Senior Cybersecurity Engineer (Medtech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Cybersecurity Engineer (Medtech): Securing medical device software and guiding clients through FDA cybersecurity submissions with an accent on threat modeling, technical writing, and regulatory compliance. Focus on designing security architectures, implementing SBOM/SAST tooling, and aligning product security with FDA guidance.
Location: Remote (Continental U.S. only)
Salary: $130,000 - $170,000
Company
Remote-first company specializing in medical device software development and FDA regulatory consulting.
What you will do
- Advise medical device startups on identifying and filling cybersecurity gaps.
- Author and edit FDA cybersecurity documentation and security architecture diagrams.
- Assist clients in implementing SBOM, SAST, and vulnerability scanning tools.
- Lead offline and live threat modeling sessions with engineering teams.
- Collaborate with clinicians and regulatory consultants to define security controls for various platforms.
- Apply 2025 and 2016 FDA cybersecurity guidance to real-world client projects.
Requirements
- Must be based in the Continental U.S.
- 2+ years in product cybersecurity OR 5+ years in software engineering with strong cybersecurity interest.
- Proven success in client-facing roles working independently.
- Strong understanding of cryptography, attack vectors, and secure development processes.
- Exceptional technical writing and organizational skills.
- Degree in Software Engineering, Computer Science, or a related engineering field.
Culture & Benefits
- Fully remote work with flexible hours.
- Competitive base salary with a 10% performance-based bonus.
- Comprehensive PTO and partial healthcare reimbursement.
- Automatic 3% contribution to a 401(k) retirement plan.
- Weekly 10x Time for personal and professional growth.
- Annual company retreats for team building and collaboration.
Hiring process
- Application via form including a resume and detailed cover letter.
- One-hour technical interview with a team engineer.
- Take-home threat modeling exercise.
- Final interview featuring a mock client meeting and technical Q&A.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →