Sr IoT Security Engineer (Pune)

Sr IoT Security Engineer (Pune)

24 Sep
|
Insight Global
|
Pune

24 Sep

Insight Global

Pune

Job Description Key Responsibilities Perform hands-on security testing and vulnerability assessments of IoT devices, connected hardware, gateways, controllers, edge devices, wireless technologies, industrial equipment, and related field-deployed systems. Assess the security of device configurations, communications architectures, authentication mechanisms, credential and secrets management, provisioning workflows, firmware update processes, secure boot implementations, remote access solutions, and system integrations. Conduct authorized security assessments of connected products and embedded systems, including hardware analysis, firmware review, protocol testing, network traffic analysis, physical access testing, and device configuration assessments. Evaluate device communications and network interactions across enterprise, cloud, and operational technology environments, including TCP/IP networking, DNS, routing, firewalls, network segmentation, wireless technologies, cellular communications, and common IoT or industrial protocols. Support security reviews of connected product ecosystems, industrial control systems, edge computing architectures, data collection platforms, operational technologies, and associated communications infrastructure. Utilize industry-standard security tools and methodologies to identify, validate, and document vulnerabilities across hardware, firmware, software, and network layers. Partner closely with engineering, product, and architecture teams to develop practical remediation strategies, secure configuration guidance, compensating controls, and risk-based mitigation plans. Validate security findings identified through internal assessments, third-party testing, customer inquiries, vulnerability management programs, automated scanning, product reviews, and field observations. Produce explicit technical documentation and assessment reports detailing vulnerability impact, affected components, exploitability, business risk, remediation recommendations, and validation outcomes. Communicate technical findings and recommendations to engineering teams, product leaders, cybersecurity stakeholders, business partners, and customer-facing organizations. Participate in customer and stakeholder discussions related to product security, secure deployment practices, vulnerability management, and security program maturity. Contribute to the development and enhancement of product security standards, testing methodologies, secure design practices, vulnerability management processes, hardening guidance, and reusable security documentation. Collaborate with cloud, application, mobile, identity, and API security teams when security findings span multiple technology domains or integrated platforms. Monitor emerging threats, vulnerabilities, techniques, and industry trends related to embedded systems, connected devices, industrial technologies,



wireless communications, and cloud-connected products. Promote security-by-design principles and advocate for secure product development, deployment, and lifecycle management practices throughout the organization. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to [email protected] learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/. Skills and Requirements - Bachelor's Degree in Cybersecurity, Computer Science, Electrical Engineering, Industrial Engineering, Information Technology, Telecommunications, or related technology-driven field. - IoT Pen Testing experience - 10+ years of hands-on experience in cybersecurity, IoT security, embedded or connected device security, product security, network security, industrial technology, software/hardware security, or related technical field. - Demonstrated hands-on experience assessing or testing IoT hardware, gateways, controllers, field-deployed devices, industrial communications, cellular or wireless connectivity, PLC/IPC-connected equipment, or embedded systems. - Experience performing vulnerability assessments, technical security reviews, remediation validation, and written reporting for hardware, IoT, connected products, or industrially integrated systems. - Experience working with TCP/IP networking, DNS, routing, firewalls, NAT, gateways, LAN communications, cellular networks, wireless technologies, and common secure communications concepts. - Experience with IoT or industrial protocols and services such as NTP, HTTP/HTTPS, AMQP/AMQPS, FTP/SFTP, TFTP, SSH, Telnet, MQTT, Modbus, OPC UA,



or similar communications technologies. - Experience with hardware and device testing methods, including device configuration review, firmware/update validation, network and protocol testing, physical access considerations, and secure deployment review. - Knowledge of secure product development, secure device onboarding, device identity, encryption, secrets management, authentication, access control, vulnerability management, and secure communications principles. - Experience with Microsoft Azure cloud-connected product environments; familiarity with AWS and/or GCP is preferred where IoT products integrate with cloud services. - Familiarity with security tools such as Snyk, Wiz, Burp Suite, OWASP ZAP, GitHub Advanced Security, Nmap, DAST tooling, firmware analysis tools, protocol analyzers, packet capture tools, and related security assessment technologies. - Familiarity with industry frameworks and standards such as OWASP, CIS, NIST, ISO 27001, SOC 2, IEC 62443, and secure product development practices. - Ability to communicate technical findings clearly to product engineers, architects, cybersecurity leaders, support teams, sales engineering teams, and customer stakeholders. - Strong interpersonal, analytical, problem-solving, organizational, and written/verbal communication skills. - Ability to accommodate a flexible work schedule for supporting global activities. - At least one relevant cybersecurity certification such as GICSP, GRID, GPEN, GWAPT, OSCP, PNPT, CSSLP, Security+, AZ-500, or similar practical security certification. - Experience testing commercial IoT products, customer-facing connected devices, industrial equipment integrations, SaaS-connected hardware, or field-deployed product technologies. - Experience with 3D TRASAR Controller platforms, PLC solutions, IPC-connected equipment, cellular gateways, wireless devices, controllers, end nodes, data historians, or customer industrial control system integrations. - Experience with firmware analysis, hardware interfaces, embedded Linux or Windows IoT, secure firmware updates, device identity, device registration, and secure provisioning processes. - Experience with Azure IoT, Azure security services, cloud-native security tooling, containerized services, Kubernetes-connected platforms, or identity-based cloud controls. - Experience supporting customer security discussions, security questionnaires, technical product security reviews, and remediation planning for commercial products. - Experience developing reusable security guidance, testing playbooks, deployment security standards, finding templates, risk-rating methods, and remediation validation procedures. - Ability to influence without authority and drive practical security improvements across globally distributed product, engineering, support, and customer-facing teams.

📌 Sr IoT Security Engineer (Pune)
🏢 Insight Global
📍 Pune

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: sr iot security engineer (pune) / pune

Subscribe to this job alert:

Get the latest job offers by email for: sr iot security engineer (pune) / pune