1

Product Security Code Review Engineer Jobs in Ohio

Lead code reviews, mentor junior engineers, and promote best practices in software engineering ... production services with either Spring AI and the Spring ecosystem (Spring Boot, Spring Security ...

... product, design, and operations, to deliver end-to-end solutions. * Lead code reviews, mentor junior engineers, and promote best practices in software engineering. * Ensure compliance with security ...

... product, design, and operations, to deliver end-to-end solutions. * Lead code reviews, mentor junior engineers, and promote best practices in software engineering. * Ensure compliance with security ...

Engineer

Cleveland, OH · On-site

$100K - $120K/yr

Conduct code reviews to ensure adherence to development standards and improve team skills ... Represent Security variances in Security Technology review meetings. * Identify performance ...

Create secure, high-quality production code and maintain algorithms that run synchronously with ... Ensure compliance with security, privacy, and regulatory requirements in all software solutions.

Create secure, high-quality production code and maintain algorithms that run synchronously with ... Ensure compliance with security, privacy, and regulatory requirements in all software solutions.

... technology products. As a Senior Lead Software Engineer at JPMorganChase within, Consumer ... Mentor engineers through thoughtful code reviews, design guidance, and pragmatic engineering ...

Showing results 41-60

Product Security Code Review Engineer information

What are the key skills and qualifications needed to thrive as a product security code review engineer?

To thrive as a Product Security Code Review Engineer, you need a deep understanding of secure coding practices, software development lifecycles, and vulnerability assessment, typically backed by a degree in computer science or a related field. Familiarity with static and dynamic analysis tools, code review platforms, and certifications like CISSP or OSCP is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for explaining security findings and collaborating with development teams. These skills and qualities are vital to identify, communicate, and mitigate security risks in code, ensuring the overall resilience of software products.

What are some typical challenges faced by product security code review engineers when coordinating with development teams?

Product Security Code Review Engineers often encounter challenges in balancing security priorities with project timelines and developer workflows. Effective communication is essential, as engineers must clearly explain vulnerabilities and remediation steps to developers who may have varying levels of security expertise. Additionally, they need to ensure that security recommendations are practical and align with the product's architecture, all while fostering a collaborative environment rather than creating bottlenecks. Building strong relationships with development teams and understanding their processes helps streamline secure code adoption and continuous improvement.

What is the difference between Product Security Code Review Engineer vs Software Security Engineer?

AspectProduct Security Code Review EngineerSoftware Security Engineer
Primary FocusReviewing and analyzing source code for security vulnerabilities in productsDesigning and implementing security measures across software systems
Skills & CertificationsSecure coding, code review, security standards (e.g., OWASP), certifications like CSSLPSecurity architecture, threat modeling, secure coding, certifications like CISSP
Work EnvironmentCollaborates with development teams during product developmentWorks on system-wide security strategies and architecture
Industry UsageCommon in product-based companies, especially in tech and cybersecurityFound in organizations focusing on overall security infrastructure

While both roles focus on security, the Product Security Code Review Engineer primarily reviews source code for vulnerabilities in specific products, whereas the Software Security Engineer develops and implements security strategies across software systems. The roles often overlap but differ in scope and focus.

What is a product security code review engineer?

A Product Security Code Review Engineer is a cybersecurity professional responsible for analyzing and reviewing application source code to identify and mitigate security vulnerabilities. They work closely with development teams to ensure secure coding practices, review code for compliance with security standards, and recommend fixes for potential security issues. Their goal is to prevent security breaches by catching vulnerabilities early in the software development lifecycle.
What job categories do people searching Product Security Code Review Engineer jobs in Ohio look for? The top searched job categories for Product Security Code Review Engineer jobs in Ohio are:
What cities in Ohio are hiring for Product Security Code Review Engineer jobs? Cities in Ohio with the most Product Security Code Review Engineer job openings:

Firmware Engineer - Security

Vertiv Group Corp.

Westerville, OH • On-site

Full-time

Re-posted 8 days ago


Vertiv rating

6.7

Company rating: 6.7 out of 10

Based on 64 frontline employees who took The Breakroom Quiz

377th of 487 rated machine equipment manufacturers


Job description


Vertiv's Thermal business unit is seeking an Embedded Product Security Engineer to help protect the security and integrity of our embedded thermal firmware platforms and exposed system interfaces across mission-critical infrastructure products.
This role is responsible for investigating, analyzing, and resolving security vulnerabilities, supporting regulatory and standards compliance, and partnering with firmware and platform engineering teams to embed security-by-design practices throughout the product lifecycle. The successful candidate will play a key role in ensuring Vertiv products meet evolving cybersecurity expectations while maintaining reliability and performance in critical customer environments.
Responsibilities:
  • Investigate reported and internally discovered firmware vulnerabilities across embedded and gateway platforms.

