Назад
Company hidden
4 дня назад

Principal Engineer, Product Cybersecurity

120 000 - 165 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Engineer, Product Cybersecurity (Medical Devices): Designing and analyzing cybersecurity for multiple embedded and hosted medical device systems with an accent on threat modeling, vulnerability assessment, and security architecture. Focus on analyzing CWEs and CVEs, resolving cross-functional constraints, and ensuring compliance with medical device quality and regulatory requirements.

Location: Round Lake, Illinois; minimum 3 days a week onsite. Applicants must be authorized to work for any employer in the U.S.; visa sponsorship is not available.

Salary: $120,000–$165,000 annually, plus potential discretionary bonuses.

Company

hirify.global develops healthcare products and medical devices focused on supporting healthcare delivery and its mission to save and sustain lives.

What you will do

  • Own and direct cybersecurity design and analysis for multiple medical devices.
  • Develop proof-of-concept solutions and lead the implementation of medical device cybersecurity principles within security architectures.
  • Create and maintain system requirements, architectures, risk analyses, and specifications for embedded and hosted medical device systems.
  • Create threat models, perform vulnerability scanning, and analyze security findings affecting medical device systems and interfaces.
  • Monitor threat intelligence, analyze CWEs and CVEs, and propose cybersecurity improvements with cross-functional software teams.
  • Resolve competing constraints across engineering, risk management, compliance, clinical, regulatory, human factors, marketing, and service functions while supporting product development and quality requirements.

Requirements

  • BS in computer science, engineering, mathematics, information management, or a related field with 5+ years of industry experience, or a master's degree with 3+ years of experience.
  • Experience with threat modeling, penetration testing, fuzz testing, vulnerability scanning, and secure code analysis.
  • Experience with cybersecurity tools such as Black Duck and Coverity.
  • Experience with threat intelligence, CWEs, and CVEs.
  • Experience with cybersecurity functionality for embedded systems and hosted software applications.
  • Strong organization and communication skills, including the ability to work with technical and non-technical stakeholders and influence management.

Nice to have

  • Familiarity with UL-2900, ICS-CERT, FIPS 140, and related cybersecurity organizations or certifications.

Culture & Benefits

  • Flexible workplace policy with regular onsite collaboration.
  • Medical, dental, life, disability, and business travel accident insurance for eligible employees.
  • 401(k) retirement plan with company matching and an employee stock purchase plan.
  • Educational assistance, paid time off, paid holidays, family and medical leave, and paid parental leave.
  • Additional commuting, childcare, employee assistance, and employee discount benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →