaborationproblem-solving