Product Security Manager overseeing cybersecurity architecture and engineering at Smith+Nephew. Ensuring robust cyber security controls throughout product development and collaborating with R&D and Compliance Teams.
Responsibilities
Encourage the development and advancement of personnel on their team
Help develop and mature Global Product Security Strategy and Secure-Software Development Life Cycle (S-SDLC)
Oversee the definition and support the implementation of cybersecurity requirements and controls
Lead the creation and maintenance of Product Cybersecurity Risk Registers and Threat Models
Lead the execution and integration of cybersecurity testing and assessment activities
Support best practice product cyber security incident response (IR) activities
Provide technical leadership and competency in communications with stakeholders outside of Smith + Nephew
Requirements
Bachelor's degree in life science, computer science, information systems and/or equivalent formal training or work experience
5+ years in hands-on cybersecurity experience
2+ years people management experience
Strong ability to influence and think strategically
Clear understanding of mitigating security controls, vulnerability management, penetration testing, and code security
FDA and other medical device regulators
Knowledge of cyber security standard frameworks such as HIPAA, FDA, ISO 27001/2, NIST CSF, and OWASP
Understanding of network infrastructure, including firewalls, web proxy and/or email architecture- particularly as they apply in a mitigating control functionality
Experience with different cloud computing platforms and the cloud security framework
Ability to design, recommend, plan, guide, and support implementation of innovative security solutions
Current CISM, CISSP, CRISC, or equivalent certification preferred.
IT Security Specialist focusing on cyber defense within a family - owned company. Responsibilities include managing firewalls, monitoring threats, and implementing security solutions.
Junior Information Systems Security Engineer at AMERICAN SYSTEMS managing DoD cyber security. Collaborating on technical issues and supporting risk management framework compliance.
Information Systems Security Engineer assisting in cyber security requirements for DoD systems. Collaborating closely with customers and ensuring compliance with the DoD Risk Management Framework.
Staff Product Security Engineer driving security innovation while ensuring compliance with federal standards at DataRobot. Leading security engineering, automation, and customer engagement for federal customers.
Auszubildende(n) zur Fachkraft für Schutz und Sicherheit in Hamburg bei proSicherheit GmbH. Modernes Sicherheitsunternehmen mit Fokus auf Sicherheit und Vertrauensaufbau.
Security staff for proSicherheit performing access controls and ensuring compliance with safety standards. Involves reporting, patrolling, and handling emergencies in Hamburg area.
Cloud Security Architect responsible for strategic growth and development of Cloud Security solutions. Work with national clients on architecture and security concepts in Switzerland.
Cyber Security Engineer responsible for DevSecOps and security automation at a leading Swiss IT consulting firm. Engaging in security measures across industries with a focus on collaboration and technology.
Information Security Manager coordinates ISMS development and security measures for Megamaris GmbH. Responsible for risk analysis and security training across 12 subsidiaries.
Security GRC Manager managing audits and compliance programs at Salesforce. Overseeing cloud security compliance and collaborating across departments for risk management.