Principal Vulnerability Engineer

1 week ago


Plano, United States orangepeople Full time

As part of PSIRT (Product Security Incident Response Team), this role will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the organization’s offerings. This role will help in building effective PSIRT to ensure greater product quality and fewer security patching updates, these outcomes not only keep costs down, they also help the brand by avoiding the appearance of being lax about a product’s security.

Note: Applicants must be authorized to work for ANY employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time.


Key Responsibilities:

  • Technical Leadership: Serve as the primary technical lead for investigating vulnerabilities and security incidents across various domains, including Vehicle, Application, and Back End systems.
  • Guidance and Strategy: Provide expert technical guidance and contribute to the formulation of effective investigation strategies to swiftly identify and address security threats.
  • PSIRT Support: Collaborate closely with the PSIRT Team to investigate and track identified vulnerabilities using the VVM Jira tool, thereby facilitating continuous improvement of the organization's security posture.
  • Stakeholder Coordination: Liaise with stakeholders to assess vulnerabilities and recommend appropriate remediation or mitigation measures, ensuring timely and effective risk reduction.
  • Remediation & Mitigation Tracking: Monitor the progress of remediation and mitigation efforts using the VVM Jira Tool, maintaining close communication with Product Leads and Scrum Teams to ensure alignment and swift resolution of security issues.
  • Ad-hoc Technical Support: Provide on-demand technical expertise and support for various PCG services and programs as needed, leveraging a deep understanding of product security principles and best practices.

Minimum Qualifications:

  • Bachelor's degree in Computer Science, Information Security, or a related technical field; or equivalent practical experience.
  • 10+ years of Engineering experience in cybersecurity, incident response, vulnerability management, or related fields within the OEM industry.
  • Proven expertise in conducting technical investigations into security incidents and vulnerabilities across diverse OEM environments such as Vehicle, Application, and Back End systems.
  • Strong familiarity with industry-specific tools and methodologies for vulnerability management and incident response within the OEM sector.
  • Excellent communication skills with the ability to effectively convey technical information to diverse audiences and collaborate with cross-functional teams within an OEM context.
  • Demonstrated ability to provide technical leadership, guidance, and mentorship to junior team members within an OEM setting.
  • Experience working with issue tracking and project management tools such as Jira for tracking vulnerabilities and remediation efforts, preferably within an OEM environment.
  • Ability to adapt to fast-paced OEM environments and prioritize tasks effectively to meet OEM-specific deadlines and requirements.
  • Willingness to travel up to 15% of the time, with a minimum expectation of 2 days per month and 1 week per quarter for on-site engagements and collaboration within the OEM industry.

Preferred Qualifications:

  • Master's degree in Computer Science, Information Security, or a related technical field.
  • Industry certifications such as CISSP, CISM, CEH, or equivalent.
  • Experience with cybersecurity incident response frameworks such as NIST CSF, ISO 27035, or similar.
  • Familiarity with Agile development methodologies and Scrum practices.
  • Prior experience in automotive cybersecurity or related industries.
  • Knowledge of scripting languages such as Python, PowerShell, or Bash for automation and tool development.

Benefits:

  • 401(k).
  • Dental Insurance.
  • Health insurance.
  • Vision insurance.
  • We are an equal-opportunity employer and value diversity, equality, inclusion, and respect for people.
  • The salary will be determined based on several factors including, but not limited to, location, relevant education, qualifications, experience, technical skills, and business needs.


Additional Responsibilities:

  • Participate in OrangePeople monthly team meetings, and participate in team-building efforts.
  • Contribute to OrangePeople technical discussions, peer reviews, etc.
  • Contribute content and collaborate via the OP-Wiki/Knowledge Base.
  • Provide status reports to OP Account Management as requested.


About us:

OrangePeople is an Enterprise Architecture and Project Management solutions company. Our most valuable asset is our people: dynamic, creative thinkers, who are passionate about doing quality work. As a member of the OrangePeople team, you will have access to industry-leading consulting practices, strategies & and technologies, innovative training & and education. An ideal Orange Person is a technology leader with a proven track record of technical achievements and a strong process/methodology orientation.



  • Plano, United States Orangepeople Full time

    Job DescriptionJob DescriptionAs part of PSIRT (Product Security Incident Response Team), this role will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the organization's offerings....


  • Plano, United States orangepeople Full time

    As part of PSIRT (Product Security Incident Response Team), this role will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the organization’s offerings. This role will help in building...


  • Plano, United States Vital Tech Solutions Full time

    Job DescriptionJob DescriptionJob Title: Principal Security EngineerLocation: Remote / Hybrid (Plano, TX)Vital Tech Solutions is Premier Enterprise Technology Consulting and Workforce Management Solutions Provider to the OEM, Manufacturing, Aerospace, Health Care, Finance and Government industries with offices in the Metro Detroit area. Since its inception,...


  • Plano, United States Vital Tech Solutions Full time

    Job DescriptionJob DescriptionJob Title: Principal Security EngineerLocation: Remote / Hybrid (Plano, TX)Vital Tech Solutions is Premier Enterprise Technology Consulting and Workforce Management Solutions Provider to the OEM, Manufacturing, Aerospace, Health Care, Finance and Government industries with offices in the Metro Detroit area. Since its inception,...

