Senior Product Security Engineer

2 weeks ago


GondrecourtleChâteau, Grand Est, United States Trane Technologies Full time


At Trane Technologies TM and through our businesses including Trane and Thermo King , we create innovative climate solutions for buildings, homes, and transportation that challenge what's possible for a sustainable world.

We're a team that dares to look at the world's challenges and see impactful possibilities.

We believe in a better future when we uplift others and enable our people to thrive at work and at home.

We boldly go.


Be a part of our mission As a world leader in creating comfortable, sustainable and efficient environments, it's our responsibility to put the planet first.

For us at Trane Technologies, sustainability is not just how we do business—it is our business.

Do you dare to look at the world's challenges and see impactful possibilities? Do you want to contribute to making a better future? If the answer is yes, we invite you to consider joining us in boldly challenging what's possible for a sustainable world.

If this sounds exciting to you, read on to learn more about who we are and what we believe in:


We uplift others – we believe in providing an opportunity for all and building a culture that is diverse, inclusive, and respectful.

We lift each other up and care about the success and well-being of others.

We make an impac t – we believe that what we do has the potential to change the world. We succeed together by striving daily to create a lasting, positive impact on the planet.


We thrive at work and at home – we are supported by meaningful benefits, compensation, learning and development solutions, and opportunities for rewarding careers.

We are firmly committed to the well-being and safety of our people.


This position is eligible for a Hybrid work schedule (3 or more days on site a week) and will be based out of our St.

Paul, MN location.

Job Summary :


As a Senior Cybersecurity Engineer you will be responsible for working with other Building Automation System (BAS) controls and software engineering team members to identify business, technology and product risks and vulnerabilities in the early stages and embed security requirements to address and validate them.

A lot of this is done by conducting security assessments where the activities will include threat modeling, attack modeling, security DFMEA, vulnerability assessment, triaging, and reporting.

This Sr.

Cyber Security Engineer will also collaborate with product architects, system engineers, developers, and testers to implement secure designs by employing secure communications, network/device access control, authentication, authorization, cryptography, audit, forensics, and anomaly and misuse detection to provide information security (integrity, confidentiality, availability, and non-repudiation).


Core Job Responsibilities (others may be added):
Define and develop processes and methodologies for designing secure systems

Engage with teams to conduct security risk assessments and conform to organizational remediation/mitigation timelines in different phases of the secure product development lifecycle

Provide product security support to development teams, including reviewing and explaining security tools and processes, providing vulnerability explanations and remediation guidance

Optimize product/system security by creating and reviewing architecture and detailed design solutions that reflect best practices

Coordinate product security program metrics and reporting

Support ongoing vulnerability and patch management through tracking, triaging and prioritizing across all products to minimize the potential security risk

Help drive system and product requirements to meet the regulatory and compliance requirements (like GDPR, ISO, ISA/IEC, SOC2, FedRAMP)

Assist with training and mentoring of security champions

Partner with third-party vendors to deliver software security tools and services

Provide expert consultation on application security requirements and best practices with vulnerability scanning and secure application design

Partner closely on security operations tasks with cross-functional teammates in IT, DevOps, Engineering, Compliance, and Test

Manage 3rd party partners and vendors supplying cybersecurity-related services

Identify the design implications within a platform and system and work with teams to minimize vulnerabilities

Influence program decisions to reduce the risk exposure of the company

Participate in Zero-day remediation, Hotfixes, and Incident Response efforts

Identify and review test coverage for the security aspects of the system

Assist in responses to external audits, customer questionnaires, penetration tests and vulnerability assessments


Self-motivated to stay engaged with the market on new security products, threats and vulnerabilities and to apply innovative approaches in technology, marketing and service operations to meet those needs.

Basic Qualifications

Bachelor's or Master's degree in Computer Science, Electrical Engineering or similar engineering discipline with an emphasis on cyber security

8+ years of cumulative experience in software development and engineering expertise in Application, Network, Cloud, Mobile, IoT, ICS, Embedded systems, APIs

5+ years of expertise in Product Security, Security Architecture and

Security Assessment:
Threat Modeling, Secure Development, Risk Assessment, Threat Analysis, DFMEA, Penetration testing, SDLA tools

Strong understanding of operational technology principles, concepts, and techniques

Strong knowledge of current security threats, techniques, and landscape, as well as a self-motivated desire to research current in the cybersecurity landscape

Strong knowledge of OpenSSL, TLS mutual authentication, PKI, digital signatures, and certificate management

Ability to research, develop, and keep abreast of tools, techniques, and process improvements in support of security detection and analysis following current and emerging threats

Implementation experience or knowledge of security controls

Should have good knowledge of security containers, hands-on experience with DevSecOps principles, and a good handle on end-to-end DevSecOps processes

Technical understanding of cloud-native architecture and engineering best practices (AWS, Azure, Google Cloud)

Working experience with OWASP Top 10 for web applications

Knowledge of penetration testing techniques, application security vulnerabilities, OWASP Top 10, SANS 25, CWE, etc

Knowledge of Security Industry Standards and Frameworks: e.g., NIST, ISA/IEC, GDPR, SOC2

Excellent verbal and written communication skills, with the ability to communicate to all levels of the organization.

