Senior Cyber Security Engineer

Boston ScientificArden Hills, MN
1d$82,600 - $156,900Onsite

About The Position

Boston Scientific is seeking a Product Cybersecurity Engineer to lead and support critical post-market cybersecurity activities within the Cardiac Rhythm Management (CRM) Research and Development (R&D) organization. This role focuses on operationalizing security processes and ensuring compliance with quality systems, while maintaining the security posture of the company's products, applications, and supporting infrastructure. The engineer will also assist in implementing cybersecurity plans for individual CRM products. The ideal candidate combines strong technical expertise with excellent communication skills to execute and support both functional and technical aspects of the cybersecurity strategy. This position requires close collaboration with internal teams and external consultants to deliver secure, compliant solutions. As part of the CRM R&D organization, the engineer will work alongside analysts, IT/R&D engineers, and architects to address pre- and post-market product security needs. Responsibilities include application security, vulnerability assessments, threat modeling, penetration testing, security tool implementation, hospital cybersecurity inquiries, and contract reviews, among other key initiatives.

Requirements

  • Bachelor's degree or higher
  • 5+ years of Research & Development or Information Technology experience, preferably in cybersecurity roles in medical device development or health care organizations.
  • Drive for learning cybersecurity and a passion for securing products.
  • Experience with vulnerability analysis of Windows and Linux operating systems as well as software.
  • Experience across various OS platforms such as Windows, MacOS, Linux, and Mobile (iOS, Android).
  • General understanding of cybersecurity techniques, controls, and methodologies from frameworks such as NIST Special Publications and ISO standards.

Nice To Haves

  • Cybersecurity certifications (e.g. Network+, Security+, CSSLP, HCISPP, CEH, CISSP) a plus.

Responsibilities

  • Support and manage applicable tools for pre and post market security testing, support integration of the tools into the quality processes.
  • Support post-market activities to identify known/unknown vulnerabilities associated with Boston Scientific's products, including new/sustaining products, providing inputs/technical expertise to multiple teams to eliminate/mitigate identified cybersecurity risks.
  • Monitor changes in security controls of products and update the product inventory and tracking database as needed and communicate to stakeholders.
  • Support negotiations of hospital cybersecurity agreements by reviewing technical clauses with Legal and Research & Development subject matter experts.
  • Support, as needed, security risk assessment and threat modelling services for CRM products businesses and product development life cycle.
  • Support, as needed, application security reviews and vulnerability/penetration testing of Boston Scientific's medical devices and software.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service