Medical Device Cybersecurity Engineer

5 - 9 years

0 Lacs

Posted:2 days ago| Platform: Shine logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

As a skilled and proactive Medical Device Cybersecurity Engineer, you will play a critical role in ensuring the cybersecurity and regulatory compliance of connected medical devices throughout the product lifecycle. Your responsibilities will include: - Performing and maintaining comprehensive threat modeling (e.g., STRIDE) for embedded and connected medical devices. - Conducting regular vulnerability scans, penetration testing, and static/dynamic analysis using tools such as Kali Linux, Metasploit, Wireshark, NMAP, Fortify, Nessus, or similar. - Developing and updating cybersecurity risk assessments as part of the overall risk management process (including CVSS scoring). - Defining, implementing, and documenting security controls based on threat model outcomes. - Managing and maintaining Software Bill of Materials (SBOM) in compliance with FDA premarket and post-market guidance and global standards. - Supporting secure software development lifecycle (SDLC) practices including secure coding reviews. - Conducting cybersecurity surveillance for new threats, advisories, CVEs, and zero-day vulnerabilities. - Triaging and assessing reported vulnerabilities, coordinating remediation, and updating documentation accordingly. - Supporting preparation of cybersecurity documentation for FDA submissions including security risk management reports and architecture diagrams. - Ensuring compliance with FDA applicable standards and collaborating with Quality, Regulatory, and Engineering teams to integrate cybersecurity across the product lifecycle. - Collaborating with software, hardware, and systems teams to guide cybersecurity design and testing. Qualifications Required: - Bachelors or Masters degree in Computer Engineering, Cybersecurity, Electrical Engineering, or related field. - 5-7 years of experience in embedded systems or medical device cybersecurity. - Strong working knowledge of SBOM, SOUP, vulnerability scanning tools, penetration testing, and threat modeling methodologies. - Familiarity with relevant regulations and standards such as FDA Cybersecurity Guidance, NIST SP 800-53/30/218, ANSI/AAMI SW96:2023. - Experience with secure development tools and CI/CD environments. Preferred: - Certified Ethical Hacker (CEH), CISSP, CSSLP, or similar certification. - Experience with connected devices (IoMT), wireless protocols (BLE, Wi-Fi), and cloud security principles. - Familiarity with DevSecOps practices and security tools integration.,

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You