This role involves working with cross-organizational stakeholders to ensure the understandability and relevance of published security policies and their impact on the business. The engineer will develop cyber resilience strategies, design policies and procedures for risk management, access control, cloud security, patch management, and change management. Key responsibilities include interacting with management to implement security controls, providing supporting guidelines and tools to foster a security culture, completing Gap Analysis of Enterprise Cyber Security and Product Security, and forming an Information Security Steering committee. The role also requires presenting Gap Analysis to committees, designing information security policies, documenting business initiatives and their security implications, assessing risks, conducting security awareness and training, performing BIA and risk assessments, designing Security Management Plans, and training Product teams on security and Privacy by Design. Additionally, the engineer will interact with third-party vendors, respond to cyber insurance questionnaires and customer security assessments, integrate SAST and DAST tools, submit for FDA 510k, perform Threat Modelling, work with Quality Control and Regulators for Safety Risk Assessment, and collaborate with the Department of Defense on Product Security assessments. Experience with various security tools and platforms is essential.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior