GEA

Product Security & Software Development Engineer

Eastleigh Full time
As Product Security Champion, you are responsible for implementing, monitoring, and continuously improving security activities within the software and product development processes at our location. This location develops and supplies high-end machines for the pharmaceutical industry, where cybersecurity, reliability, and compliance are of critical importance.

You will play a key role in translating the IEC 62443-4-1 requirements into practical and applicable measures within our existing software processes. You will work closely with software engineering and related departments such as product development and quality assurance. You will be able to independently identify gaps, draw up improvement plans, and guide the organization toward demonstrable compliance.

You will work as a member of the software team and be responsible in ensuring that our software product is current with market supply and suitably upgraded to meet the needs of the company, the customer and regulatory requirements.

Responsibilities / Tasks

  • Implementation of IEC 62443-4-1 within existing software processes.

  • Performing gap analyses and drawing up improvement plans.

  • Integrating secure-by-design principles into the SDLC (Software Development Life Cycle).

  • Drawing up and managing security documentation such as threat models and secure coding guidelines.

  • Working within the software department to implement required security advancements

  • Managing the software department in the field of Information Security.

  • Collaborating with the Information Security and QA departments.

  • Identification of risks in current supply, both security and continued supply of product architecture.

  • Development for evolution of product architecture

  • Software standards maintenance

Your Profile / Qualifications

Must-haves:

  • Education and experience in software development processes, engineering, and computer science.

  • Knowledge of information security.

  • Experience in PLC, HMI and SCADA coding environments.

  • Siemens PLC and HMI experience in TIA.

  • Detailed SCADA coding experience, preferably GE iFix.

  • Experience in product architectural design

  • Ability to independently analyse complex issues.

  • Experience with process documentation and improvement plans.

  • Strong communication skills.

  • Proactive, independent, and analytically strong.

  • Attention to detail

  • Practical and solution oriented.

  • Able to switch between technical and organisational tasks.

Nice-to-haves:

  • Experience with IEC 62443-4-1 or comparable standards.

  • Knowledge of ICS/OT security.

  • Knowledge of threat modelling, secure coding, or security tooling.

  • Relevant certifications such as ISA/IEC 62443 or CSSLP.

  • Rockwell PLC/HMI experience

Did we spark your interest?
Then please click apply above to access our guided application process.