Broadcom

R&D Principal Software Engineer - Security Response Engineering

US
USD 225k - 225k
Python Java R
Description

Please Note:

1. If you are a first time user, please create your candidate login account before you apply for a job. (Click Sign In > Create Account)

2. If you already have a Candidate Account, please Sign-In before you apply.

Job Description:

R&D Principal Software Engineer - Security Response Engineering The Elevator Pitch: Why will you enjoy this new opportunity?


Broadcom VMware Cloud Foundation (VCF) products and services are trusted by various organizations for their mission critical systems. Many of these systems demand the highest confidentiality and are of extreme interest to nation state actors. The vSECR team within the VCF Division at Broadcom is responsible for defending these products, services and their supply chains.
If helping find and fix security holes in these systems is your idea of a fun career, then you should come join this team. Working alongside other highly motivated and capable security engineers you will get first-hand experience in modern threats, attack, and defense techniques.
Success in the Role: What are the performance outcomes over the first 6-12 months you will work toward completing?


Security Engineers on the team are responsible for triage, investigation, management and communication of security vulnerabilities reported by external researchers. You will be responsible for assessing threats, analyzing externally reported vulnerabilities, supporting teams in providing vulnerability mitigations, virtual patches, workarounds and fix recommendations. You will maintain the highest quality of work while driving programs to completion, prioritizing incoming requests, contending priorities and managing high profile communications. You will work closely with a variety of teams across Broadcom to achieve our goal of protecting our customers. The role will focus on the growth and management of VCF products from a security perspective and will require involvement in the authoring of VMware Security Response Center (vSRC) communications including security advisories, blogs and knowledge base articles.


In the first 6mths, you will be expected to become intimately familiar with VCF products/components assigned to you. You should also be able to reproduce externally reported security issues in those components, engage with external reporters and drive fixes into patch releases, in collaboration with a member of your team. Within 1 year, you are expected to be fairly independent in doing security assessments and driving mitigations/remediation's with product development and release teams, while being proactive with security researcher engagement.
The Work: What type of work will you be doing? What assignments, requirements, or skills will you be performing on a regular basis?


● Oversee all aspects of the security response process from triage to remediation and communication of high profile externally reported vulnerabilities
● Reproduce externally reported vulnerabilities, assess for lateral impact and develop proof of concepts for those vulnerabilities
● Provide tools (Scripts/checklists) for development teams to verify if their products are impacted as well as validate fixes
● Work with tools such as Blackduck, Burp, Nessus, and Coverity for security defect discovery. Be familiar with OSS vulnerability discovery platforms like vulnhub, GHSA, openwall, etc.
● Assess OSS vulnerabilities for potential impact to VCF products
● Proficient in Python and at least one of C/C++ or Java
● Enable models and IOCs for SOC to detect similar families of TTPs
● Make entire kill-chain understandable to an engineering audience
● Partner with different business units across Broadcom to build and support processes to support a high profile response
● Build PSIRT expertise, creating, maintaining and enhancing process and policy documentation
● Define and report program roadmap, status, development issues and success metrics for High Profile process
● Perform RCCA and present on high profile vulnerabilities to executive staff
● Monitor and develop intelligence sources to maintain situational awareness of the cyber threat landscape
● Work with a diverse group of stakeholders from technical to executive level
● Bachelor's degree in Computer Science or related field and 12+ years of related experience or Masters degree in Computer Science or related field and 10+ years of related experience

Additional Job Description:

Compensation and Benefits 

The annual base salary range for this position is $141,000 - $225,000 

 

This position is also eligible for a discretionary annual bonus in accordance with relevant plan documents, and equity in accordance with equity plan documents and equity award agreements. 

 

Broadcom offers a competitive and comprehensive benefits package: Medical, dental and vision plans, 401(K) participation including company matching, Employee Stock Purchase Program (ESPP), Employee Assistance Program (EAP), company paid holidays, paid sick leave and vacation time. The company follows all applicable laws for Paid Family Leave and other leaves of absence. 

