Enable job alerts via email!

Product Security Specialist

JR United Kingdom

Greater London

On-site

GBP 70,000 - 90,000

Full time

Today
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company is seeking a Product Security Specialist to enhance security strategies for IoT medical devices. The role involves collaboration with client teams, risk evaluation, and ensuring compliance with industry standards. Ideal candidates will have extensive experience in IoT security and relevant certifications. Join us to make a significant impact on healthcare security.

Qualifications

  • 8+ years of hands-on experience in IoT security, ideally within medical devices.
  • Solid experience in compliance with frameworks like NIST, HIPAA, GDPR.

Responsibilities

  • Collaborate with teams to define objectives and set timelines for security initiatives.
  • Evaluate security risks and propose remediation solutions.
  • Drive secure code reviews and conduct threat modeling.

Skills

IoT security
Client relationship management
Threat modeling
Penetration testing
Security testing

Education

Cybersecurity certifications (CISSP, CSSLP, CISM)

Tools

NIST
OWASP
MITRE ATT&CK
ISO 27001

Job description

Social network you want to login/join with:

Cognitive Group | Part of the Focus Cloud Group

Location:

england, United Kingdom

Job Category:

Other

-

EU work permit required:

Yes

col-narrow-right

Job Views:

4

Posted:

12.05.2025

Expiry Date:

26.06.2025

col-wide

Job Description:

About the Job

We are seeking a Product Security Specialist with expertise in connected / IoT medical devices or healthcare products to join our team.

The ideal candidate will work with clients to advise and shape the overall security strategy for products, ensure secure design, development, and deployment across the entire product lifecycle, and implement industry best practices to protect sensitive healthcare data.

Key Responsibilities

  • Collaborate with client product teams and functional groups to define objectives, establish scope, and set timelines for critical product security initiatives, as well as design delivery approaches.
  • Evaluate security risks across client product portfolios and propose remediation solutions that align both technical requirements and business goals.
  • Provide guidance on coding practices, threat modeling, and security testing strategies for embedded systems and IoT devices, ensuring adherence to relevant industry regulations.
  • Partner with client R&D teams to drive secure code reviews, conduct threat modeling, perform security risk and vulnerability assessments, and validate security controls.
  • Stay informed on emerging cybersecurity threats within the IoT and medical device sectors and develop thought leadership content to represent PA’s expertise and viewpoint.
  • Establish and nurture strong relationships with key stakeholders across client organizations.
  • Promote team development by supporting training initiatives and delivering high-quality outcomes.
  • Lead projects with confidence, applying a consultative approach to address challenges and deliver solutions.

Required Skills & Experience

  • 8+ years of hands-on experience in IoT security, ideally within the medical device or pharmaceutical sectors.
  • Expertise in security frameworks (such as NIST, OWASP, MITRE ATT&CK, PASTA, STRIDE) and familiarity with standards including FDA cybersecurity guidance.
  • Demonstrated ability to assess security risks through recognized methods (e.g., penetration testing, threat modeling, security testing) and evaluate residual risks with compensating controls.
  • Solid experience in applying and proving compliance with frameworks like NIST, IEC, HITRUST, HIPAA, GDPR, ISO 27001, SOC 2 Type 2, as well as working with Quality Management Systems (QMS).
  • Strong record of delivering results and cultivating client relationships.
  • Skilled in developing business opportunities, including preparing proposals and identifying growth areas within the client portfolio.
  • Holds relevant cybersecurity certifications such as CISSP, CSSLP, or CISM.

Preferred Qualifications

  • Proven ability to author thought leadership pieces and deliver insights on new and emerging security developments.
  • Background in consulting, with an emphasis on strategic problem-solving and driving successful outcomes.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Product Security Specialist

Cognitive Group | Part of the Focus Cloud Group

Greater London

On-site

GBP 60,000 - 100,000

2 days ago
Be an early applicant

Product Security Specialist

Astro Studios, Inc.

London

Hybrid

GBP 60,000 - 100,000

10 days ago

Senior Application Security Consultant

JR United Kingdom

London

Remote

GBP 60,000 - 100,000

6 days ago
Be an early applicant

Senior Safety Implementation Consultant - Signal Detection and Analytics (Remote)

Veeva Systems, Inc.

London

Remote

GBP 60,000 - 100,000

6 days ago
Be an early applicant

Security Data Loss Prevention Manager (DLP) - Remote (UK) - Permanent

JR United Kingdom

London

Remote

GBP 60,000 - 100,000

6 days ago
Be an early applicant

Product Security Specialist

PA Consulting

London

On-site

GBP 60,000 - 100,000

30+ days ago

Information Security Specialist

ConSol Partners

Greater London

On-site

GBP 65,000 - 75,000

6 days ago
Be an early applicant

Senior Application Security Consultant

Senitor Associates

Greater London

Remote

GBP 50,000 - 90,000

12 days ago

Software Security Lead

TN United Kingdom

London

Remote

GBP 60,000 - 100,000

15 days ago