Staff Security Engineer

Posted 8 Days Ago
Be an Early Applicant
Bengaluru, Bengaluru Urban, Karnataka, IND
In-Office
Senior level
Transportation
The Role
Lead Wabtec’s enterprise vulnerability management program across on-premises, cloud, application, network, and M&A environments. Manage vulnerability discovery, prioritization, remediation, scanning platforms, risk-based reporting, and executive dashboards. Partner with infrastructure, cloud, application, security operations, and business teams to reduce exposure. Support cloud security, threat management, incident response, audits, security projects, and Tier 3 escalations. Develop standards, runbooks, metrics, and remediation processes while providing off-hours incident support.
Summary Generated by Built In
Job Description

It’s not just about your career or job title… It’s about who you are and the impact you will make on the world. Because whether it’s for each other or our customers, we put People First. When our people come together, we Expand the Possible and continuously look for ways to improve what we create and how we do it. If you are constantly striving to grow, you’re in good company. We are revolutionizing the way the world moves for future generations, and we want someone who is ready to move with us.

 

Who are we?

 

Wabtec Corporation is a leading global provider of equipment, systems, digital solutions, and value-added services for freight and transit rail as well as the mining, marine, and industrial markets. Drawing on nearly four centuries of collective experience across Wabtec, GE Transportation, and Faiveley Transport, the company has grown to become One Wabtec, with unmatched digital expertise, technological innovation, and world-class manufacturing and services, enabling the digital-rail-and-transit ecosystems.

Wabtec is focused on performance that drives progress and unlocks our customers’ potential by delivering innovative and lasting transportation solutions that move and improve the world. We are lifelong learners obsessed with making things better to drive exceptional results. Wabtec has approximately 27K employees in facilities throughout the world. Visit our website to learn more!

Who will you be working with?

Join Enterprise Information Security (EIS) to help strengthen and mature Wabtec's cybersecurity risk management capabilities. Collaborate closely with infrastructure, cloud, application, operations, architecture, compliance and business teams to identify, prioritize and reduce cybersecurity risk across the enterprise. As a subject matter expert, you will work across global technology environments to ensure vulnerabilities, threats and control gaps are effectively managed and remediated.

How will you make a difference?

As a Staff Cybersecurity Engineer within Enterprise Information Security, you will help advance Wabtec’s vulnerability management program by leading engineering, operational execution, and governance support across on-premises, cloud, and M&A environments. You will oversee vulnerability discovery, prioritization, remediation, and reporting while partnering with technology teams to reduce risk and strengthen the company’s security posture. You will also support broader cybersecurity efforts across cloud security, security operations, and threat management to improve enterprise visibility, resilience, and operational effectiveness.

What do we want to know about you?

You must have:

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field, or a minimum of 5 years of full-time cybersecurity experience. 
  • Demonstrated expertise leading enterprise vulnerability management programs across servers, endpoints, cloud platforms, applications and network infrastructure. 
  • Extensive experience with vulnerability assessment technologies, remediation workflows, risk prioritization methodologies and security exposure management practices. 
  • Strong understanding of vulnerability scoring frameworks, threat intelligence, exploitability analysis and risk-based remediation approaches. 
  • Experience developing metrics, reporting and executive-level dashboards to communicate security risk and remediation progress. 
  • Hands-on experience securing public cloud platforms such as AWS and Azure. 
  • Experience supporting Security Operations functions including threat detection, incident response, threat hunting or security monitoring activities. 
  • Knowledge of enterprise operating systems, networking, system administration and infrastructure technologies. 
  • Experience partnering with technical and business stakeholders to drive remediation efforts across globally distributed environments. 
  • Strong project execution, communication and stakeholder management skills. 
  • Experience managing workstreams and maintaining operational transparency through IT Service Management platforms. 
  • Must be willing to work weekends or off-shift hours, as needed during cybersecurity incidents. 

We would love it if you had:

  • Experience implementing Exposure Management or Attack Surface Management programs. 
  • Experience integrating vulnerability management processes with Security Operations and Incident Response functions. 
  • Knowledge of container, Kubernetes and cloud-native security technologies. 
  • Experience automating vulnerability management workflows using scripting or API integrations. 
  • Security certifications such as CISSP, GSEC, GCIH, Security+ or equivalent. 
  • Proven ability to work independently with strong time management skills. 
  • Strong communication and influencing skills. 
  • Commitment to continuous learning and adaptation within an evolving cybersecurity landscape. 

What will your typical day look like?

