Senior Security Engineer (Security by Design)

Stryker

Gurugram District

On-site

INR 1,500,000 - 2,100,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Stryker in India seeks a cybersecurity specialist to lead risk analysis, threat modeling, and mitigation for its medical products. You will work with Quality, Regulatory and Marketing to align on product cybersecurity, HIPAA, and GDPR compliance.

You will manage hardware and software security, perform testing, automate security tasks with PowerShell, Python, or Ruby, and drive incident response and V&V assessments to strengthen the company's security posture.

Qualifications

  • Bachelor's degree in Software Engineering/ Computer Science or related discipline with 4+ years of work experience.
  • Experience with security requirements, data security, malware analysis, vulnerability assessment, and penetration testing using standard tools.
  • Understanding security standards/frameworks like NIST 800-53, IEC 80001-2-8, IEC 27002, ISO 27799, IEC 15408-2, IEC 62443-3-3.
  • Experience securing medical or embedded devices.
  • Understanding IEC 62304, IEC 60601, and 21CFR 820.
  • Experience with threat modeling and risk assessment.
  • Security certifications such as CISSP-ISSAP, CCSP, OSCP or CEH are a plus.

Responsibilities

  • Lead cybersecurity risk analysis and threat modeling with mitigation strategies.
  • Collaborate with Quality, Regulatory, and Marketing to align on product cybersecurity, HIPAA, and GDPR compliance.
  • Lead all hardware and software security facets, including hardening, testing, and vulnerability scanning for compliance.
  • Develop and implement security policies and procedures for industry standards.
  • Integrate automated security testing into all phases of the SDLC.
  • Automate routine tasks using PowerShell, Ruby, or Python.
  • Lead incident response, V&V assessments and manage security incidents.
  • Evaluate emerging security technologies and recommend adoption to improve security posture.

Skills

Cybersecurity risk analysis
Threat modeling
Incident response
Automation
Penetration testing
Data security
Security testing

Education

Bachelor's degree in Software Engineering/ Computer Science or related discipline

Tools

PowerShell
Python
Ruby

Job description

What You Will Do
  • You will lead and manage cybersecurity risk analysis and threat modeling and develop mitigation strategies to develop secure medical products.
  • You will work closely with cross-functional teams, including Quality, Regulatory, and Marketing, in driving alignment around product Cybersecurity, HIPAA, and GDPR compliance.
  • You will lead in all product hardware and software security facets, including systems hardening, automated and manual penetration testing, automated vulnerability scanning for compliance, and issue remediation.
  • You will develop and implement security policies and procedures to ensure compliance with industry standards.
  • You will integrate automated security testing into all phases of SDLC.
  • You will automate routine tasks and extract valuable data using various scripting languages like PowerShell, Ruby, or Python.
  • You will take a lead in incident response, V&E assessments and manage the resolution of security incidents.
  • You will evaluate emerging security technologies and recommend their adoption to improve the organization’s security posture.
What You Need
Required Qualifications
  • Bachelor's degree in Software Engineering/ Computer Science or related discipline & 4+ years of work experience
  • Experience with security requirements, data security, malware analysis, vulnerability assessment, and penetration testing using off-the-shelf tools and techniques is preferred.
  • Understanding one or more security standards/frameworks like NIST 800-53, IEC80001-2-8, IEC 27002, ISO 27799, IEC 15408-2, and IEC 62443-3-3.
  • Experience in securing medical devices or embedded devices.
  • Understanding quality standards like IEC 62304, IEC 60601, and 21CRF 820.
  • Experience with threat modeling and risk assessment.
  • Security certifications such as CISSP-ISSAP, CCSP, OSCP or CEH are a plus.
Preferred Qualifications
  • Security certifications such as CISSP-ISSAP, CCSP, OSCP or CEH are a plusInsert detailed job description here.

Stryker is a global leader in medical technologies and, together with its customers, is driven to make healthcare better. The company offers innovative products and services in MedSurg, Neurotechnology, Orthopaedics and Spine that help improve patient and healthcare outcomes. Alongside its customers around the world, Stryker impacts more than 150 million patients annually.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Software Engineer
Software Engineer

PowerToFly • Gurugram District

On-site
INR 1,000,000 - 1,600,000
Staff Engineer
Staff Engineer

PowerToFly • Gurugram District

On-site
INR 2,500,000 - 4,500,000
Senior Design Engineer
Senior Design Engineer

Stryker • Gurugram District

On-site
INR 1,200,000 - 2,200,000
Staff /Senior Staff Engineer
Staff /Senior Staff Engineer

Stryker • Gurugram District

On-site
INR 2,800,000 - 3,800,000
Product Security Engineer II
Product Security Engineer II

Medtronic • Hyderabad

On-site
INR 1,800,000 - 2,800,000
Software Engineer
Software Engineer

Stryker • Gurugram District

On-site
INR 900,000 - 1,300,000
Senior Staff Engineer - C++
Senior Staff Engineer - C++

Stryker • Gurgaon

On-site
INR 3,500,000 - 5,000,000
Staff Software Engineer (C++ & Web development)
Staff Software Engineer (C++ & Web development)

Stryker • Bengaluru

On-site
INR 3,500,000 - 6,000,000
Staff Engineer - R&D Product Owner
Staff Engineer - R&D Product Owner

Stryker • Gurugram District

On-site
INR 1,800,000 - 2,600,000
Staff Clinical Affairs Specialist
Staff Clinical Affairs Specialist

Stryker • Gurugram District

On-site
INR <1,000