Preferred Qualifications

Familiar with DISA STIG assessment and implementation for Linux and/or Windows systems

Desirable security certification(s): GICSP, GCLD, GSOC, GDSA, or any other relevant certifications.

What's in it for you:
Benefits kick in day one

6% 401K match, additional 2% core contribution = 8% overall match

3 weeks of vacation, plus site paid holidays

Base Compensation Range is $70,000 to $121,800

o Disclaimer:
This base salary range is based on US national averages. Actual base pay could be a result of seniority, merit, geographic location where the work is performed.

We are committed to achieving workforce diversity reflective of our communities. We are an equal opportunity employer.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identify, national origin, pregnancy, age, marital status, disability, status as a protected veteran, or any legally protected status.



  • Gondrecourt-le-Château, Grand Est, United States Pira Consulting | Professional Technology Staffing Agency Full time

    This opportunity offers a Hybrid work schedule (3 or more days onsite per week) and will be located in St. Paul, Minnesota. You'll be expected to be at the office from Tuesday to Thursday. This contract provides a 6 to 12-month period before potential full-time employment. About the Role:Join us as a Senior Cybersecurity Engineer with a focus on assessing...


  • Gondrecourt-le-Château, Grand Est, United States SPECTRAFORCE Full time

    Job Title: Senior Cybersecurity EngineerLocation: St Paul, MN, - HybridDuration: 12 months (with temp to hire potential) A variety of soft skills and experience may be required for the following role Please ensure you check the overview below carefully.Job Summary:As a Senior Cybersecurity Engineer you will be responsible for working with other Building...


  • Gondrecourt-le-Château, Grand Est, United States Marvin Full time

    Job Overview:Position must sit in Eagan, MN.No sponsorship available at this time.No C2C Candidates.Marvin Windows is looking for an experienced Senior Network Engineer to join our team and help shape our network for the future. The Senior Network Engineer position is responsible for maintaining and administering our company's IT networks. This includes...


  • Gondrecourt-le-Château, Grand Est, United States Sebesta Full time

    Sebesta Blomberg Senior Electrical Engineer St. Paul , Minnesota Apply Now Senior Electrical Engineer Job ID # of Openings 1 Job Locations US-MN-Saint Paul Category Engineering Type Regular Full-Time Overview NV5 is a provider of engineering and consulting services to public and private sector clients, delivering solutions through six business verticals:...


  • Gondrecourt-le-Château, Grand Est, United States Ecolab Full time

    Ecolab is committed to rapidly accelerating our pace of digital innovation by helping our customers overcome real-world problems around water safety, energy conservation, food security and healthy environments. As part of this strategy, Ecolab is providing an exciting opportunity to join the Food & Beverage Division as a Senior Electrical Engineer. The...


  • Gondrecourt-le-Château, Grand Est, United States Medtronic Full time

    Senior Software Engineer Careers that Change Lives Transforming Patient Management with Smart Technology At Medtronic, we push the limits of what technology can do to make tomorrow better than yesterday and that makes it an exciting and rewarding place to work. Medtronic Coronary & Renal Denervation (OHS) Operating Unit develops the next generation medical...


  • Gondrecourt-le-Château, Grand Est, United States Granicus Full time

    Granicus Senior Product Marketing Manager Saint Paul , Minnesota Apply Now The Company Serving the People Who Serve the People Granicus is driven by the excitement of building, implementing, and maintaining technology that is transforming the Govtech industry by bringing governments and its constituents together. We are on a mission to support our customers...


  • Gondrecourt-le-Château, Grand Est, United States Medtronic Full time

    Senior Principal DevSecOps Engineer (Platform) Careers that Change Lives Transforming Patient Management with Smart Technology At Medtronic, we push the limits of what technology can do to make tomorrow better than yesterday and that makes it an exciting and rewarding place to work. Medtronic Cardiac Rhythm Management(CRM) Software organization develops the...


