Overview
Product Security Engineer II responsible for securing medical devices and connected healthcare systems across the product lifecycle.
What you'll do
- Perform security risk assessments throughout the product development lifecycle.
- Conduct threat modeling using methodologies such as STRIDE, Attack Trees, MITRE ATT&CK, and CVSS.
- Review system, software, cloud, and network architectures from a security perspective.
- Plan and execute security testing including vulnerability assessments, penetration testing, secure code reviews, and security regression testing.
- Analyze, prioritize, and track vulnerabilities through remediation and verification.
- Integrate cybersecurity activities into the Secure Development Lifecycle (SDL) and support security design reviews.
- Support regulatory and compliance activities including FDA Cybersecurity Guidance and relevant standards.
What you'll need
- 5–7 years of experience in product security, application security, cybersecurity engineering, or medical device security.
- Bachelor’s or Master’s degree in Computer Science, Cybersecurity, Software Engineering, Electronics Engineering, Information Security, or a related discipline.
- Experience securing connected products, embedded systems, desktop applications, cloud services, or IoT platforms.
- Security risk and threat modeling experience.
- Security testing experience including penetration testing, vulnerability assessment, and secure code review.
- Network security testing, web and API security testing experience.
- Python (required); PowerShell or Bash (preferred) for scripting/automation.
Details
- Location: Nanakramguda, Hyderabad, India.
Read the full description and apply on the company’s own careers page.