  • Vulnerability Analyst

    1 month ago


    Plano, United States Toyota Tsusho Systems Full time

    Job DescriptionJob DescriptionSUMMARY:This position is responsible for tracking security improvements and helping the company apply increasingly stringent security standards. The role requires deep expertise in security standards, threat and vulnerability management, exploitation techniques, and secure development standards. It involves detecting...

  • Vulnerability Analyst

    1 month ago


    Plano, United States Toyota Tsusho Systems Full time

    SUMMARY:This position is responsible for tracking security improvements and helping the company apply increasingly stringent security standards. The role requires deep expertise in security standards, threat and vulnerability management, exploitation techniques, and secure development standards. It involves detecting vulnerabilities, assessing their impact...

  • Vulnerability Analyst

    4 weeks ago


    Plano, United States Toyota Tsusho Systems Full time

    Job DescriptionJob DescriptionSUMMARY:This position is responsible for tracking security improvements and helping the company apply increasingly stringent security standards. The role requires deep expertise in security standards, threat and vulnerability management, exploitation techniques, and secure development standards. It involves detecting...


  • Plano, United States Cinter Career Full time

    Job DescriptionJob DescriptionWe are seeking a Principal Security Engineer someone who will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the organization's offerings. This role will...


  • Plano, United States Cinter Career Full time

    Job DescriptionJob DescriptionWe are seeking a Principal Security Engineer someone who will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the organization's offerings. This role will...

  • Principal Engineer

    1 month ago


    Plano, United States Neumeric technologies Full time

    Job DescriptionJob DescriptionJob Title: Principal Engineer (OEM Background)Location: Plano, TX OnsiteDuration: Long Term ContractJob DescriptionAs part of PSIRT (Product Security Incident Response Team), this role will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess,...

  • Principal Engineer

    4 weeks ago


    Plano, United States Toyota Tsusho Systems Full time

    Job DescriptionJob DescriptionAs part of PSIRT (Product Security Incident Response Team), this role will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the organization’s offerings. This...

  • Principal Engineer

    2 months ago


    Plano, United States TOYOTA TSUSHO SYSTEMS US, INC Full time

    ONSITE $100-$115/hr As part of PSIRT (Product Security Incident Response Team), this role will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the organization's offerings. This role will...

  • Principal Engineer

    2 months ago


    Plano, United States Toyota Tsusho Systems Full time

    Job DescriptionJob DescriptionAs part of PSIRT (Product Security Incident Response Team), this role will handle and respond to security incidents related to its products or services. The main purpose of this role is to identify, assess, prioritize, and respond to vulnerabilities or threats that may impact the security of the organization’s offerings. This...


  • Plano, Texas, United States Toyota Motor Sales, U.S.A., Inc. Full time

    About the RoleWe are seeking a highly skilled and experienced Principal Engineer I to join our OneTech North American Quality (NAQ) Systems & Technology Platforms team at Toyota Motor Sales, U.S.A., Inc.Key ResponsibilitiesLead multiple development teams in the implementation of business requirements, creating low-level designs using accepted design...


  • Plano, United States Toyota Motor Corporation Full time

    Toyotas One. Tech North American Quality (NAQ) Systems & Technology Platforms team is looking for a passionate and highly motivated Principal Engineer I. The primary responsibility of this role is to be the technology leader responsible for applicat Product Management, Technology, Engineer, Principal, Solutions Architect, Product, Manufacturing


  • Plano, Texas, United States Toyota Tsusho Systems Full time

    Job OverviewThe Principal Engineer role within Toyota Tsusho Systems is a pivotal position focused on managing and responding to security incidents that affect our products and services. This position is crucial for identifying, evaluating, prioritizing, and addressing vulnerabilities or threats that could compromise the security of our offerings. By...

  • Principal Engineer

    3 months ago


    Plano, United States ams AG Gr Full time

    What we expect EMPLOYER: AMS-OSRAM USA Inc. JOB TITLE: Principal Engineer Lead the Design Verification function along with a team for multiple projects which are executed from Plano Design center. Cross collaborate with different teams, including the Digital Design team and Mixed Signal Design Verification (MSDV) team. Coordinate the DV team to achieve the...


  • Plano, Texas, United States Vital Tech Solutions Full time

    Job Title: Lead Cybersecurity EngineerLocation: Remote / HybridVital Tech Solutions stands as a leading provider of Enterprise Technology Consulting and Workforce Management Solutions, catering to sectors such as OEM, Manufacturing, Aerospace, Health Care, Finance, and Government. With a commitment to innovation, we have consistently delivered flexible...


  • Plano, Texas, United States Toyota Tsusho Systems Full time

    Job OverviewIn the capacity of a Principal Engineer within the Product Security Incident Response Team (PSIRT), you will be tasked with managing and addressing security incidents that pertain to our products and services. The primary objective of this position is to detect, evaluate, prioritize, and respond to vulnerabilities or threats that could compromise...


  • Plano, Texas, United States AT&T Full time

    About the RoleWe are seeking a highly skilled and experienced Principal Systems Engineer to join our team at AT&T. As a key member of our organization, you will be responsible for leading a team of technical professionals in ensuring the high availability, reliability, and resiliency of our customer-facing experiences and shared omnichannel platforms.Key...