  • Gondrecourt-le-Château, Grand Est, United States Ecolab Full time

    Ecolab is seeking a Senior Mechanical Engineer within the Global Sensors & Equipment Group to operate within the Research, Development and Engineering department. This position supports all business units of a globally diversified technology/service company, creating a dynamic, challenging, and varied work environment. Challenge yourself to create innovative...


  • Gondrecourt-le-Château, Grand Est, United States Insight Global Full time

    Insight Global is seeking a Senior Electrical Engineer for one of our rapidly growing Medical Device clients in the Minneapolis area. This person will be joining the client's R&D organization and will work closely with the sales team as they capture a variety of projects from their respective partners. The Senior Electrical Engineer will design microchips as...


  • Gondrecourt-le-Château, Grand Est, United States TÜV SÜD Full time

    TV SD America Hiring for Product Safety Engineer for New Brighton, MN Location Please find the job description below for your reference and if interested request you to send me your updated resume Title: Product Safety Engineer Duration: Full Time Employment Location: New Brighton, MN. OVERALL RESPONSIBILITIES: Act as a Product Safety Engineer for TV SD...


  • Gondrecourt-le-Château, Grand Est, United States Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United StatesSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJOB SUMMARYSenior Software Engineer - AutomationLocation:Bethesda, MD or RemoteWe are seeking a highly skilled Senior Software Engineer with...


  • Gondrecourt-le-Château, Grand Est, United States Boston Scientific Gruppe Full time

    Press Tab to Move to Skip to Content LinkSelect how often (in days) to receive an alert: Create AlertSenior Manufacturing Engineering Supervisor Onsite Location(s): Arden Hills, MN, US, 55112 Additional Location(s): N/ADiversity - Innovation - Caring - Global Collaboration - Winning Spirit - High PerformanceAt Boston Scientific, we'll give you the...


  • Gondrecourt-le-Château, Grand Est, United States Citizens Bank Full time

    Citizens Financial Group, Inc. (CFG) seeks a Senior Solution Engineer for its Johnston, RI location.Duties: Develops IT solutions to improve products and customer experiences. Undertakes coding, develops UI prototypes, assists with data provisioning, and performs analytics around usage, behavioral, transactional, and technical data. Creates, prioritizes, and...


  • Gondrecourt-le-Château, Grand Est, United States Boston Scientific Full time

    Work mode: Onsite Onsite Location(s): Arden Hills, MN, US, 55112 #job- { display: inline; } Additional Location(s): N/ A Diversity - Innovation - Caring - Global Collaboration - Winning Spirit - High Performance At Boston Manufacturing Engineer, Supervisor, Engineer, Manufacturing, Manufacturing Technician, Senior


  • Gondrecourt-le-Château, Grand Est, United States Custom Search Full time

    Our smaller bioelectronic medical device client is adding a Sr. Product Development Engineer to the team. This is a customer facing role with project management responsibilities and leading project meetings with customers and internal team members. Responsible for development and implementation of new products, developed jointly with Manufacturing...

  • Director, Product

    2 weeks ago


    Gondrecourt-le-Château, Grand Est, United States Bremer Corporate Office Full time

    Bremer Corporate Office Director, Product & Software Engineering Saint Paul , Minnesota Apply Now Why Work at Bremer? Are we a bank? Absolutely. But when it comes to careers, you'll find that there's a lot more to our business than you might expect. We're passionate about helping customers throughout Minnesota, Wisconsin and North Dakota succeed and grow....


  • Gondrecourt-le-Château, Grand Est, United States Insight Global Full time

    Job DescriptionInsight Global is seeking a Security Software Engineer in Costa Rica to join one of our largest medical device clients. As a Security Software Engineer, you will play a critical role in ensuring the security and integrity of their software systems during the digital transformation process. This person will regularly conduct security testing...


  • Gondrecourt-le-Château, Grand Est, United States Insight Global Full time

    Insight Global is looking for a Senior R&D Engineer for a medical device client with a location in Costa Rica. We are looking for a seasoned engineer who can quickly adapt to our team and contribute to our mission of advancing sterilization technology. Join our dynamic R&D team focused on innovative sterilization processes for metals and polymers in...


  • Gondrecourt-le-Château, Grand Est, United States Xcel Energy Full time

    Are you looking for an exciting job where you can put your skills and talents to work at a company you can feel proud to be a part of? Do you want a workplace that will challenge you and offer you opportunities to learn and grow? A position at Xcel Energy could be just what you're looking for. Work with the Engineering staff to support electrical grid...