Stryker Employment Company - Lansing, MI

posted 4 months ago

Full-time - Principal
Remote - Lansing, MI

About the position

The Principal Product Security Engineer will play a crucial role within the Stryker Product Security organization, focusing on ensuring the security of products throughout their development lifecycle. This position involves collaboration with product development teams during the systems development processes, guiding them through the concept, requirements, design, and build phases of new and evolving products. The engineer will primarily concentrate on cloud services but will also support embedded devices and mobile devices (iOS, Android, and others) within the IoT ecosystem. The goal is to shape the security framework of Stryker products before they are released to the market. In this role, the engineer will be responsible for driving the consistent generation of threat models and security requirements, ensuring that product designs are aligned with security best practices. They will oversee the build and configuration of products, defining and executing validation, verification, and post-market processes as necessary throughout the product lifecycle. The engineer will also collaborate with product teams to assess security risks and influence design decisions, ensuring that security considerations are integrated into the product development process from the outset. Additionally, the Principal Product Security Engineer will support the Security Assurance team by guiding the generation of software bills of material for various medical device technologies. They will assist product security incident response teams in effectively addressing and documenting security incidents. The role requires drafting internal and external communications that summarize security concepts used in the requirements, design, and build phases related to medical products and systems. The engineer will provide guidance and leadership to internal taskforce teams and will be responsible for developing and delivering presentations that convey complex technical topics to senior leadership.

Responsibilities

  • Collaborate with product teams to assess security risks and drive design decisions for new and evolving products and related systems.
  • Guide product development teams in completing threat models as input into security risk analysis processes.
  • Assemble security requirements applicable to the new or evolving product under consideration.
  • Support the Security Assurance team in guiding the generation of software bills of material for various medical device technologies.
  • Assist product security incident response (PSIRT) teams in addressing and documenting security incidents.
  • Draft internal and external communications summarizing security concepts used in requirements, design, and build phases related to medical products and systems.
  • Provide product security guidance and leadership to internal taskforce teams.
  • Develop and deliver presentations and communications to convey complex technical topics to senior leaders.
  • Recommend efficiency and process improvements.

Requirements

  • Bachelor's Degree in product security, computer science, mathematics, statistics, or related field.
  • 8+ years of applicable (product) security work experience.

Nice-to-haves

  • Master's degree in a security-related discipline.
  • Understanding of quality management systems, preferably in healthcare or medical device industries.
  • Experience implementing secure technologies in embedded devices, clouds, and mobile devices using secure controls.
  • One or more active, industry-recognized, and relevant cybersecurity certifications.

Benefits

  • Salary range of $126k - $279k plus bonus eligibility and benefits.
  • Equal opportunity employer with a commitment to diversity and inclusion.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service