1

Product Security Code Review Engineer Jobs in Arizona

... codes, ordinances, and regulations. The ideal candidate will have extensive knowledge of ... The Plan Check Engineer will play a crucial role in maintaining safety standards and ensuring that ...

... codes, ordinances, and regulations. The ideal candidate will have extensive knowledge of ... The Plan Check Engineer will play a crucial role in maintaining safety standards and ensuring that ...

next page

Showing results 1-20

Product Security Code Review Engineer information

What are the key skills and qualifications needed to thrive as a Product Security Code Review Engineer, and why are they important?

To thrive as a Product Security Code Review Engineer, you need a deep understanding of secure coding practices, software development lifecycles, and vulnerability assessment, typically backed by a degree in computer science or a related field. Familiarity with static and dynamic analysis tools, code review platforms, and certifications like CISSP or OSCP is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for explaining security findings and collaborating with development teams. These skills and qualities are vital to identify, communicate, and mitigate security risks in code, ensuring the overall resilience of software products.

What are some typical challenges faced by Product Security Code Review Engineers when coordinating with development teams?

Product Security Code Review Engineers often encounter challenges in balancing security priorities with project timelines and developer workflows. Effective communication is essential, as engineers must clearly explain vulnerabilities and remediation steps to developers who may have varying levels of security expertise. Additionally, they need to ensure that security recommendations are practical and align with the product's architecture, all while fostering a collaborative environment rather than creating bottlenecks. Building strong relationships with development teams and understanding their processes helps streamline secure code adoption and continuous improvement.

What is the difference between Product Security Code Review Engineer vs Software Security Engineer?

AspectProduct Security Code Review EngineerSoftware Security Engineer
Primary FocusReviewing and analyzing source code for security vulnerabilities in productsDesigning and implementing security measures across software systems
Skills & CertificationsSecure coding, code review, security standards (e.g., OWASP), certifications like CSSLPSecurity architecture, threat modeling, secure coding, certifications like CISSP
Work EnvironmentCollaborates with development teams during product developmentWorks on system-wide security strategies and architecture
Industry UsageCommon in product-based companies, especially in tech and cybersecurityFound in organizations focusing on overall security infrastructure

While both roles focus on security, the Product Security Code Review Engineer primarily reviews source code for vulnerabilities in specific products, whereas the Software Security Engineer develops and implements security strategies across software systems. The roles often overlap but differ in scope and focus.

What is a Product Security Code Review Engineer?

A Product Security Code Review Engineer is a cybersecurity professional responsible for analyzing and reviewing application source code to identify and mitigate security vulnerabilities. They work closely with development teams to ensure secure coding practices, review code for compliance with security standards, and recommend fixes for potential security issues. Their goal is to prevent security breaches by catching vulnerabilities early in the software development lifecycle.
What are popular job titles related to Product Security Code Review Engineer jobs in Arizona? For Product Security Code Review Engineer jobs in Arizona, the most frequently searched job titles are:
What job categories do people searching Product Security Code Review Engineer jobs in Arizona look for? The top searched job categories for Product Security Code Review Engineer jobs in Arizona are:
What cities in Arizona are hiring for Product Security Code Review Engineer jobs? Cities in Arizona with the most Product Security Code Review Engineer job openings:

Software Engineer, Product Security

Johnson & Johnson

Mesa, AZ • On-site, Remote

$103K - $165K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 23 hours ago


Johnson & Johnson rating

8.0

Company rating: 8.0 out of 10

Based on 100 frontline employees who took The Breakroom Quiz

35th of 71 rated pharmaceutical


Job description

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at https://www.jnj.com

Job Function:

R&D Product Development

Job Sub Function:

R&D Software/Systems Engineering

Job Category:

Scientific/Technology

All Job Posting Locations:

Santa Clara, California, United States of America

Job Description:

About Surgery

Fueled by innovation at the intersection of biology and technology, we’re developing the next generation of smarter, less invasive, more personalized treatments.

