Development Security Engineer at PTC
Herzliya, Tel-Aviv District, Israel -
Full Time


Start Date

Immediate

Expiry Date

25 Apr, 26

Salary

0.0

Posted On

25 Jan, 26

Experience

2 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Security Principles, Vulnerability Management, Threat Modeling, Compliance Frameworks, Application Security Testing, DevOps Tools, Coding, Scripting Languages

Industry

Software Development

Description
PTC, a global provider of CAD, PLM, IoT and AR solutions, is seeking a Development Security Operations Engineer to integrate security into our software development processes. You will work closely with development, QA, operations, and security teams to ensure that our applications and services are secure and compliant throughout the software development lifecycle. Key Responsibilities Embed Security in CI/CD Pipelines: With DevOps, Implement automated security checks (static/dynamic code analysis, dependency scanning). Shift Left Security: Collaborate with developers to integrate security practices early in the SDLC. Partner with QA to expand security testing beyond pen-testing. Continuous Monitoring: Deploy tools for vulnerability management, threat detection, and compliance monitoring. Effective Auditing: Keep track of evidence collection needed for assessments/certifications (e.g., SOC-type audits). Requirements Knowledge of security principles and best practices. Understanding of vulnerability management, threat modeling, and compliance frameworks (e.g., ISO, SOC2, GDPR). Knowledge of application security testing (SAST, DAST, IAST). Strong experience with DevOps tools (Jenkins, GitLab CI/CD, Azure DevOps, etc.). Proficiency in writing code & scripting languages (Python, Bash). Bachelor’s Degree or higher in Computer Science or related disciplines.
Responsibilities
The Development Security Engineer will integrate security into software development processes and collaborate with various teams to ensure application security. Key tasks include embedding security in CI/CD pipelines and deploying tools for continuous monitoring.
Loading...