Insulet Corporation

posted 21 days ago

Full-time - Senior
Remote
Miscellaneous Manufacturing

About the position

The Sr Staff Cloud Security Engineer at Insulet will play a crucial role in securing the company's cloud environment and its interfacing products. This position involves identifying cloud security risks, automating detection and prevention measures, and conducting security assessments of existing products. The engineer will manage multiple projects that impact the internal business unit's security requirements, ensuring compliance with medical device security standards and collaborating with cross-functional teams.

Responsibilities

  • Identify secure requirements for different commercial cloud environments.
  • Understand security best-practices and architectural patterns for cloud-deployed products.
  • Drive detection, prevention and remediation of cloud-based security findings.
  • Understand and create threat models, manage vulnerabilities, prioritize risks by considering multiple aggregated views for security risks.
  • Conduct risk assessments for all embedded products and integrations to deliver risk-based approach in securing cloud-based medical devices.
  • Apply security guidance that aligns with the medical device security standards (such as AAMI TIR 57) and FDA's pre-market and post-market cybersecurity guidance.
  • Research emerging technologies and assess their applicability to the products.
  • Develop tools and frameworks that make it easy for teams to adopt security.
  • Contribute to Security Policy, Standards, and Guidelines related to Medical Device Security.
  • Contribute to cybersecurity deliverables for regulatory submissions.
  • Collaborate with a cross-functional cyber, product and engineering teams, and support incident management.

Requirements

  • Bachelor's degree in electrical engineering or computer science, or equivalent practical experience.
  • 8-10 years in cybersecurity with a desired focus on cloud security engineering and security architecture especially with embedded software.
  • Proficient in programming with C, C++, Java, .NET or other languages and the SDLC process.
  • Experience in detecting, preventing and remediating security findings in AWS and Azure cloud environments.
  • Experience with performing Security Testing and understanding of the application security concepts.
  • Understanding of various types of Exploits, Threat Modeling, and Attack surfaces.
  • Excellent communication, organizational skills, and experience in translating business goals into technical security deliverables.
  • Experience working with multiple stakeholders such as engineering/operations teams, internal business units, external incident response teams, and law enforcement throughout the incident lifecycle.

Nice-to-haves

  • Experience with Cloud tools such as Rapid 7 and Wiz.
  • Experience with vulnerability assessment and penetration testing.

Benefits

  • 100% remote working arrangements available (may work from home/virtually 100%; may also work hybrid on-site/virtual as desired).
  • Competitive salary range based on role, level, and location.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service