Product Security Architect (Remote)

Elekta · Remote

Company

Elekta

Location

Remote

Type

Full Time

Job Description

Are you a current Elekta employee?

Please click here to apply through our internal career site Find Jobs - Elekta.

Want to join a team with a mission to improve and save lives?

We continually look for motivated and skilled individuals who are interested in supporting our customers - healthcare professionals who use our products to help patients and their communities.

We currently have the following opportunity available - please contact us for more details!

We don't just build technology. We build hope.

We are looking for a Product Security Architect to join our dynamic team!

What you'll do at Elekta:

As a Product Security Architect, you will be responsible to provide product security expertise and guidance to product development teams throughout the different phases of the SDLC.

This is a highly technical role with approximately 70% as architect/advisor. You will work with rest of product security team and product engineering teams to mature our overall product security program, mentor others, and be a hands-on partner to our product teams to deliver innovative and secure products and experiences to customers.

Responsibilities:
  • Help engineering and Product Management teams identify security requirements
  • Support product security process activities including threat modelling, cybersecurity reviews, risk assessment, etc. for all software and firmware development.
  • Perform periodic security audits of all software and hardware.
  • Assess the risk of new and current medical devices, treatment services, and digital solutions (Cloud-based services, Mobile Applications, IoT Services, etc.).
  • Drive efforts with the development teams to quantify residual product risk and identification of appropriate security controls.
  • Provide product security related coaching/mentoring and security expertise for all software and firmware development teams.
  • Drive a standardized set of security product requirements into product and service offerings.
  • Lead and coordinate cross-functional activities for incident response
  • Keep up to date on emerging cybersecurity technologies and trends to help other employees understand the critical role of cybersecurity in the development of our products
  • Other duties as assigned


Qualifications:

We believe you thrive in a fast-paced environment and are always in search for a better way. You are an excellent communicator who supports the team members and wants an opportunity to truly make an impact. We believe that you have:
  • Bachelor's degree from four-year college or university; or equivalent training, education, and experience in information / cyber security, software engineering, computer science, etc.
  • Excellent cyber security capabilities and strong software engineering skills
  • Strong knowledge of secure software development lifecycle and practices such as threat modelling, security reviews, risk assessment, penetration tests, and security incident response
  • Understanding of security by design principles and architecture level security concepts
  • Experience in development of security controls for hardware and software.
  • Medical device product security experience and regulatory compliance to FDA/MDD/MDR/HIPAA/GDPR a plus.
  • 10+ years of combined experience in software engineering and cybersecurity related job roles, preferably in product security area.
  • Up to date knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities
  • Excellent communication and leadership skills
  • Strong interpersonal skills with the ability to facilitate diverse groups, help negotiate priorities, and resolve conflicts among project stakeholders
  • Technical leadership experience in the software security field
  • Experience and knowledge of penetration testing methodologies and tools
  • Understanding of Agile software development methodologies
  • Knowledge of automation tools and methodologies associated with DevOps and CI/CD pipelines
  • Knowledge of secure coding techniques and good practice and OWASP.
  • Experience developing and deploying digital signatures for secure communication, software images and updates a plus.
  • Certifications in security and privacy demonstrating deep practical knowledge such as CSSLP or CISSP


What we offer:
  • Opportunity to work with a proactive and supportive team
  • Excellent Medical, Dental and Vision coverage
  • 401k, paid Vacation and Holiday
  • A health of additional benefits including wellness reimbursement, tuition reimbursement and flexible spending account
  • Opportunity to work on cutting edge in medical advancement
  • Close-knit company culture
  • Upward mobility


How to proceed?

We are looking forward receiving your resume. Please attach your resume in the application form and we will contact you!

If you have any questions, you are welcome to contact Lisa Zhang, Talent Acquisition Partner on LinkedIn.

EEO Statement

We are an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, disability, veteran status, or any other protected characteristic.

Date Posted

11/20/2022

Views

8

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

142,000+ Jobs Tracked
12,400+ Companies
1,930 Categories