Search by job, company or skills

C

Senior Security Engineer - Medical Device Cybersecurity & Compliance

new job description bg glownew job description bg glownew job description bg svg
  • Posted 7 days ago
  • Be among the first 50 applicants
Early Applicant
Quick Apply

Job Description

Key Responsibilities:

  • Drive end-to-end cybersecurity integration across the medical device product development life cycle, ensuring security is embedded from concept to release.
  • Develop and maintain cybersecurity for medical products, including security requirements specifications, risk assessments, threat models, and product security architecture documentation.
  • Conduct thorough gap assessments to evaluate compliance with IEC 81001-5-1, IEC 60601-4-5, AAMI TIR 57, and AAMI TIR 97 standards, and implement remediation measures.
  • Perform hands-on vulnerability assessments, penetration testing, and secure code reviews of embedded devices, IoMT (Internet of Medical Things) components, and connected systems.
  • Collaborate closely with development, compliance, and regulatory teams to ensure product security measures meet both internal security policies and external regulatory expectations.
  • Support SBOM management, software supply chain risk evaluations, and third-party component analysis to maintain software transparency and mitigate risks.
  • Provide expert input on secure communication protocols, encryption standards, data protection for both at-rest and in-transit data, and cloud-based connectivity of medical systems.
  • Assist in developing incident response strategies and bring working knowledge of HIPAA, GDPR, and HL7 to address data privacy and healthcare-specific regulatory concerns.
  • Contribute to the continuous enhancement of internal secure development processes, tools, and methodologies, while championing security best practices within product teams.

Required Skills and Qualifications:

  • Minimum of 6 years of experience in cybersecurity, including at least 3 years focused on medical devices, embedded systems, or IoT security.
  • Proven track record in authoring security design, defining technical requirements, and documenting security architectures aligned with regulatory needs.
  • Hands-on experience in embedded system security including secure boot, firmware security, threat modeling techniques (e.g., STRIDE, DREAD), and product-level risk assessments.
  • Strong understanding of IEC 81001-5-1, IEC 60601-4-5, AAMI TIR 57, and AAMI TIR 97, along with working knowledge of the medical device product development lifecycle and quality standards like ISO 14971.
  • Demonstrated expertise in vulnerability management and penetration testing of connected products across device and cloud ecosystems.
  • Familiarity with data privacy and interoperability standards such as HIPAA, GDPR, and HL7 is highly desirable.
  • Excellent problem-solving skills, critical thinking, and ability to lead gap analysis and remediation activities in regulated environments.
  • Strong collaboration skills with the ability to influence cross-functional teams including RD, compliance, and product management.

More Info

Job Type:
Industry:
Employment Type:
Open to candidates from:
Indian

About Company

Converge tackles your supply chain challenges for today with solutions for the future. As the only public open market distributor, we possess a unique combination of global access, manufacturing industry expertise, and proven quality. With this, we can create customized, end-to-end supply chain solutions for electronics components sourcing and inventory management. We have the relationships, market intelligence, and product expertise to respond to urgent needs and dynamic market conditions, and the financial backing to provide terms that empower long-term growth. Connected distribution Converge, an Arrow company, is your full-service global supply chain partner. We are a team of creative, experienced problem-solvers that bridges the gaps through connected distribution and a unique approach to long-term, end-to-end supply chain optimization. Values that matter At Converge, we’re about respect, growth, and pride. We treat everyone, from employees and customers to industry partners, the way we would want to be treated. Our goal is growth – not just in the financial sense, but also personal and professional development. Every day, we strive to promote the growth of our own team as well as that of our customers and partners. Converge takes pride in its work. We constantly challenge ourselves to build something extraordinary – something that will make all of us proud. Community Our success has been built on a genuine commitment to nurturing the community of OEMs, EMS, supply chain partners, and our customers around the globe. It’s our way of sharing information gleaned through experience and by listening to you at every point of contact. Quality Quality is the cornerstone of everything we do. It is the heart of our suppliers’ and customers’ experience, their brand and, ultimately, their profitability. Our product and vendor quality programs are disciplined, repeatable, thorough, and based on the idea that over-commitment to quality is the only way to do business.

Job ID: 119069441