1 day ago
Kolkāta, IndiaStaff+
Responsibilities
- Support product-security processes across the E5GC India development organization and integrate security into development and delivery practices.
- Monitor and coordinate responses to PSIRT alerts, vulnerabilities, and security incidents, including triage, CVSS-based risk assessment, remediation tracking, verification, and escalation.
- Coordinate penetration testing and vulnerability assessments from scope definition through findings analysis, remediation follow-up, and closure.
- Support the selection, implementation, and use of security tools, automation, and responsible AI-enabled capabilities.
- Provide security and privacy input on solution design, threat modeling, secure design, and personal-data protection requirements.
- Assist with Statements of Compliance, audits, risk assessments, evidence preparation, and governance activities.
- Prepare and maintain security assessments, test reports, vulnerability records, and other security documentation.
- Advise and collaborate with developers, architects, product managers, privacy specialists, and other stakeholders on secure implementation and risk reduction.
Requirements
- Bachelor’s degree or equivalent experience in cybersecurity, information security, computer science, software engineering, or a related field.
- At least 5 years of relevant experience in product security, application security, cybersecurity, vulnerability management, penetration testing, or a related area.
- Practical experience with CVSS, vulnerability testing and handling, penetration-testing findings, remediation coordination, and risk-based prioritization.
- Experience responding to security advisories, PSIRT alerts, vulnerability disclosures, or security incidents.
- Experience implementing or operationalizing security tools in a software-development environment.
- Knowledge of secure software development, security architecture, threat modeling, security-by-design, and personal-data protection.
- Knowledge of ISO/IEC 27001 and information-security management practices.
- Familiarity with security and privacy compliance, Statements of Compliance, audits, and evidence preparation.
- Familiarity with vulnerability scanners, software-composition analysis, static and dynamic analysis, container security, or cloud-security tools.
- Experience using scripting, automation, data analysis, or AI to improve security workflows.
- Strong written and verbal English communication skills and the ability to collaborate across cultures and functions.
Benefits
- The position is based in Kolkata, India.
- Ericsson promotes a diverse and inclusive workplace and is an equal opportunity employer.
Categories
About Ericsson
Ericsson is a publicly traded telecommunications vendor that builds mobile network infrastructure (RAN, core, OSS/BSS), cloud platforms, and managed services for communications providers and enterprises. Founded in 1876 and headquartered in Kista, Stockholm, it supplies 5G systems to operators worldwide and owns Vonage, expanding network APIs and enterprise communications offerings.