Broadcom is proud to be an equal opportunity employer.  We will consider qualified applicants without regard to race, color, creed, religion, sex, sexual orientation, gender identity, national origin, citizenship, disability status, medical condition, pregnancy, protected veteran status or any other characteristic protected by federal, state, or local law.  We will also consider qualified applicants with arrest and conviction records consistent with local law.

If you are located outside USA, please be sure to fill out a home address as this will be used for future correspondence.

Broadcom
Broadcom
Mobile Semiconductor Wireless

0 applies

7 views

Other Jobs from Broadcom

Staff Software Engineer

Portsmouth, NH US

Data Scientist / Engineer

Portsmouth, NH Framingham, MA

Similar Jobs

Data Engineer

Prague, Czech Republic

Senior Enterprise Software Engineer

Hyderabad, India Remote Hybrid

Data Engineer

Atlanta, GA

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say

Sid avatar
Sid
Very nice portal for searching jobs in this rough market.
Mar 6, 2025
Michael Duran avatar
Michael Duran
Software Engineer
I've been using this job search site for a while now, and it’s honestly one of the best out there! The clean and easy-to-navigate UI makes the whole job-hunting process so much smoother. Plus, the job postings are always up-to-date, so I never feel like I’m wasting time. The cherry on top is the owner—super kind and always quick to respond. Definitely recommend checking it out if you're on the job hunt!
Aug 21, 2024
Sai avatar
Sai
It’s really great website for finding jobs based on skills it’s really helpful give a go
Aug 21, 2024
Adinadh avatar
Adinadh
What I like most about Echo Jobs is how easy it is to use. The platform helps me quickly find jobs that match my skills and interests, thanks to its great recommendations and filters. Yes, I would definitely recommend Echo Jobs to a friend. It makes job searching simple and efficient, making it a great tool for anyone looking for a new job.
Jul 23, 2024
As a student navigating the job market, I've found LinkedIn increasingly frustrating due to numerous fake postings by consultancies. In contrast, this job posting website has been a game-changer for me. It offers genuine opportunities and a straightforward application process, making it much easier to find and apply for real jobs. Highly recommend it to fellow students seeking reliable job listings!
Jul 16, 2024
Cliff Gor avatar
Echo Jobs has been exceptional in my job hunt where it provides one platform to job hunt and I don't have to open 10 websites just to look for a job. It has also helped me focus much on the job skill and the location filtering out the onsite jobs and remote ones. The only feature that I would request is to display fully remote jobs that are not restricted to a country since the one available shows ie, Remote, US yet. But if it could show remote only, that would be helpful not only to me but to other people applying for full remote and not tied to only US candidates
Apr 22, 2024
I found EchoJobs in 2022, and I love it. It has a lot of remote jobs. It's exclusive to software and technology jobs (helpful for devs like me). What I like the most are its filters and its API. If you're a tech professional seeking remote work, I highly recommend giving it a try to EchoJobs.
Mar 4, 2024
Would definitely recommend it! Excellent product, dedicated founder, Jobs are easier to find. Congrats 🎉 to the entire team!
Mar 3, 2024
Brandon Banks avatar
Brandon Banks
Echo Jobs is really impressive. It provides a great user experience with an ability to quickly search through the many job postings. There is an impressive amount of jobs here and it is quickly updated. The details in the each job posting is helpful when determining if it is worth pursuing. I would highly recommend using Echo Jobs to find the next step in your career.
Mar 2, 2024
Tyler Young avatar
Tyler Young
tylerayoung.com
Best wishes with EchoJobs—it's become my favorite job board overnight!
Dec 16, 2023
Simply put, it's the most up to date tech jobs aggregator I’ve found. I'm like... "I don't have to check 10+ jobs boards daily just to see if there's a new job listing? sign me up!" The filters are also quite helpful! The UI is very clean and straightforward. Love it!
Oct 5, 2023