Denver, CO, 80238, USA
2 days ago
Product Security Engineer
Job Description A client in the Lakewood, CO area is looking for a Product Security Engineer to join their growing team. This team member will perform duties outlined below, as part of a 7 person Product Security team within their Colorado Production Facility. The Engineer's primary responsibility will be the design and implementation of cybersecurity capabilities for Terumo Blood and Cell Technologies products, the prioritization and application of cybersecurity requirements for those products, and the design and implementation of mitigation of cybersecurity defects and risks. The candidate will work with the R&D product teams on projects, execute product security capabilities such as threat intelligence, scanning (SAST, DAST, SCA, Network), and coordination of penetration testing with certified 3rd parties. They also will be maintaining the product security test lab environment, conducting risk/vulnerability reporting, providing program oversight and incident response, and managing the Coordinated Vulnerability Disclosure process - ensuring closed-loop feedback to researchers and product development stakeholders. This candidate will need a minimum of a Bachelor's degree and 5 years of experience working in FDA cybersecurity guidelines for medical devices. They will need to be well versed in developing SOPs and other product security capabilities. Additionally, the Cybersecurity Engineer will take on the primary role of developing product security requirements with stakeholders, and translating those policies into cybersecurity practices and SOPs. They may be responsible for penetrations testing activities, product security incident response, and vulnerability management. This may be from a hands on or operational oversight position. In collaboration with product security analysts, this engineer will maintain product security secure-by-design lifecycle procedures, work instruction, and technical guidance documents. 129K-169K. Exact compensation may vary based on several factors, including skills, experience, and education. Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com .     To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/ . Skills and Requirements - Bachelors Degree in Computer Science (preferred, or related degree) - 5 years of experience within Product Security, specifically working within FDA guidelines for Medical Devices - Working knowledge of software development practices, Agile methodologies - Experience using risk analysis and mitigation methodologies. - Extensive experience developing Standard Operating Procedures (SOPs) for medical devices - Familiarity with medical device product cybersecurity regulatory submission requirements - Cybersecurity certification (CISSP, CEH, etc.) null We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion,sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military oruniformed service member status, or any other status or characteristic protected by applicable laws, regulations, andordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to HR@insightglobal.com.
Confirm your E-mail: Send Email