Stay abreast of emerging cybersecurity threats, technologies, and regulations specific to medical devices and health software.
Contribute to OU and enterprise-wide product security strategy and roadmap development.
Drive security integration into all stages of the product lifecycle, from concept and design to postmarket.
Work closely with system architects, software leads, and hardware engineers to embed secure design patterns in both embedded and cloud-connected environments.
Lead or contribute to threat modeling sessions, conduct security risk assessments, and identify mitigation strategies in accordance with IEC 81001-5-1, ISO 14971, and FDA premarket cybersecurity guidance.
Collaborate on the design and implementation of secure architectures, focusing on secure boot, secure communications, data protection, access control, secure software updates, and hardware-software integration.
Support and interpret results from vulnerability scans, penetration tests, and static/dynamic code analysis.
Coordinate with internal teams and third-party vendors to ensure timely and appropriate risk mitigation.
Promote a culture of security awareness within R&D and provide support to more junior engineers.
Ensure alignment with applicable standards (e.g., NIST, IEC 60601-4-5, IEC 81001-5-1) and support security documentation efforts for global regulatory submissions.
Review and assess the cybersecurity posture of third-party suppliers and open-source software components used within product designs.
Support technical investigation and resolution of postmarket security incidents or field issues.
Maintain comprehensive security documentation, including threat model diagrams, risk assessments, shared service inventories, design patterns, security guidelines, and product security plans/reports.
Requirements
Bachelor's degree and 4 years of relevant experience, or a Master’s degree with 2 years of relevant experience
Bachelor’s degree in a relevant engineering field of study (e.g., Computer Engineering, Software Engineering, or related discipline), completed and verified prior to start
Minimum 4 years of relevant experience, or 2 years with an advanced degree
Minimum 1 year of experience integrating security into embedded systems or connected medical devices in a regulated product development environment
Working knowledge of secure development lifecycle (SDLC), secure boot, cryptography, secure firmware update, secure communication, and hardware/software interface security
Master’s degree in a relevant engineering or cybersecurity field
Contremaître protecteur supervisant des équipes sur des propriétés ferroviaires actives. Organiser les séances d'information et garantir la sécurité et l'efficacité des travaux en utilisant les règles d'exploitation ferroviaire.
Senior Defensive Security Advisor at Desjardins identifying and mitigating threats across systems and networks. Leading complex initiatives and collaborating with stakeholders for effective security posture.
Life and health insurance financial security advisor serving clients by providing advice and maintaining business relationships. Focused on sales of insurance products and services based on client needs.
Director of Security overseeing all safety and security operations for Women & Infants Hospital. Responsible for deterring crime, protecting premises, and managing transport services.
Responsable Pôle Sécurité Médiation Fraude managing security operations for public transport services in Metz. Ensuring safety and compliance while optimizing fraud prevention strategies.
Cyber Security Engineer at Regions focusing on cloud and infrastructure security. Designs and implements cybersecurity solutions while providing technical support and guidance.
IAM Security Engineer focusing on identity and access management automation in a dynamic digital assets company. Contributing to scaling IAM infrastructure through automated solutions and secure user lifecycle management.
Data Analyst joining Ford's team to focus on security technologies and data integration. Responsible for improving data operations across global infrastructure and complex requests.
Digital Product Manager at Ford creating connected vehicle experiences through integrated hardware and software solutions. Collaborating with teams to enhance customer experience through new digital products.
Cybersecurity Engineer implementing Zero Trust Reference Architecture solutions at Mythics. Deploying and maintaining Forescout platform within secure environments.