  • Lead the enterprise vulnerability management program, ensuring effective identification, assessment, prioritization and remediation of vulnerabilities across global technology environments. 
  • Manage vulnerability scanning platforms, assessment processes and reporting capabilities to maintain enterprise-wide visibility of security exposures. 
  • Develop and continuously improve risk-based vulnerability prioritization methodologies using threat intelligence, exploitability data and business context. 
  • Partner with infrastructure, cloud, application and business teams to drive timely remediation of identified vulnerabilities and security control weaknesses. 
  • Monitor remediation performance, establish service-level targets and report risk reduction progress to leadership and stakeholders. 
  • Conduct vulnerability trend analysis to identify systemic issues and recommend strategic improvements. 
  • Support cloud security initiatives by assessing cloud environments for misconfigurations, vulnerabilities and compliance risks. 
  • Collaborate with Security Operations teams to investigate critical vulnerabilities, active threats and emerging security risks impacting the enterprise. 
  • Support threat management activities by evaluating threat intelligence and determining exposure to newly disclosed vulnerabilities and security advisories. 
  • Assist in vulnerability validation, remediation verification and exception management processes. 
  • Lead and participate in cybersecurity projects involving security tools, platforms and process improvements. 
  • Develop and maintain vulnerability management standards, procedures, operational runbooks and technical documentation. 
  • Provide Tier 3 escalation support for vulnerability management and related cybersecurity technologies. 
  • Support audit, compliance and regulatory activities by providing evidence, metrics and technical expertise. 
  • Evaluate new security technologies and industry best practices to continuously improve enterprise cybersecurity maturity. 
  • Participate and be available to support cybersecurity incidents, emergency activities and planned maintenance during weekends or off-hours as required. 

What about the physical demands of the job? (Usual office job examples)

 

  • Regularly remaining in a stationary position, often standing, or sitting for prolonged periods
  • Regularly communicating with others to exchange information
  • Regularly required to attend meetings in person and virtually using video and audio computer equipment
  • Regularly repeating motions that may include the wrists, hands, and/or fingers, such as typing
  • Occasionally moving about to accomplish tasks or moving from one worksite to another
  • Occasionally light work that includes moving objects up to twenty pounds

You may also be asked to perform other duties outside of your function or trade, for which adequate training will be provided if necessary.

Work Environment: (Usual office job)

  • Hybrid work schedule (both on-site and remote)
  • The employee will normally work in a temperature-controlled office environment, with frequent exposure to electronic office equipment. During visits to areas of operations, they may be exposed to extreme cold or hot weather conditions. Is occasionally exposed to fumes or airborne particles, toxic or caustic chemicals, and loud noise

Relocation assistance availability confirmed here.

 

Our Commitment to Embrace Diversity:

 

Wabtec is a global company that invests not just in our products, but also our people by embracing diversity and inclusion. We care about our relationships with our employees and take pride in celebrating the variety of experiences, expertise, and backgrounds that bring us together. At Wabtec, we aspire to create a place where we all belong and where diversity is welcomed and appreciated.   

 

To fulfill that commitment, we rely on a culture of leadership, diversity, and inclusion. We aim to employ the world’s brightest minds to help us create a limitless source of ideas and opportunities. We have created a space where everyone is given the opportunity to contribute based on their individual experiences and perspectives and recognize that these differences and diverse perspectives make us better.

 

We believe in hiring talented people of varied backgrounds, experiences, and styles… People like you! Wabtec Corporation is committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or expression, or protected Veteran status. If you have a disability or special need that requires accommodation, please let us know.

Additional Information

What could you accomplish in a place that puts People First?

At Wabtec, it’s not just about a job - it’s about the impact you make. When our people come together, we’re Expanding the Possible by continuously improving what we do and how we do it - for our clients and each other.

If you’re ready to revolutionize how the world moves for future generations, Wabtec is the place for you.
 

Who are we?

Wabtec is a leading global provider of equipment, systems, digital solutions, and value-added services for the freight and transit rail sectors. Drawing on more than 150 years of experience, we are leading the way in safety, efficiency, reliability, innovation, and productivity. Whether it’s freight, transit, ports, logistics, mining, industrial, or marine, our expertise, technologies, and people together – are accelerating the future of transportation. With roots that date back to George Westinghouse, Thomas Edison, and Louis Faiveley, Wabtec has always built technologies and implemented solutions for a variety of sectors that are critical to meeting the needs of customers and governments alike.

