Product Security Engineer II
Medtronic.com
Office
TS Hyderabad Nanakramguda, India
Full Time
At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity for all. You’ll lead with purpose, breaking down barriers to innovation in a more connected, compassionate world.
A Day in the Life
• Perform product and device level cybersecurity activities, including incident response, vulnerability assessments, and mitigation.• Develop and execute product level intrusion detection capabilities.
• Conduct product risk assessments with R&D teams and recommend security controls.
• Contribute to the creation and testing of product security requirements and processes.
• Manage security documentation and deliverables for regulatory compliance.
• Evaluate and test security risks across the full development lifecycle, including post market products.
• Take part in Agile ceremonies to support continuous development and secure design practices.
Responsibilities may include the following and other duties may be assigned:
- Perform product and device-oriented cyber security-related activities ranging from incident response to vulnerability assessments to mitigation implementation.
- Develop and perform product-level intrusion detection activities.
- Perform product risk assessments in conjunction with product R&D teams and develop and recommend specific security controls for product/system wide security needs.
- Participate in the creation and testing of product security-related requirements and processes.
- Manage security-related deliverables for regulatory bodies, ensuring compliance with key standards / guidance documents.
- Evaluate and test security risks on programs across the entire development lifecycle, including market-released product.
Required knowledge and experience:
- Bachelor’s degree in Computer Science, Software Engineering, or a related field, or equivalent experience.
- CISSP or similar certification, or sufficient demonstrated experience and/or formal education in cyber security and information assurance.
- Minimum 4 years of relevant experience, or advanced degree with minimum 2 years of relevant experience.
- OS systems-level experience within one or more of the following: Linux, Windows, Android, iOS.
- Understanding of networking (ports/protocols), firewalls, load balancers, etc.,
- Strong problem-solving skills and attention to detail.
- Excellent communication and teamwork skills.
Nice to Haves - Security incident management experience.
- Log event management and searching experience (Splunk or similar).
- Programming skills in one or more of the following: C, C++, Python, Java, .NET, Python, Go, Ruby, Scala and/or Bash.
- Experience in Healthcare industry or other heavily regulated industry.
- Understanding of national and international laws, regulations, and policies related to regulated medical device cyber security.
- Wireless communication systems knowledge and experience.
- knowledge in FDA and ISO design control requirements is a plus.
Physical Job Requirements
The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position.
Benefits & Compensation
Medtronic offers a competitive Salary and flexible Benefits Package
A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create. We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage.
This position is eligible for a short-term incentive called the Medtronic Incentive Plan (MIP).
About Medtronic
We lead global healthcare technology and boldly attack the most challenging health problems facing humanity by searching out and finding solutions.
Our Mission — to alleviate pain, restore health, and extend life — unites a global team of 95,000+ passionate people.
We are engineers at heart— putting ambitious ideas to work to generate real solutions for real people. From the R&D lab, to the factory floor, to the conference room, every one of us experiments, creates, builds, improves and solves. We have the talent, diverse perspectives, and guts to engineer the extraordinary.
Learn more about our business, mission, and our commitment to diversity here
