CyberSecurity Architect

Siemens Healthineers

Bengaluru

On-site

INR 3,500,000 - 5,500,000

Full time

21 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Siemens Healthineers is seeking a senior cybersecurity architect to lead Product Security efforts in Bengaluru. You will develop PSDP, classify cybersecurity aspects of projects, and establish engineering strategies aligned with regulatory and product requirements.

Responsibilities include maintaining cybersecurity requirements, conducting TRA, and delivering artifacts for regulatory submissions, including FDA guidance and RMF/ATO.

Qualifications

  • Bachelor's or Master's degree in CS, Cybersecurity, Software Engineering, Computer Engineering, or related discipline.
  • Minimum 10+ years in software engineering, product cybersecurity, or security architecture, incl. 3+ years leading teams.
  • Proven expertise in product cybersecurity architecture, TRA, threat modeling, and secure design reviews.
  • Strong knowledge of secure software development, risk management, vulnerability assessment and security verification.
  • Experience supporting regulated product development (FDA RMF/ATO or equivalent) desirable.

Responsibilities

  • Lead cybersecurity planning activities by developing PSDP and classifying projects.
  • Define and maintain product cybersecurity requirements and produce regulatory artifacts.
  • Collaborate with engineering to evaluate designs against requirements and ensure controls.
  • Own the quality, traceability, and audit readiness of cybersecurity architecture deliverables.
  • Partner with cross-functional teams to prioritize remediation based on risk and value.
  • Drive adoption and continuous improvement of cybersecurity architecture methodologies and best practices.

Skills

Cybersecurity architecture
Threat modeling
Secure SDLC
Risk management
Vulnerability assessment
Leadership

Education

Bachelor's/Master's in CS/Cybersecurity/Engineering

Job description

  • You will lead cybersecurity planning activities by developing Product Security Development Plans (PSDP), determining project cybersecurity classifications, and establishing cybersecurity engineering strategies that align with regulatory, organizational, and product-specific requirements.
  • You will define and maintain product cybersecurity requirements by identifying applicable regulatory, industry, and organizational requirements; determining their applicability; developing Product Security Architecture Plans; conducting Threat and Risk Assessments (TRA); and producing technical cybersecurity artifacts supporting regulatory and government certification activities, including FDA cybersecurity guidance and DoD RMF/ATO.
  • You will collaborate with engineering teams to evaluate solution designs against cybersecurity requirements, define cybersecurity acceptance criteria, and ensure security controls are implemented in a practical, compliant, and sustainable manner.
  • You will own the quality, traceability, and audit readiness of cybersecurity architecture deliverables by ensuring cybersecurity requirements are traceable from cybersecurity architecture through design, implementation, verification, residual risk rationale, and supporting regulatory documentation.
  • You will partner with engineering, quality, regulatory, verification, and product management teams to facilitate risk-informed cybersecurity decisions, ensuring remediation efforts are prioritized based on actual risk while avoiding unnecessary implementation of security controls that do not provide meaningful product or customer value.
  • You will collaborate with peers to drive the adoption and continuous improvement of cybersecurity architecture methodologies, templates, tools, and engineering best practices.
  • You will lead cybersecurity planning activities by developing Product Security Development Plans (PSDP), determining project cybersecurity classifications, and establishing cybersecurity engineering strategies that align with regulatory, organizational, and product-specific requirements.
  • You will define and maintain product cybersecurity requirements by identifying applicable regulatory, industry, and organizational requirements; determining their applicability; developing Product Security Architecture Plans; conducting Threat and Risk Assessments (TRA); and producing technical cybersecurity artifacts supporting regulatory and government certification activities, including FDA cybersecurity guidance and DoD RMF/ATO.
  • You will collaborate with engineering teams to evaluate solution designs against cybersecurity requirements, define cybersecurity acceptance criteria, and ensure security controls are implemented in a practical, compliant, and sustainable manner.
  • You will own the quality, traceability, and audit readiness of cybersecurity architecture deliverables by ensuring cybersecurity requirements are traceable from cybersecurity architecture through design, implementation, verification, residual risk rationale, and supporting regulatory documentation.
  • You will partner with engineering, quality, regulatory, verification, and product management teams to facilitate risk-informed cybersecurity decisions, ensuring remediation efforts are prioritized based on actual risk while avoiding unnecessary implementation of security controls that do not provide meaningful product or customer value.
  • You will collaborate with peers to drive the adoption and continuous improvement of cybersecurity architecture methodologies, templates, tools, and engineering best practices.
Your expertise:
  • Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, Computer Engineering, or a related technical discipline, or equivalent experience. Minimum 10+ years of experience in software engineering, product cybersecurity, or security architecture, including 3+ years leading technical teams or cybersecurity initiatives.
  • Demonstrated expertise in product cybersecurity architecture, cybersecurity architecture planning, Threat and Risk Assessments (TRA), threat modeling, security requirements definition and disposition, secure design principles, attack surface analysis, and security design reviews for complex software-enabled products.
  • Strong knowledge of secure software development, cybersecurity risk management, vulnerability assessment, penetration testing, security control selection, security verification, and risk-based engineering decision making, with the ability to translate technical findings into practical engineering solutions.
  • Experience supporting regulated product development, including cybersecurity architecture plans, security requirements definition, requirements applicability and disposition, cybersecurity design reviews, security acceptance criteria, design traceability, residual risk documentation, and cybersecurity deliverables supporting regulatory submissions and customer communications.
  • Experience developing technical cybersecurity documentation supporting regulatory and government certification frameworks, such as FDA cybersecurity guidance, NIST Risk Management Framework (RMF), DoD Authorization to Operate (ATO), or equivalent security assurance programs, is highly desirable.
  • Proven ability to collaborate across engineering organizations, facilitate cybersecurity risk discussions, and balance cybersecurity, product architecture, operational constraints, regulatory expectations, and business objectives to enable informed engineering decisions.
  • Strong leadership, communication, and stakeholder management skills, with a track record of mentoring technical teams, fostering collaboration, and contributing to the continuous improvement of cybersecurity architecture practices. Experience in medical devices, laboratory diagnostics, or other regulated industries is highly desirable.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CyberSecurity Architect
CyberSecurity Architect

Siemens Mobility • Bengaluru

On-site
INR 3,500,000 - 5,500,000
CyberSecurity Architect
CyberSecurity Architect

ITH Icoserve • Bengaluru

On-site
INR 4,500,000 - 7,500,000
Principal, Product Security Architect
Principal, Product Security Architect

Zinnov Management Consulting • Bengaluru

Hybrid
INR 4,500,000 - 7,500,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Chennai District

On-site
INR 3,500,000 - 7,000,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Mumbai

On-site
INR 4,200,000 - 7,000,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Maharashtra

On-site
INR 900,000 - 1,260,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Hyderabad

On-site
INR 3,500,000 - 6,000,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Bengaluru

On-site
INR 4,000,000 - 7,500,000
Product Security Lead
Product Security Lead

Insight Global • Bengaluru

On-site
INR 4,500,000 - 7,500,000
Senior Product Security Architect
Senior Product Security Architect

Cubic Corporation • Telangana

On-site
INR 2,000,000 - 3,000,000