Are you passionate about improving and expanding the possibilities of surgery? Ready to join a team that’s reimagining how we heal? Our Surgery team will give you the chance to deliver surgical technologies and solutions to surgeons and healthcare professionals around the world. Your contributions will help effectively treat some of the world’s most prevalent conditions such as obesity, cardiovascular disease and cancer. Patients are waiting.

Your unique talents will help patients on their journey to wellness. Learn more at https://www.jnj.com/medtech

Remote work options may be considered on a case-by-case basis and if approved by the Company.

#Li-Hybrid

We are searching for the best talent for a Cybersecurity Software Engineer, to be in Santa Clara, CA.

Purpose: We are looking for an early in career Software Engineer who would help improve the software cybersecurity of our product. The position requires understanding of cybersecurity controls and deliverables, knowledge of C++ preferably in a Linux environment, and the ability to work closely with other software engineers as well as multi-functionally. The successful candidate is self-motivated, curious, and has the desire to bring the essential and best in class cybersecurity controls and implementations into the medical field.

You will be responsible for:

  • Designing, implementing, and testing software solutions for cybersecurity controls.
  • Defining software cybersecurity requirements and detailing the software design of the product based on cybersecurity requirements.
  • Performing software code reviews and design reviews with a cyber-lens.
  • Performing periodic risk assessment of security vulnerabilities in software for the product by identifying and analyzing software vulnerabilities
  • Developing recommendations to mitigate security risks in product software.
  • Developing product software using C++ and scripting languages such as bash in an FDA regulated environment.
  • Actively collaborating with cross-functional product partners including Product Security, systems, test and service teams.
  • Adhering to organization and product level quality processes outlined in the Quality Management System.

Qualifications / Requirements:

  • BS or equivalent in Computer Science, Computer Engineering, or equivalent field.
  • 2+ years of software development and testing experience.
  • 2+ years of experience with software development using C++.
  • 1+ years of experience implementing software controls for product/IOT cybersecurity.
  • Knowledge of cybersecurity concepts such as encryption, authentication and authorization.
  • Working knowledge of Linux Ubuntu and understanding security controls provided by the operating system.
  • Experience of working with multi-threaded applications.
  • Familiarity with shell scripting languages including bash.

Preferred Skills & Experience:

  • MS/MEng in Cybersecurity, or similar field.
  • Familiarity with CI/CD tools and Dev-Sec-Ops tools and processes.
  • Experience working with Agile methodology as an individual contributor.
  • Experience analyzing security risks from sources such as penetration testing, threat modeling, vulnerability management etc.

Other Requirements:

  • Must be at least 18 years of age.
  • Ability to travel up to 10% domestic US and Internationally, with overnight stay.
  • Ability to work onsite at the J&J office in Santa Clara, CA.

The expected base pay range for this position is $89,000 to $143,750.

For the California Bay Area, the anticipated base pay range for this position is $103,000 to $165,600.

The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation’s performance over a calendar/performance year. Bonuses are awarded at the Company’s discretion on an individual basis.

Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.

Employees may be eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)).

This position is eligible to participate in the Company’s long-term incentive program.

Employees are eligible for the following time off benefits:

  • Vacation – up to 120 hours per calendar year.
  • Sick time - up to 40 hours per calendar year.
  • Holiday pay, including Floating Holidays – up to 13 days per calendar year.
  • Work, Personal and Family Time - up to 40 hours per calendar year.

For additional general information on Company benefits, please go to: https://www.careers.jnj.com/employee-benefits

This job posting is anticipated to close on 4/30/25 The Company may however extend this time-period, in which case the posting will remain available on https://www.careers.jnj.com to accept additional applications.

Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.

Johnson and Johnson is committed to providing an interview process that is inclusive of our applicants’ needs. If you are an individual with a disability and would like to request an accommodation, please email the Employee Health Support Center (ra-employeehealthsup@its.jnj.com) or contact AskGS to be directed to your accommodation resource.


What Johnson & Johnson employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom