Taro Logo

R&D Principal Software Engineer - Security Response Engineering

A global technology leader that designs, develops and supplies semiconductor and infrastructure software solutions.
Security
Principal Software Engineer
In-Person
5,000+ Employees
12+ years of experience
Cybersecurity · Enterprise SaaS

Job Description

Broadcom VMware Cloud Foundation (VCF) is seeking a Principal Software Engineer to join their Security Response Engineering team. This role is crucial in defending VCF products, services, and supply chains against sophisticated security threats, including those from nation-state actors. The position involves working with highly motivated security engineers to address modern threats using cutting-edge attack and defense techniques.

The role focuses on managing the security response process for VCF products, including vulnerability triage, investigation, and communication with external researchers. You'll be responsible for assessing threats, analyzing vulnerabilities, and working with teams to implement mitigations and fixes. The position requires maintaining high-quality standards while managing competing priorities and high-profile communications.

As a Principal Engineer, you'll become deeply familiar with VCF products and components, reproduce security issues, engage with external reporters, and drive fixes into patch releases. The role demands both technical expertise in security engineering and leadership skills in driving security initiatives across the organization. You'll work with various security tools and platforms while collaborating with multiple teams to protect Broadcom's customers.

The ideal candidate brings extensive experience in security engineering, strong technical skills in Python and Java/C++, and the ability to communicate effectively with both technical and executive stakeholders. This role offers an opportunity to make a significant impact on the security posture of critical systems used by organizations worldwide.

Last updated 13 days ago

Responsibilities For R&D Principal Software Engineer - Security Response Engineering

  • Oversee security response process from triage to remediation
  • Reproduce and assess externally reported vulnerabilities
  • Provide security verification tools and checklists
  • Assess OSS vulnerabilities for VCF products
  • Enable models and IOCs for SOC
  • Partner with different business units for high profile response
  • Build PSIRT expertise and maintain process documentation
  • Perform RCCA and present to executive staff
  • Monitor cyber threat landscape
  • Work with diverse stakeholders from technical to executive level

Requirements For R&D Principal Software Engineer - Security Response Engineering

Python
Java
  • Bachelor's degree in Computer Science + 12 years experience or Masters + 10 years experience
  • Proficiency in Python and either C/C++ or Java
  • Experience with security tools like Blackduck, Burp, Nessus, and Coverity
  • Familiarity with OSS vulnerability discovery platforms
  • Strong communication and stakeholder management skills

Related Jobs