Arrow Electronics
Junior Network & Security Engineer (24/7)
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Arrow Electronics
Arrow Electronics is a global leader in the distribution of electronic components and enterprise computing solutions. Founded in 1935 in New York City, the company has grown significantly and is now headquartered in Centennial, Colorado. With over 200 sales facilities and 23 distribution centers across 40 countries, Arrow serves more than 175,000 customers, including manufacturers, industrial companies, and technology firms. In 2023, the company reported net sales of $37.1 billion. Arrow offers a wide range of products and services, including semiconductors, passive components, servers, storage solutions, and networking equipment. The company also provides supply chain and logistics services, technical support, design services, and IoT and cloud solutions. Arrow Electronics is committed to being a vital partner in the electronics ecosystem, helping customers innovate and optimize their operations through its extensive product offerings and value-added services.
Security at Arrow Electronics
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- Arrow frames security as a holistic, lifecycle-oriented practice and emphasizes secure-by-design principles.
- Public materials describe security as spanning the entire product lifecycle (design through end-of-life), adopting Secure SDLC tenets aligned to Microsoft SDL, and taking a forward-looking posture toward future threats and device lifecycles.
Security Team
- Arrow operates AppSec and security capabilities across Arrow ECS and affiliated engineering services (eInfochips).
- Public pages and vendor/solutions listings show regional ECS teams and service offerings.
- Related career postings show hiring for security-engineering roles (IoT/system security, embedded systems, firmware analysis, vulnerability assessment).
- Public materials do not disclose an internal, named AppSec team charter, org-chart, or internal SLAs/KRIs.
Key Initiatives
- Priorities and stated goals documented publicly include: (1) Device and OEM security (device authentication, encryption, OTA updates and lifecycle protection).
- (2) Vulnerability management (identification, prioritization, tracking and patching with integrated asset/context awareness).
- (3) Partnering to deliver AppSec toolchains and professional services (reselling and integrating SAST/DAST/SCA/IAST/fuzzing solutions and vendor expertise).
- (4) Managed detection/response and micro-SOC services to provide scalable SOC capabilities.
- (5) Enabling customers to build secure products faster via PSA Certified development kits and certified building blocks.
- (6) Helping customers move from reactive patching to proactive AppSec risk management through combined tooling, consultancy and managed services.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.