Staff Product Security Engineer Telecommunications - Boston, MA at Geebo

Staff Product Security Engineer

The Product Security and Services team within Pharmaceutical's Information Security & Risk Management (ISRM) is recruiting for a full-time Staff Product Security Engineer to join the ISRM Product Security-DPS team to provide support the Pharmaceutical Client Synthes orthopedics portfolio, with preference for US office locations in Palm Beach Gardens, FL, Boston, MA and/or Raynham, MA.
Caring for the world, one person at a time has inspired and united the people of Pharmaceutical for over 125 years. We embrace research and science bringing innovative ideas, products, and services to advance the health and well-being of people.
With billion in 2020 sales, Pharmaceutical is the world's most comprehensive and broadly based manufacturer of health care products, as well as a provider of related services, for the consumer, pharmaceutical, and medical devices markets. Employees of the Pharmaceutical Family of Companies work with partners in health care to touch the lives of over a billion people every day, throughout the world.
If you have the talent and desire to touch the world, Pharmaceutical has the career opportunities to help make it happen.
Position Summary
The Staff Product Security Engineer will be responsible for implementation of Pharmaceutical's enterprise Product Security strategy and framework throughout Pharmaceutical orthopedics portfolio.
This includes identifying key strategy and goals, collaborating with internal organizations on existing process and policy enhancements, creating and communicating metrics to senior management, identifying communications plans and raising overall awareness of the capability.
Specific responsibilities include supporting DPS R&D throughout a new product's development phases, review product security requirements and recommend security design solutions, help complete Quality documentation, threat modelling, penetration testing, software architecture review and design recommendations, code analysis and other security testing or work as needed.
Additionally, post market responsibilities for DPS marketed devices include monitoring for new vulnerabilities, assisting with patching and remediation plans, as well as responding to all customer security questionnaires and reviewing security language within contractual agreements.

Qualifications

  • Minimum of a Bachelor's degree is required, MS and/or advanced degree is preferred
  • A minimum of 6 years of experience in security and/or embedded software engineering functions is required
  • Knowledge of product or medical device security is preferred
  • Experience working with cloud based IoT management solutions is preferred
  • Understanding of Quality Design Control processes and FDA submission process is preferred
  • CISSP, CEH, MCSD, CSSLP or other certifications are preferred
  • Intimate knowledge of real-time operating system (i.e. QNX, Linux, Windows Embedded) hardening techniques are required
  • Ability to provide secure coding recommendations is required
  • Knowledge in at least one coding language (i.e. C/C++, C#) with code review experience is required
  • Software engineering experience including securely building embedded applications is required
  • Ability to create and deliver Product Security awareness campaigns and other communications is required
  • Must possess understanding of pen testing, vulnerability scanning, CVSS and/or other general security testing principles with the ability to provide specific recommendations on how to fix resulting vulnerabilities.
  • Understanding embedded operating system security patching and vulnerability assessment is required
  • Ability to work autonomously and proactively seek out security opportunities within DPS will be required
  • Big Picture/Attention to Detail - align strategic and tactical.
  • Must be results oriented and ability to drive to timelines
  • Excellent interpersonal skills are required
  • Creative problem-solving skills and strong customer focus (internal & external) is required
  • Excellent communication and collaboration skills, able to network, interact and influence at all levels of the organization, cross sector, cross-functionally and globally is required
  • Must possess consistent record to influence/collaborate to get to desired result, and strong leadership skills are required

Estimated Salary: $20 to $28 per hour based on qualifications.

Don't Be a Victim of Fraud

  • Electronic Scams
  • Home-based jobs
  • Fake Rentals
  • Bad Buyers
  • Non-Existent Merchandise
  • Secondhand Items
  • More...

Don't Be Fooled

The fraudster will send a check to the victim who has accepted a job. The check can be for multiple reasons such as signing bonus, supplies, etc. The victim will be instructed to deposit the check and use the money for any of these reasons and then instructed to send the remaining funds to the fraudster. The check will bounce and the victim is left responsible.