Our global team of about 30,000 employees worldwide delivers performance that moves the world forward. We’re lifelong learners, obsessed with better. Learn more at www.WabtecCorp.com.

Culture powers us and the possibilities.

We believe the best ideas come from a mix of experiences and backgrounds. At Wabtec, we strive every day to create a place where everyone belongs. We’re building a culture where leadership, inclusion and your unique perspective fuel progress.

We’re proud to be an Equal Opportunity Employer. We welcome talent of all backgrounds, experiences, and identities, including race, gender, age, disability, veteran status and more.

Need accommodation? Just let us know - we’ve got you.

Skills Required

  • Bachelor’s degree in computer science, information technology, cybersecurity, or a related field, or at least 5 years of full-time cybersecurity experience.
  • Experience leading enterprise vulnerability management programs across servers, endpoints, cloud platforms, applications, and network infrastructure.
  • Experience with vulnerability assessment technologies, remediation workflows, risk prioritization methodologies, and security exposure management.
  • Understanding of vulnerability scoring frameworks, threat intelligence, exploitability analysis, and risk-based remediation.
  • Experience developing metrics, reporting, and executive-level dashboards for security risk and remediation progress.
  • Hands-on experience securing public cloud platforms such as AWS and Azure.
  • Experience supporting security operations, including threat detection, incident response, threat hunting, or security monitoring.
  • Knowledge of enterprise operating systems, networking, system administration, and infrastructure technologies.
  • Experience partnering with technical and business stakeholders across globally distributed environments.
  • Strong project execution, communication, and stakeholder management skills.
  • Experience managing workstreams and maintaining operational transparency through IT Service Management platforms.
  • Willingness to work weekends or off-shift hours as needed during cybersecurity incidents.
  • Experience implementing Exposure Management or Attack Surface Management programs.
  • Experience integrating vulnerability management with Security Operations and Incident Response.
  • Knowledge of container, Kubernetes, and cloud-native security technologies.
  • Experience automating vulnerability management workflows using scripting or API integrations.
  • Security certification such as CISSP, GSEC, GCIH, Security+, or equivalent.
  • Ability to work independently with strong time management skills.
  • Strong communication and influencing skills.
  • Commitment to continuous learning and adaptation in cybersecurity.

Wabtec Corporation Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Wabtec Corporation and has not been reviewed or approved by Wabtec Corporation.

  • Retirement Support Employer 401(k) funding can reach an effective 6% of pay through a match plus an additional company contribution, with company funds vesting after three years. This consistent retirement formula adds meaningful long-term value.
  • Healthcare Strength Health coverage includes multiple medical plan options with dental and vision, telemedicine, and robust mental health resources such as Spring Health and Headspace. HSA/HRA support and recognized national carriers further bolster the offering.
  • Parental & Family Support Paid parental/adoption leave is part of the core package, alongside family-building benefits via Progyny and adoption assistance. Additional supports like doula reimbursement expand coverage for growing families.

Wabtec Corporation Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Pittsburgh, PA
10,001 Employees
Year Founded: 1872

What We Do

Transportation solutions that move and improve the world At Wabtec, we help our customers overcome their toughest challenges by delivering rail and industrial solutions that improve safety, efficiency and productivity. Wabtec is a leading global provider of equipment, systems, digital solutions, and value-added services. Whether it's freight rail, transit, mining, industrial or marine, our expertise, technologies, and people - together - are accelerating the future of transportation.

Similar Jobs

DigitalOcean Logo DigitalOcean

Staff Software Engineer

Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
1400 Employees

PayPal Logo PayPal

Security Engineer

Fintech • Payments
In-Office
Bangalore, Bengaluru Urban, Karnataka, IND
34450 Employees

Sandisk Corporation Logo Sandisk Corporation

Security Engineer

Hardware • Information Technology • Semiconductor • Manufacturing
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
11000 Employees

PayPal Logo PayPal

Security Engineer

Fintech • Payments
In-Office
Bangalore, Bengaluru Urban, Karnataka, IND
34450 Employees

Similar Companies Hiring

Air Space Intelligence Thumbnail
Transportation • Software • Machine Learning • Logistics • Defense • Artificial Intelligence • Aerospace
Boston , Massachusetts
150 Employees
Blissway Thumbnail
Computer Vision • Fintech • Hardware • Internet of Things • Machine Learning • Software • Transportation
Denver, CO
24 Employees
Toro TMS Thumbnail
Cloud • Enterprise Web • Sales • Software • Transportation
Chicago, IL
80 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account