Senior Product Security Engineer

10 hours ago


Dublin, Ireland 2107 Merative Healthcare Ireland Ltd. Full time

Senior Product Security Engineer

Join a team dedicated to supporting the crucial mission of improving health outcomes.

At Merative, you can apply your skills – and grow new ones – with colleagues who have deep expertise in health and technology. Merative provides data, analytics and software for the health industry. Our clients include providers, health plans, employers, life sciences companies and governments around the world. With industry-leading products and focused innovation, we help customers improve decision-making and performance so that together, we drive real progress in health. Learn more at merative.com

Overview: We are looking for a skilled Senior Product Security Engineer to join our Cúram Security Team, which is essential to ensuring the security and compliance of our health and human services (HHS) IT solutions. This role will work closely with Product Development, CISO, and other security functions to assess, implement, and manage critical security controls, regulatory requirements, and incident response protocols. This position is vital to maintaining a proactive security posture for our products, going beyond daily developer security considerations to encompass a broad range of security practices.

Key Responsibilities:

1. Define, review and validate application security requirements with Product Development teams, ensuring alignment with security standards.
2. Integrate security features for authentication and authorization, using technologies such as OIDC, SAML SSO and JAAS.
3. Implement controls to address vulnerabilities, including OWASP Top 10 risks like CSRF, XSS and XXE.
4. Collaborate with development teams to validate security fixes and promote best practices.
5. Review codebases for vulnerabilities and assess issues flagged by security scanning tools.
6. Serve as a primary responder to security issues identified by the Product Security Response Team (PSRT), coordinating efforts for timely remediation.
7. Interpret and communicate PSRT advisory reports to development teams, providing guidance to address identified vulnerabilities.
8. Conduct Open Source Software (OSS) vulnerability assessments to maintain secure software dependencies.
9. Perform SAST and DAST testing with tools like SonarQube and Burp Suite Pro to proactively identify security risks.
10. Configure and manage security scanning tools to meet project needs.
11. Conduct internal penetration tests and support external pen testers in assessments of on-premises and Kubernetes-based applications.
12. Document, assess and address security risks and any deviations from security standards.
13. Serve as a primary contact for security incidents, handling security-related customer cases and incident responses.
14. Coordinate with the CISO team for security sign-offs on product releases.
15. Support ISO 27001 and other certification efforts to ensure compliance with industry standards.

Basic Qualifications:

1. Security Expertise: Deep knowledge of security vulnerabilities, risks, and mitigation techniques, with experience in vulnerability management frameworks such as CVE and CVSS.
2. Technical Skills:
3. Proficiency in SAST, DAST and IAST security scanning tools (e.g., SonarQube, Burp Suite, etc.) and vulnerability scanning tools like JFrog Xray.
4. Expertise in integrating and managing security tools within CI/CD pipelines using GitHub Advanced Security and Jenkins.
5. Strong skills in Java, JavaScript, XML, and YAML for application security, configuration management, and security automation.
6. Solid understanding of Kubernetes security and cloud environment configurations.
7. Understanding of security requirements for deployments on application servers, including IBM WebSphere Liberty, IBM WebSphere Application Server and Oracle WebLogic Server.
8. Proficiency in cryptographic algorithms, including encryption, hashing, digital signatures, and secret key management ensuring secure data transmission and storage.
9. Risk Management Knowledge: Experience managing security risks and ensuring compliance within regulated industries, ideally in HHS.
10. Collaboration and Communication Skills: Proven ability to work cross-functionally and communicate security requirements with both technical and non-technical stakeholders.
11. Problem-Solving Skills: Strong analytical abilities to identify, evaluate, and resolve complex security issues.

About Us

Merative is a place to grow. We offer opportunities to apply your skills — and develop new ones — with colleagues who have deep expertise in health and technology. At Merative we’re driven and professional, but treat each other with compassion and respect.

#J-18808-Ljbffr


  • Senior Product Manager

    18 hours ago


    Dublin, Ireland The Product Folks Full time

    Squarespace (NYSE: SQSP) is a design-driven platform helping entrepreneurs build brands and businesses online. We empower millions of customers in more than 200 countries and territories with all the tools they need to create an online presence, build an audience, monetize, and scale their business. Our suite of products range from websites, domains,...


  • Dublin, Ireland Amazon Full time

    Come and build innovative services that protect our cloud from advanced security threats! As a Senior Security Engineer on our team, you’ll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon’s infrastructure, including advanced persistent threats. You’ll work with data scientists, software...


  • Dublin, Ireland Amazon Full time

    Job ID: 2834809 | Amazon Data Services Ireland Limited Come and build innovative services that protect our cloud from advanced security threats! As a Senior Security Engineer on our team, you’ll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon’s infrastructure, including advanced persistent...


  • Dublin, Ireland Chubb Fire and Security Ltd Full time

    Security Service Engineer Apply to locations: Chubb Dublin, Unit 3/4, Deansgrange Business Park, Deansgrange, Dublin, A94 D954 Time type: Full time Posted on: 30+ Days Ago Job requisition id: JR40000185 It's fun to work in a company where people truly BELIEVE in what they're doing! Think you know Chubb? We might just surprise you! Chubb is so much more...


