*Please note, this role is not able to offer visa transfer or sponsorship now or in the future*
About Us:
Cognizant is one of the world's leading professional services companies, transforming clients' business, operating, and technology models for the digital era. Our unique industry-based, consultative approach helps clients envision, build, and run more innovative and efficient businesses. Headquartered in the U.S., Cognizant, a member of the NASDAQ-100, is ranked 195 on the Fortune 500 and is consistently listed among the most admired companies in the world. Learn how Cognizant helps clients lead with digital at www.cognizant.com.
About Cognizant’s IoT Practice:
Intelligent, IoT-enabled products will soon result in the proliferation of data and disrupt virtually all industries. To be successful, both large and small companies must leverage IoT capabilities by designing modern products that fundamentally connect people with processes. Within Cognizant IOT, we engineer industry-aligned, IoT-enabled products that merge industry needs with human drivers. Our intelligent products will revolutionize experiences and result in exciting, transformative outcomes. Without human-centered thinking, connected products are just standalone things—but with it, our modern connected products facilitate a unified way of life enjoyed by all.
Senior Product Security Engineer (Black Duck & Application Security)
Role Summary
We are seeking a highly experienced Senior Product Security Engineer with strong expertise in Black Duck, software composition analysis (SCA), and product security. The ideal candidate will possess deep technical knowledge of application and product security practices and have hands-on experience integrating and automating security solutions using Black Duck APIs. This role requires close collaboration with R&D, development, and security teams to identify, assess, and remediate security risks across software products.
Key Responsibilities
- Administer, configure, and optimize Black Duck for software composition analysis and open-source governance.
- Develop and maintain integrations leveraging Black Duck APIs and security automation workflows.
- Partner with development and R&D teams to embed security best practices throughout the software development lifecycle (SDLC).
- Analyze security vulnerabilities, recommend remediation strategies, and track resolution.
- Conduct security assessments, reviews, and risk evaluations for product releases.
- Provide expertise in one or more of the following areas:
- Memory Leak and Memory Soak Testing
- Mobile Application Security
- Security Patching and Vulnerability Remediation Strategies
- Cryptographic Agility and Modern Encryption Concepts
- Support threat modeling, secure design reviews, and security architecture discussions.
- Drive continuous improvement of product security processes, tools, and governance.
Required Qualifications
- 8+ years of experience in Cybersecurity, Product Security, or Application Security.
- Strong hands-on experience with Black Duck and Software Composition Analysis (SCA).
- Experience working with Black Duck APIs and security tool integrations.
- Deep understanding of secure software development and product security principles.
- Knowledge of vulnerability management, CVE analysis, and remediation practices.
- Experience with DevSecOps and integrating security into CI/CD pipelines.
- Strong communication and stakeholder management skills.
Preferred Qualifications
- Experience with secure coding practices and application security testing.
- Knowledge of OWASP Top 10, SBOM, Open-Source Risk Management, and Supply Chain Security.
- Familiarity with cloud security environments (AWS, Azure, or GCP).
- Relevant security certifications such as CISSP, CSSLP, GWAPT, GSEC, or equivalent.
Compensation: - $90,000 to $130,000 + COLA and this position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans. Application will be accepted by 9/8/2026
Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:
• Medical/Dental/Vision/Life Insurance
• Paid holidays plus Paid Time Off
• 401(k) plan and contributions
• Long-term/Short-term Disability
• Paid Parental Leave
• Employee Stock Purchase Plan
#LI-CT1
Sobre a Cognizant
Cognizant (NASDAQ: CTSH) é uma construtora de IA e fornecedora de serviços de tecnologia, criando a ponte entre o investimento em IA e o valor para as empresas por meio do desenvolvimento de soluções de IA completas para nossos clientes. Nossa profunda experiência em setores, processos e engenharia nos permite incorporar o contexto único de cada organização em sistemas tecnológicos que potencializam a capacidade humana, geram resultados tangíveis e mantêm empresas globais à frente em um mundo em rápida transformação. Saiba mais em cognizant.ai ou @cognizant.
A Cognizant é uma empregadora que investe em equidade. Sua candidatura não será pautada em raça, cor, gênero, sexualidade, credo, origem, deficiência, gravidez ou qualquer outra característica protegida pelas leis brasileiras.
Informações adicionais de emprego
Os candidatos podem ser obrigados a comparecer a entrevistas presenciais ou por videoconferência. Além disso, os candidatos podem ser obrigados a apresentar seu documento de identificação emitido pelo estado ou governo atual durante cada entrevista.
Embora nosso sistema permita a candidatura em todos os idiomas, o(s) idioma(s) e o(s) nível(is) de proficiência exigidos para o trabalho variam. No entanto, é necessário um nível básico de inglês para fins de comunicação em toda a empresa.
A Cognizant é uma empregadora que investe em equidade. Sua candidatura não será pautada em raça, cor, gênero, sexualidade, credo, origem, deficiência, gravidez ou qualquer outra característica protegida pelas leis brasileiras.
Se você tem uma deficiência que requer adaptações razoáveis para procurar uma vaga de emprego ou enviar uma candidatura, envie um e-mail para [email protected] com sua solicitação e informações de contato.











