Security SVT
- Hiring from
- Taiwan
- Work type
- Hybrid
- Posted
- Sep 24, 2026
Position Summary
The Product Security Analyst supports NETGEAR's vulnerability management and product security incident response function. This role triages and scores reported vulnerabilities, verifies proof-of-concept exploits against NETGEAR products and services, applies AI-assisted tooling to accelerate security code review, and works with engineering teams throughout the software development lifecycle to close out findings. The ideal candidate combines hands-on offensive security skills with the judgment to communicate risk clearly to both technical and non-technical stakeholders.
Key Responsibilities
• CVSS Scoring & Triage: Score and triage reported vulnerabilities using the Common Vulnerability Scoring System (CVSS), producing consistent, defensible base, temporal, and environmental scores and prioritizing intake accordingly.
• Vulnerability Verification & PoC Review: Independently verify reported vulnerabilities, reproduce and validate proof-of-concept (PoC) exploit code, and assess real-world exploitability and impact on NETGEAR products and services.
• AI-Assisted Security Analysis: Apply AI-assisted tools and techniques to explore and analyze security issues, including AI-augmented static/dynamic code analysis, to speed up root-cause identification and coverage of complex codebases.
• Penetration Testing Tools: Use a range of penetration testing and security assessment tools (e.g., Burp Suite, Metasploit, Nmap, static/dynamic analysis suites) to evaluate firmware, web, cloud, and mobile attack surfaces.
• SDLC Engagement: Partner with engineering throughout the Software Development Lifecycle (SDLC) to embed security requirements, review designs and code, and validate remediations before release.
Required Qualifications
• Solid understanding of CVSS (v3.1 or later) and demonstrated ability to score and prioritize vulnerabilities consistently.
• Hands-on experience reproducing and validating vulnerability reports and proof-of-concept exploits.
• Working knowledge of applying AI/LLM-based tools to security code analysis or vulnerability research.
• Practical familiarity with common penetration testing tools and methodologies (web, network, and/or firmware).
• Experience working within a formal Software Development Lifecycle (SDLC), including secure design and code review practices.
• Bachelor's degree in computer science, Information Security, or a related field, or equivalent practical experience.
Preferred Qualifications
• Experience with embedded/IoT or networking product security (routers, gateways, or similar consumer or enterprise devices).
• Familiarity with vulnerability disclosure processes and coordinated disclosure (PSIRT) workflows.
• Scripting ability (Python, Bash, or similar) to automate triage and verification tasks.
Company Statement/Values:
At NETGEAR, we are on a mission to unleash the full potential of connectivity with intelligent solutions that delight and protect. We turn ideas into innovative networking products that connect people, power businesses, and advance the way we live.
We're a performance-driven, talented and connected team that's committed to delivering world-class products for our customers. As a company, we value our employees as the most essential building blocks of our success. And as teammates, we commit to taking our work to the Next Gear by living our values: we Dare to Transform the future, Connect and Delight our customers, Communicate Courageously with each other and collaborate to Win It Together. You’ll find our values woven through our processes, present in our decisions, and celebrated throughout our culture.
We strive to attract top talent and create a great workplace where people feel engaged, inspired, challenged, proud and respected. If you are creative, forward-thinking, passionate about technology and are looking for a rewarding career to make an impact, then you've got what it takes to succeed at NETGEAR. Join our network and help us shape the future of connectivity.
NETGEAR hires based on merit. All qualified applicants will receive equal consideration for employment. All your information will be kept confidential according to EEO guidelines.