Security Analyst - Siemens ProductCERT

Siemens AG
Garching bei München, Germany
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English, German
Job source

Tech stack

Artificial Intelligence Software System Penetration Testing Cyber Security Python (Programming Language) Network Administration Software Engineering Information Technology

Job description

With its over 400 employees, Siemens Cybersecurity (CYS) works hand in hand with the company’s business units to ensure Siemens’ future. CYS conducts research with internal and external partners, including leading universities and promising start-ups. These collaborative endeavors focus on a wide range of future technologies with a view to securing them with patents and supporting them through commercialization. CYS also provides development services for Siemens’ business units and supports them with methods and tools related to business excellence. Join our team now in Cybersecurity as a Security Analyst/Expert (f/m/d) - in Product CERT / IT-Security. What we offer you

  • An environment where everyone can bring their whole self to work and feel a sense of belonging.
  • A workplace that values curiosity and guarantees continuous learning, with development opportunities for both personal and professional growth.
  • Share matching programs to become a shareholder of Siemens AG.
  • A wide range of flexible benefits for you and your family to enjoy!

Since each of over 300,000 team members feels that other benefits are particularly important, and we cannot list our entire benefit portfolio here, you can find more information here.

The individual benefits are subject to regulatory, contractual, or corporate conditions.

You’ll make an impact by

  • You work in the central Incident and Vulnerability Handling Team (PSIRT) for Siemens Products and Solutions, mainly around critical infrastructures
  • You deal with new security attacks every day: zero-day vulnerabilities, findings from penetration tests, or developer vulnerability reports of Siemens Products and Solutions or in the supply chain
  • You dive deeply into the technical details of such security problems, alone and in the team
  • You present these details to task forces and support in prioritization, handling, and remediation
  • With the product teams you determine the extent and impact on product lines and versions and prepare the publication of these details
  • In the team, you work on the understanding of future developments in vulnerability handling and drive your own topics in this context
  • As the number of vulnerabilities are growing, you explore new ways of how to scale up and automate tasks in that area - where applicable with the help of AI
  • Like most team members, you support in extending the tools and frameworks that are used for vulnerability handling (Python coding)
  • You attend international IT-security conferences and engage with external partners
  • Through specialized trainings and daily challenges, you continuously update your expert knowledge

Requirements

Do you have experience in Software development?, Do you have a Bachelor’s degree?, + You have a Bachelor’s degree in computer science

  • Experience & Skills *

  • You have first experience in the area of IT- and possibly OT-Security
  • You have distinct knowledge of information technologies and operating systems
  • Ideally, you have proven skills and interest in hacker techniques, penetration testing, capture-the-flag challenges, Python coding, security tools and/or IT forensic
  • You are proficient in terms of software development and network administration
  • Ways of working: analytical, problem-solving attitude with strong decision-making abilities and a growth mindset
  • Languages: business proficiency in German and English

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:22 min

Understanding software engineering as more than just coding

Lilia Gargouri Lilia Gargouri · WWC Europe 2026

1:55 min

Decoupling network administration from application deployment pipelines

Duan Lightfoot Duan Lightfoot · WWC 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:29 min

Undervaluing product design by treating software engineers as generic programmers

Marlene Roth Marlene Roth +1 · WWC 2025

Videos

See all

Related articles

See all