  • Dublin, Ireland Intercom Full time

    What's the opportunity? At Intercom, you will be a product engineer - someone who solves real customer problems through a smart and efficient application of your technical knowledge. You’ll be part of one of our multidisciplinary product teams, where you will build both back-end and front-end systems, and work closely with designers, product managers,...


  • Dublin, Ireland Amazon Full time

    Come and build innovative services that protect our cloud from advanced security threats! As a Security Engineer on our team, you’ll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon’s infrastructure, including advanced persistent threats. You’ll work with data scientists, software...

  • Security Engineer III

    24 hours ago


    Dublin, Ireland J.P MORGAN S.E Dublin Branch Full time

    Job Description Your seniority as a security engineer puts you in the ranks of the top talent in your field. Play a critical role at one of the world's most iconic financial institutions where security is vital. As a Security Engineer III at JPMorgan Chase within the Cybersecurity Technology team, you serve as a seasoned member of a team that works to...


  • Dublin, Ireland Amazon Full time

    Join us in leading a team that builds innovative services protecting AWS from security threats! As a Software Engineering Manager in AWS Security, you’ll lead a team in building and managing innovative services that detect and automate the mitigation of cyber threats across all of Amazon’s infrastructure. You’ll manage software development engineers,...


  • Dublin, Ireland Intercom Full time

    What's the opportunity? We’re looking for Senior Product Engineers to join the AI Group to build Intercom’s AI-powered products. Product Engineers working in ML work closely with both our ML Scientists and product teams. They must deeply understand our product, our customers, our ML tech stack and our broader product stack. Our group is responsible for...

  • Product Engineer

    24 hours ago


    Dublin, Ireland Intercom Full time

    What's the opportunity? At Intercom, you will be a product engineer - someone who solves real customer problems through a smart and efficient application of your technical knowledge and your tools. You’ll be part of one of our multidisciplinary product teams, where you will build both back-end and front-end systems, and work closely with designers,...

  • Security Engineer

    23 hours ago


    Dublin, Ireland BIM Recruiter Full time

    Superb Package On Offer, With Excellent Career ProgressionThis truly is a superb opportunity for ambitious, highly motivated Security Engineers to join a tier 1 Security Solutions firm, where you will have the chance to take your career to the next level, delivering Enterprise level security systems on highly complex projects in the Dublin and wider Leinster...


  • Dublin, Ireland eBay Full time

    At eBay, we're more than a global ecommerce leader — we’re changing the way the world shops and sells. Our platform empowers millions of buyers and sellers in more than 190 markets around the world. We’re committed to pushing boundaries and leaving our mark as we reinvent the future of ecommerce for enthusiasts. Our customers are our compass,...


  • Dublin, Ireland Amazon Full time

    Job ID: 2838240 | Amazon Data Services Ireland Limited Come and build innovative services that protect our cloud from advanced security threats! As a Security Engineer on our team, you’ll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon’s infrastructure, including advanced persistent threats....


  • Dublin, Ireland eBay Full time

    At eBay, we're more than a global ecommerce leader — we’re changing the way the world shops and sells. Our platform empowers millions of buyers and sellers in more than 190 markets around the world. We’re committed to pushing boundaries and leaving our mark as we reinvent the future of ecommerce for enthusiasts. Our customers are our compass,...


  • Dublin, Ireland eBay Full time

    At eBay, we're more than a global ecommerce leader — we’re changing the way the world shops and sells. Our platform empowers millions of buyers and sellers in more than 190 markets around the world. We’re committed to pushing boundaries and leaving our mark as we reinvent the future of ecommerce for enthusiasts.Our customers are our compass,...


  • Dublin, Ireland eBay Full time

    At eBay, we're more than a global ecommerce leader — we’re changing the way the world shops and sells. Our platform empowers millions of buyers and sellers in more than 190 markets around the world. We’re committed to pushing boundaries and leaving our mark as we reinvent the future of ecommerce for enthusiasts.Our customers are our compass,...


  • Dublin, Ireland Oldcastle Inc. Full time

    About CRH We are CRH, and we are committed to contributing to a more resilient and sustainable built environment. We understand the wider impact our businesses can make in supporting human activity. We continue to do this through the delivery of unique, superior building materials and products for use in road and critical utility infrastructure, commercial...


  • Dublin, Ireland PM Group Full time

    Overview Who we are PM Group is an employee owned, international project delivery firm with a team of 3,700 + people. We are world leaders in the pharma, food, medtech and mission critical sectors. From our network of offices in Europe, Asia and the US, we work with the world's leading organisations. We are focused on growing a sustainable business centred...

  • Senior Product Manager

    24 hours ago


    Dublin, Ireland FRS Recruitment Full time

    Job Description: We are seeking a strategic and results-driven Senior Product Manager to join our growing SaaS business. In this role, the successful candidate will take full ownership of the product lifecycle for critical features and offerings, ensuring alignment with customer needs and business objectives. This role will collaborate closely with...


  • Dublin, Ireland MasterCard Full time

    time left to apply End Date: January 22, 2025 (11 days left to apply) job requisition id R-236007 Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices,...