> Markdown version of [/jobs/ext/1882464-advanced-embedded-security-engineer](https://www.wearedevelopers.com/jobs/ext/1882464-advanced-embedded-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Advanced Embedded Security Engineer - **Company:** Zebra Technologies - **Location:** Holtsville, NY, United States - **Experience:** Expert - **Salary:** $122,800.0 - $184,200.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Android Software Development, Apple IOS, Software System Penetration Testing, Cloud Computing Security, Cyber Security, Linux, DevOps, Disaster Recovery, Middleware, Firmware, Scrum Methodology, Systems Development Life Cycle, Secure Coding, Software Vulnerability Management, Web Services, Enterprise Software Applications, Software Security, Tenable Nessus, Devsecops - **Published:** August 2, 2026 - **Apply:** https://www.dice.com/job-detail/8a4b78fd-321e-4e30-b5dc-2ec6c3d903ea ## About the Role * Bachelor\'s degree required * 8+ years of experience * Verifiable years of experience in enterprise software security * Performing threat analysis and risk assessments * Designing and developing security controls * Vulnerability Management experience, * Proven experience in product security for embedded systems, consumer electronics, or IoT devices * Full stack software security, Information Security, DevSecOps Certifications, Cloud Security, CISSP certification * Vulnerability management tool experience * Security standards compliance and regulations * Cloud security experience * Penetration testing experience * Experience in SAMM or BSIMM. * Cryptographic standards understanding/knowledge * Incident response experience * Disaster Recovery Planning and implementation experience * Effective verbal and written communication skills Location- ***Role is required to be onsite in Holtsville, NY office (Hybrid- Minimum of 3 days in the office per week). ## Description The Advanced Engineer Security, as an integral part of the Advanced Data Capture (ADC) product security team, is responsible to ensure that a Secure Development Lifecycle (SDLC) is defined, applied, followed and maintained across all ADC product development in compliance with corporate cyber security policies procedures and initiatives. The role requires designing, developing, and supporting a wide range of security controls, and software components in a variety of operating systems such as embedded, Windows, Linux, Android, and IOS. The software components may include application, middleware, firmware or web services across all ADC products. The role also requires documenting and communicating security processes policies and procedures to the development team and to all other stakeholders on a regular basis. Location- ***Role is required to be onsite in the Holtsville, NY office. (Hybrid- Minimum of 3 days in the office per week). * Define product security framework, policies, processes, & procedures. * Working with embedded devices doing firmware development. * Facilitate and lead BU security efforts by participating in daily agile stand-ups and drive security best practices across the business unit. Partner with scrum teams for secure software solution architecture. * Support quarterly SAMM self-assessments (set goals, report status, support audits. * Seek ways to apply new security technology to and reuse existing security technology in support of BU's business strategy. * Perform threat analysis and risk assessments. * Design security controls, monitoring, and scanning tools. * Support and guide engineering with the Secure Development Lifecycle (SDLC) workflow across ALL products. * Compile and approve the security checklist for release of milestones. * Support penetration testing efforts. * Manage incident responses * Assist in the development and review of product security documents. * Deliver Security DevOps with different scrum teams and plan user stories for sprints while addressing requirements and orchestrating security impact. * Develop and maintain best practices for deploying desktop, native, web and service-based applications in Linux, Windows and other environments. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [#90DaysOfDevOps - The DevOps Learning Journey](https://www.wearedevelopers.com/videos/548-90daysofdevops-the-devops-learning-journey) - [A Hitchhikers Guide to Container Security - Automotive Edition 2024](https://www.wearedevelopers.com/videos/1119-a-hitchhikers-guide-to-container-security-automotive-edition-2024) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Countries for Software Engineers](https://www.wearedevelopers.com/magazine/267-best-countries-for-software-engineers)