Sr Product Security Engineer

2 Months ago • All levels • $126,800 PA - $190,200 PA
Product Management

Job Description

This Sr Product Security Engineer role at Illumina focuses on strengthening product security for medical instruments and connected software. Responsibilities include leading pre-market and post-market security initiatives, defining and maintaining security controls, and collaborating with engineering teams. The role involves driving secure design, delivering security requirements and threat models, and conducting cybersecurity risk assessments and testing throughout the product SDLC. The ideal candidate will integrate security capabilities into continuous release planning and execution, ensuring a secure posture for all products.
Good To Have:
  • Experience with a medical device manufacturer or other relevant regulated industries
  • Professional qualifications such as CISSP, CISM, CSSLP, or OSCP
Must Have:
  • Lead pre-market and post-market security initiatives and solutions
  • Define, identify, evaluate, and maintain security controls for products
  • Collaborate with engineering and development to define medical device security
  • Introduce security controls, processes, and testing throughout the product SDLC
  • Drive secure design in partnership with development teams
  • Deliver security requirements at system and software levels
  • Partner with development teams to deliver threat models
  • Guide verification teams on cybersecurity requirements
  • Drive and deliver cybersecurity risk assessments
  • Execute and facilitate cybersecurity testing, including penetration testing and vulnerability scans
  • Improve integration of product security into SDLC
  • Educate and train partner teams on product security
Perks:
  • Access to genomics sequencing
  • Family planning benefits
  • Health/dental/vision insurance
  • Retirement benefits
  • Paid time off
  • Inclusive environment
  • Employee Resource Groups (ERG)

Add these skills to join the top 1% applicants for this job

ethical-hacking
game-texts
software-development-lifecycle-sdlc
linux
nmap
wireshark

What if the work you did every day could impact the lives of people you know? Or all of humanity?

At Illumina, we are expanding access to genomic technology to realize health equity for billions of people around the world. Our efforts enable life-changing discoveries that are transforming human health through the early detection and diagnosis of diseases and new treatment options for patients.

Working at Illumina means being part of something bigger than yourself. Every person, in every role, has the opportunity to make a difference. Surrounded by extraordinary people, inspiring leaders, and world changing projects, you will do more and become more than you ever thought possible.

Position Summary

  • This role requires Product Security and software development experience, knowledge, and skills. You'll be responsible for leading pre-market and post-market security initiatives & solutions including medical instruments and connected software before they are released to customers.
  • The Product Security Architect is a critical role in ensuring the manufacturing of our physical medical devices and software solutions development are secure.
  • As a valued team member, you will define, identify, evaluate, and maintain controls, providing visibility into the health, and security of our products.
  • You will collaborate closely with our engineering, development, and technology groups to define and maintain medical device security and lead the change, ensuring secure posture for products in Premarket and Postmarket phases of the product.
  • The Product Security Architect is responsible for introducing security controls, processes and testing throughout entire product SDLC, from hardware selection to decommissioning the device. You are highly motivated to integrate security capabilities into continuous release planning and execution for all products.

Responsibilities

  • Drive Secure Design working in close partnership with our Development Teams.
  • Deliver security requirements at the system and software levels, partnering with the development team to ensure correct implementation.
  • Partner with the Development Teams and deliver threat models on software development projects, identifying and prioritizing cybersecurity requirements.
  • Guide, mentor and advise the Verification Team, ensuring that verification of cybersecurity requirements is performed correctly and with full coverage.
  • Partner with the Development and Quality teams; drive and deliver Cybersecurity Risk Assessments on projects, ensuring all risks are identified, prioritized and addressed as expected.
  • Drive and execute/facilitate all varieties of cybersecurity testing; from penetration testing to vulnerability scans, ensuring along the way that all findings are triaged/root caused/addressed appropriately.
  • Work tirelessly on improving the integration of Product Security into SDLC, building trust, expertise, and process efficiencies.
  • Drive security initiatives by example, be knowledgeable and passionate, be strong communicator and never miss an opportunity to educate and train partner teams on the topics of Product Security.

Requirements

  • Experience in application and product security coupled with a strong depth of understanding and knowledge of relevant technology stacks.
  • Expertise in building secure designs for software products or perform penetration testing for software products.
  • Ability to understand code and system configurations and being able to recommend modifications to those, to ensure better security posture.
  • Very in-depth understanding of software development and the ability to effectively build and communicate security designs, taking in consideration software design context.
  • Understanding of three or more security domains (such as for example, platform security, network security, application security, etc.)
  • Understanding of OWASP Top 10 Web Application Vulnerabilities.
  • Coding experience with two or more programming languages.
  • Experience with software security tools such as nMap, Wireshark, Kali Linux, OpenVAS
  • Effective communicator delivering key messages to team stakeholders, and business partners using informative clear verbal and written communications.
  • Experience with a medical device manufacturer or other relevant regulated industries is preferred.

Education

  • Bachelor’s degree in computer science, engineering, or relevant work experience.
  • Professional qualifications are preferred such as: CISSP, CISM, CSSLP, or OSCP.

We are a company deeply rooted in belonging, promoting an inclusive environment where employees feel valued and empowered to contribute to our mission. Built on a strong foundation, Illumina has always prioritized openness, collaboration, and seeking alternative perspectives to propel innovation in genomics. We are proud to confirm a zero-net gap in pay, regardless of gender, ethnicity, or race. We also have several Employee Resource Groups (ERG) that deliver career development experiences, increase cultural awareness, and offer opportunities to engage in social responsibility. We are proud to be an equal opportunity employer committed to providing employment opportunity regardless of sex, race, creed, color, gender, religion, marital status, domestic partner status, age, national origin or ancestry, physical or mental disability, medical condition, sexual orientation, pregnancy, military or veteran status, citizenship status, and genetic information. Illumina conducts background checks on applicants for whom a conditional offer of employment has been made. Qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable local, state, and federal laws. Background check results may potentially result in the withdrawal of a conditional offer of employment. The background check process and any decisions made as a result shall be made in accordance with all applicable local, state, and federal laws. Illumina prohibits the use of generative artificial intelligence (AI) in the application and interview process. If you require accommodation to complete the application or interview process, please contact accommodations@illumina.com. To learn more, visit: https://www.dol.gov/ofccp/regs/compliance/posters/pdf/eeopost.pdf. The position will be posted until a final candidate is selected or the requisition has a sufficient number of qualified applicants. This role is not eligible for visa sponsorship.

Set alerts for more jobs like Sr Product Security Engineer
Set alerts for new jobs by Illumina
Set alerts for new Product Management jobs in United States
Set alerts for new jobs in United States
Set alerts for Product Management (Remote) jobs

Contact Us
hello@outscal.com
Made in INDIA 💛💙