Match Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessLog in to see why each signal reads the way it does.
Job Description
Structured overview of role & requirementsAbout This Role
Drive product security activities across the medical device product lifecycle including risk assessments, threat modeling, architecture reviews, penetration testing, and vulnerability management.
Collaborate with R&D and cross-functional teams to integrate cybersecurity into product development for connected healthcare products and cloud systems.
Ensure compliance with medical device cybersecurity regulations and standards, supporting post-market cybersecurity and coordinated vulnerability disclosure.
Minimum Requirements
Bachelor's or Master's degree in Computer Science, Cybersecurity, IT, Software Engineering, or Electronics & Communication Engineering.
8+ years of experience in Product Security, Application Security, Cybersecurity Engineering, or Medical Device Security.
Hands-on experience with security risk assessments, threat modeling (e.g., STRIDE, MITRE ATT&CK), security architecture reviews, vulnerability assessments, penetration testing, and secure code reviews.
Experience with security tools such as Burp Suite, OWASP ZAP, Nessus, Nmap, Wireshark, Metasploit, and scripting in Python. Location requirement: Hyderabad, India; No travel; Flex work arrangement.
Ideal Candidate Profile
Experienced in securing Class I, II, and III medical devices and connected healthcare/cloud systems with knowledge of FDA Cybersecurity Guidance and relevant international standards (IEC 81001-5-1, AAMI TIR57/97, IEC 62304, ISO 14971, NIST 800-53).
Skilled at integrating security into SSDLC and DevSecOps, with proficiency in automation of security testing and vulnerability management.
Familiar with cloud security (Azure, AWS), cryptography, secure communication protocols (TLS, HTTPS, MQTT), and post-market cybersecurity processes including Software Bill of Materials (SBOM) and coordinated vulnerability disclosure.
