What are the responsibilities and job description for the Medical Device Security Professional position at DivIHN Integration Inc?
We are seeking a talented Medical Device Security Professional to join our team at DivIHN Integration Inc. In this role, you will be responsible for conducting thorough product cybersecurity risk assessments in regulated industries such as healthcare and medical devices.
Your primary focus will be on collaborating with R&D teams to develop secure architectures and implement security requirements aligned with industry-standard frameworks like NIST 800-53. You will also evaluate the security of products, software, and systems for compliance with applicable standards (ISO 27001, NIST, EU Directives, FDA, etc.).
This is an exciting opportunity for someone who is passionate about ensuring the security of medical device software and hardware against vulnerabilities and threats.
Key Responsibilities:
- Conducting product cybersecurity risk assessments in regulated industries.
- Collaborating with R&D teams to develop secure architectures and implement security requirements.
- Evaluating the security of products, software, and systems for compliance with applicable standards.
- Assessing and identifying the impact of changes, updates, or new regulations on existing and new products.
- Monitoring and understanding global cybersecurity standards and periodically reviewing for gaps.
- Utilizing threat modeling practices and tools to identify and mitigate security threats.
- Performing or supporting security testing, including penetration tests, and internal/external audits.
- Developing effective mitigation solutions.
Required Qualifications:
- 10 years of industry experience in application software design and development, with at least 5 years in cybersecurity for medical devices.
- Bachelor's degree in engineering or a related discipline.
- Experience in product cybersecurity risk assessments in regulated industries.
- Proficiency in threat modeling practices and tools.
- Strong experience in vulnerability assessments and tools.
- Proven ability to monitor and understand security threats and develop mitigation solutions.
- Experience in performing or supporting security testing and coordinating remediation efforts.