Cyber Sec Archt/Engr II
Honeywell Technologies · Bengaluru
- Experience5–6 yrs
- SalaryNot disclosed
- Work modeonsite
- Posted29 Sept 2026
About Honeywell Technologies
Honeywell Technologies is hiring in Bengaluru in manufacturing industrial. This role looks for around 5+ years of experience.
Skills
- penetration testing
- Secure Development Lifecycle
- OWASP Top 10
- SANS Top 25
- MITRE
- CIS Benchmarks
- Nessus
- WebInspect
- Nmap
- Burp Suite
- AppScan
- ZAP
- Kali Linux
- IDA Pro
- Ghidra
- Metasploit
- MobSF
- Genymotion
- Frida
- APKTool
- OWASP
- Python
- PowerShell
- Bash
- C
- C++
- Java
- .NET
- JavaScript
- encryption
- application protocols
- reverse engineering
- dynamic analysis
The role
A penetration tester at an industrial automation company assesses product security through penetration testing and Secure Development Lifecycle practices, identifying vulnerabilities across web, mobile, cloud, embedded systems, and network protocols. The role applies OWASP Top Ten, Python, and Burp Suite to conduct manual and automated testing, analyze attack paths, and guide remediation.
Full job description
Qualifications
Job Description
The Advanced Cyber Security Engineer reports to the Product Security Assurance Leader and will be responsible for assessing and evaluating the security posture of a variety of Honeywell IA Products and partner technologies. This role will be responsible for security services delivery, which may include use of web/application/network/Mobile/Cloud/AI ML/protocol/hardware/firmware security toolsets, detection of security defects, and remediation consultation of those weaknesses. Our services support the identification of potential attack techniques and serve as the foundation for continuously improving the product development lifecycle.
Responsibilities
Individual Contributor with Product Security Assurance TeamDeliver Security Testing across all IA products.Report observations using our standardized reporting structureWork with cross functional teams to develop remediation suggestionsDevelop methodologies, determine scoping requirementsAssist in the development of modular, repeatable, effective Security Testing processes Proactively anticipate escalations Oversee and ensure client deliverables are on time, requirements are metPartner with Tools and Technology Team to select, implement, develop, and automate testing with appropriate tools.Assist with onboarding internal team trainingChampion strategic Product Security initiatives
Qualifications
Bachelor’s degree in computer science or software engineering, electrical engineering or equivalent experience5+ years of Cyber Security or Information Technology experience
Preferred Qualifications
5+ years of pentesting experience preferably in – Web, Mobile, Network, Thick Client, API, Web services, Cloud, Containers, AI ML, Embedded security ( Hardware and Firmware) , Protocol fuzzingHas a Bachelor’s Engineering degree or equivalent, preferably in Computer SciencePerform penetration tests (Manual & Automated) for products spanning Web, Mobile (Android and iOS), Cloud, Dockers, Containers and Thick ClientsFamiliarity with reverse engineering tools, debuggers, and dynamic analysis techniquesAnalyze pen test results to identify the security vulnerabilities and suggest countermeasures for threat mitigationGood understanding of Secure Development Lifecycle processesGood knowledge of OWASP Top 10 and SANS Top 25 and how to effectively remediate vulnerabilities associated with eachKnowledge of attack frameworks like MITRE, VASTO, CIS Benchmarks, Virtualization Assessment Toolkit to exploit virtualization systemsDemonstrated manual product penetration testing experience; for example, simulate a SQL injection attack without using tools, simulate XSS attack, X-Path Injection, etc.Good knowledge and hands-on experience using various penetration testing tools and frameworks like Nessus, Web Inspect, Nmap, Burp Suite, AppScan, ZAP, Kali Linux tools, IDA Pro, GHidra, OWASP, Metasploit, Nessus, Nmap, MObSF, Genymotion, Frida, APK ToolEncryption tools and techniques for securing mobile and virtual machinesUnderstanding of application protocols, development, and common attack vectors. Good cybersecurity capabilities and strong software engineering skillsScripting experience in Python, Powershell and Bash preferred.Experience working with other languages such as C, C++, Java, .NET or javascript.Up to date knowledge of current and emerging security threats and techniques for exploiting security vulnerabilitiesEffective oral and written communication and negotiation skillsGood interpersonal skills Ability to work with geographically distributed, cross-functional teams
Good To Have Skills
Certification such as CEH, OSCP, OSWE, CCSP, CCSK, GPEN, CRTP, CRTO will be highly desirableStrong Secure SDLC conceptsExperience in integrating pentest tools to CI/CD pipeline
Employer Description
Honeywell helps organizations solve the world's most complex challenges in automation, the future of aviation and energy transition. As a trusted partner, we provide actionable solutions and innovation through our Aerospace Technologies, Building Automation, Energy and Sustainability Solutions, and Industrial Automation business segments – powered by our Honeywell Forge software – that help make the world smarter, safer and more sustainable.
About Us
Honeywell Technologies is a global, pure-play automation company with a legacy of innovating to help solve the world’s most mission-critical challenges, enhancing the quality of life for people and communities around the world. We serve the building, industrial and process sectors with a broad portfolio of services, solutions and products, underpinned by our Honeywell Technologies Accelerator operating system and Honeywell Technologies Forge intelligence layer. By combining the deep domain expertise of our more than 50,000 employees with decades of data from our global installed base, we are uniquely positioned to lead the industrial sector’s transition from automation to autonomy.