Product Security Engineer (Medical Devices & Embedded Systems)

Remote Full-time
Job Title: Product Security Engineer (Medical Devices & Embedded Systems) Location: Remote Duration: 02/24/2025 to 12/31/2025 The Challenge: The Product Security Engineer will drive the implementation of enterprise Product Security strategy within the orthopedics portfolio. This role involves enhancing security processes, collaborating across teams, developing security metrics, and promoting security awareness. Key responsibilities include: Supporting new product development by reviewing security requirements and recommending secure design solutions. Conducting threat modeling, penetration testing, software architecture reviews, and secure code analysis. Managing post-market security activities, including vulnerability monitoring, patching, and compliance with contractual security requirements. Roles & Responsibilities: Product Security Strategy: Contribute to the global Product Security Framework and ensure embedded medical devices meet the highest security standards. Process Improvement & Collaboration: Work with engineering, product management, and compliance teams to enhance security policies for medical device development and support. Metrics & Reporting: Develop and present security metrics to senior management, providing insights into security posture and progress. Governance & Compliance: Ensure security measures align with regulatory requirements (FDA, 510k) and industry best practices. Vulnerability Management & Remediation: Identify, prioritize, and assist in remediating vulnerabilities across the product portfolio. Threat Modeling & Risk Assessments: Conduct due diligence, threat modeling, and risk assessments for both new and existing products. Secure Software Development: Guide teams on secure coding practices, code reviews, and best practices for embedded systems security. Customer & Vendor Security Compliance: Address security-related inquiries, contractual requirements, and compliance standards. Security Awareness & Training: Lead security awareness initiatives and training sessions within the organization. Post-Market Security Monitoring: Track and respond to new vulnerabilities in marketed devices, assisting with remediation and patching efforts. Essential Skills & Qualifications: Education: Bachelor's degree in Computer Science, Engineering, or a related field (MS preferred). Experience: Minimum 6 years in security and/or embedded software engineering, preferably in regulated industries (medical devices is a plus). Technical Skills: o Expertise in real-time operating systems (e.g., QNX, Linux, Windows Embedded) and security hardening. o Strong understanding of embedded systems security, secure software development, and vulnerability management. o Experience with penetration testing, threat modeling, and security risk assessments. o Proficiency in C, C++, C# with secure coding practices and code review experience. o Familiarity with Software Bill of Materials (SBOM) and compliance implications. Security & Regulatory Expertise: o Knowledge of medical device security requirements, including FDA regulations, 510k submissions, and Quality Design Control. o Experience with risk management frameworks and vulnerability remediation for medical devices. Communication & Leadership: o Strong collaboration skills with the ability to convey complex security concepts to non-technical stakeholders. o Ability to influence cross-functional teams and drive security initiatives. o Experience in developing and presenting security reports to senior management. Preferred Certifications (Not Required): o CISSP, CEH, MCSD, CSSLP or similar security certifications. Additional Skills: o Knowledge of cloud-based IoT security is a plus. o Strong problem-solving and strategic thinking abilities. Apply tot his job
Apply Now →

Similar Jobs

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote

USPS Office Helper

Remote

Experienced Remote Data Entry Associate – Entry-Level Opportunity for Detail-Oriented Individuals with a Passion for Accuracy and Customer Satisfaction at blithequark

Remote

Energy Program Analyst - Multifamily Building Program (REMOTE ROLE)

Remote

Director, Clinical Informatics/Associate Privacy Officer in Plano, TX – (job id: 1681286371)

Remote

Experienced Part-Time Customer Support Representative – Flexible Work from Home Opportunities with arenaflex

Remote

Senior Strategic Account Executive - American Express (AMEX) - Enterprise Software & SaaS Sales Expertise

Remote

Experienced Overnight Healthcare Customer Service Representative – Delivering Exceptional Support in a Dynamic and Inclusive Environment at arenaflex

Remote

Experienced Customer Success Director – Strategic Leadership and Customer Excellence in SaaS Industry

Remote

Accountant, Financial Reporting, Accounting & Finance

Remote

Sr Dosimetrist

Remote

Telemetry Nurse (RN) in El Dorado, KS

Remote
← Back