  • Perform security analysis of embedded firmware packages, update mechanisms, and exposed interfaces (network, diagnostic, field service).

  • Support secure boot, firmware signing, and update validation implementations in collaboration with firmware engineering teams.

  • Conduct threat modeling and risk assessments for embedded platforms and interface exposure.

  • Drive vulnerability response workflows, including root cause analysis, remediation tracking, and verification.

  • Ensure alignment with product cybersecurity standards and regulations, including IEC 62443, ISO 27001, NIS2, and CRA-related obligations.

  • Review and maintain SBOMs and supplier security documentation to support compliance and supply-chain security requirements.

  • Partner with QA and firmware teams on security testing, validation, and release readiness.

  • Contribute to internal security requirements, checklists, and conformance matrices for embedded platforms.

Required Experience
  • Bachelor's degree in Computer Engineering, Computer Science, Electrical Engineering, or a related technical field.
  • 3+ years of experience resolving security issues in embedded firmware
  • 3+ years of experience with Linux-based secure firmware development and testing
  • 3+ years of experience using the C/C++ programming language

  • Working knowledge of embedded security concepts, including secure boot, firmware signing, cryptography, and secure update mechanisms.

  • Familiarity with networked embedded systems and common protocols (e.g., TCP/IP, TLS, diagnostics interfaces).

  • Ability to collaborate effectively with cross-functional engineering, quality, and compliance teams.

Preferred Experience
  • Experience with product cybersecurity standards such as IEC 62443, ISO/SAE 21434, or similar industrial/OT security frameworks.

  • Familiarity with SBOM formats and tooling (e.g., CycloneDX, SPDX).

  • Experience supporting security compliance or regulatory readiness for embedded products.

  • Background in firmware development using C/C++ or reviewing embedded firmware code for security considerations.

Understanding of secure device lifecycle concepts, including manufacturing security, provisioning, and field updates.
The successful candidate will embrace Vertiv's Core Principals & Behaviors to help execute our Strategic Priorities.
OUR CORE PRINCIPALS: Safety. Integrity. Respect. Teamwork. Inclusion.
OUR STRATEGIC PRIORITIES
• High-Performance Culture
• Customer Focus
• Operational Excellence
• Innovation
• Financial Strength
VERTIV BEHAVIORS
  • Own it
  • Act with urgency
  • Foster a customer-first mindset
  • Think big and execute
  • Lead by example
  • Drive continuous improvement
  • Learn and seek out development
  • Promote transparent & open communication

About Vertiv
Vertiv (NYSE: VRT) brings together hardware, software, analytics and ongoing services to enable its customers' vital applications to run continuously, perform optimally and grow with their business needs. Vertiv solves the most important challenges facing today's data centers, communication networks and commercial and industrial facilities with a portfolio of power, cooling and IT infrastructure solutions and services that extend from the cloud to the edge of the network. Headquartered in Westerville, Ohio, USA, Vertiv employs around 34,000 people and does business in more than 130 countries. Visit Vertiv.com to learn more.
Work Authorization
No calls or agencies please. Vertiv will only employ those who are legally authorized to work in the United States. This is not a position for which sponsorship will be provided. Individuals with temporary visas such as E, F-1, H-1, H-2, L, B, J, or TN or who need sponsorship for work authorization now or in the future, are not eligible for hire.
Equal Opportunity Employer
Vertiv is an Equal Opportunity/Affirmative Action employer. We promote equal opportunities for all with respect to hiring, terms of employment, mobility, training, compensation, and occupational health, without discrimination as to age, race, color, religion, creed, sex, pregnancy status (including childbirth, breastfeeding, or related medical conditions), marital status, sexual orientation, gender identity / expression (including transgender status or sexual stereotypes), genetic information, citizenship status, national origin, protected veteran status, political affiliation, or disability. If you have a disability and are having difficulty accessing or using this website to apply for a position, you can request help by sending an email to help.join@vertiv.com.
#LI-RB1

What Vertiv employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom