Product Security Officer

Werfen North America

Bedford (MA)

On-site

USD 160,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, and vision insurance
401k plan with employer match
Paid vacation and sick leave
Performance-based bonus eligibility

Job summary

Werfen North America is seeking a Product Security Officer to lead the Product Privacy and Security Program. You will be responsible for delivering cybersecurity guidance, collaborating with cross-functional teams, and managing product security deliverables.

Applicants must have over 10 years of cybersecurity experience and a strong background in product development. This role offers a salary range of $160,000 to $190,000 along with a comprehensive benefits package.

Qualifications

  • At least 10 years of cybersecurity experience in product development.
  • 4 years of technical leadership or cybersecurity management experience required.
  • Full knowledge of the complete product lifecycle.

Responsibilities

  • Lead the Product Privacy and Security Program.
  • Collaborate with project teams for cybersecurity tasks.
  • Provide cybersecurity guidance to Werfen and customers.
  • Participate in Risk assessments as a subject matter expert.

Skills

Problem solving
Conflict management
Quality and Regulatory experience
Knowledge of ISO 2700x
Knowledge of HIPAA and GDPR
Experience with secure SDLC
Networking and network security
Familiarity with agile tools

Education

Bachelor’s degree in Business, Computer Science, or Computer Engineering
Certification in cybersecurity (CISSP/CISM/CISA, Security+)
Certification in project or program management

Job description

Overview

The Werfen Product Privacy and Security Program is a shared service model with responsibility for Cybersecurity and Privacy by Design, Compliance, Security Testing and Incident Response. As a Werfen Product Security Officer you are responsible for cybersecurity and privacy functions for our Products. This role is a trusted collaborator of the Project Teams and works with the Quality and Regulatory functions to ensure the product privacy and security posture.

Responsibilities
  • Represent the Werfen Product Privacy and Security Office with responsibility for leading Product cross functional team members to complete all technical aspects of product cybersecurity tasks and initiatives.
  • Participate in customer assurance with Quality, Regulatory, Marketing, Services, and the Affiliates. This includes Product Security communications content such as: Product Labeling, Completion of security inquiries, Complaint and vulnerability investigation and reports.
  • Provide consistent cybersecurity and privacy guidance to Werfen and customers.
  • Represent cybersecurity and privacy in the Risk Assessment as a subject matter expert including: Cybersecurity threat management process, and Continuous technical analysis and monitoring of cybersecurity signals.
  • Work with project or program teams on planning and scheduling, clarifying and defining scope of work, utilizing deliverable milestone methods and critical path scheduling, resource planning and allocation, and developing task and project estimates for cybersecurity requirements and related gaps, epics, stories, and defects.
  • Support the generation of an integrated cybersecurity management plan that meets business objectives and is compliant with the design control process, while maximizing resource efficiency.
  • Represent cybersecurity and privacy for reviews of epics, stories and defects within PI planning activities, tech reviews, and change review board meetings (CRB) as a subject matter expert for cybersecurity.
  • Ensure product security deliverables are completed and documented as defined within the quality management system's work instructions for product security.
  • Support agile teams as a cybersecurity and privacy subject matter expert. Assist with the definition of epic and story requirements and deliverables to align with product security requirements.
  • Collaborate with the project and program teams to identify, assess, and prioritize cyber security issues and risk, and assist in supporting design controls to implement an appropriate solution through completion.
  • Represent cybersecurity with the product development teams to ensure cybersecurity and privacy is being designed into products.
  • Support program and project leads to ensure adequate oversight and control of vendors providing development, test or technical services for the project and are aligned with product security deliverables and requirements.
  • Contribute to and review cybersecurity product documentation, support FDA 510K submission activities and inquiries, and assist with oversight activities, including management reporting.
Networking/Key Relationships
  • Provide technical and team leadership to one or more medium project team(s) or a program team, including cybersecurity consulting, and cyber security technical leadership within the program area. Drive the successful attainment of Product Security program/cyber security project related goals.
  • Responsible for product security program communication for both within the product security team, project team(s) and between the team(s) and executive management.
Qualifications
  • At least 10 years of cybersecurity experience, preferably in product development with at least 4 years successful technical leadership, cyber security coordination, or cybersecurity management are required.
  • Requires Bachelor’s degree in Business, Computer Science, Computer Engineering or the equivalent combination of related training, proficiency and experience.
  • Certification in cybersecurity e.g. CISSP/CISM/CISA, Security+, Cisco CCNP Security preferred.
  • Certification in project or program management is desirable.
  • Full and comprehensive knowledge of the complete product lifecycle, including all aspects of product development from conception to manufacturing introduction.
Skills & Capabilities
  • Problem solving, conflict management, listening, managing and measuring work.
  • Quality and Regulatory experience e.g. 510K submissions.
  • Knowledge of domain specific standards and approaches on privacy and product security (ISO 2700x, NIST 800 Series Special Publications).
  • Knowledgeable and experience with laws and regulations on cyber security, privacy, data protection and breach notification (e.g.: FDA cybersecurity guidelines, 95/46/ED, HIPAA, GDPR, ISO 13485, ISO 14971, AAMI TIR 57, 21CFR820, SB1386, etc.).
  • Experience in designing or leading software products using Secure SDLC.
  • Understanding of securing and hardening Windows and Linux operating systems.
  • Understanding of networking and network security.
  • Familiarity with agile and project management tools and techniques.
  • Team player, self-motivated, perseverance.
  • Strong oral and written skills.
Travel Requirements

10% travel.

Compensation

The annual base salary range for this role is $160,000 to $190,000. Individual employee compensation will ultimately depend on factors including education, relevant experience, skillset, knowledge, and particular business needs.

Benefits

Eligible for medical, dental, and vision insurance, 401k plan retirement benefits with an employer match, as well as paid vacation and sick leave. Management, select professional roles are eligible for a performance-based bonus.

EEO Statement

Werfen is an Equal Opportunity employer and is committed to a diverse workplace. Werfen strictly prohibits unlawful discrimination, harassment or retaliation based upon an individual’s race, color, religion, gender, sexual orientation, gender identity/expression, national origin/ancestry, age, mental/physical disability, medical condition, marital status, veteran status, or any other protected characteristic as defined by applicable state or federal law. If you have a disability and need an accommodation in relation to the online application process, please contact NAtalentacquisition@werfen.com for assistance.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Product Security Officer
Product Security Officer

Werfen • Bedford (MA)

On-site
USD 160,000 - 190,000
Medical insurance
Dental insurance
401k plan with employer match
+1
Senior Software Quality Engineer
Senior Software Quality Engineer

Werfen • Bedford (MA)

On-site
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+4
Senior Product Security & Privacy Lead
Senior Product Security & Privacy Lead

Werfen North America • Bedford (MA)

On-site
USD 160,000 - 190,000
Medical, dental, and vision insurance
401k plan with employer match
Paid vacation and sick leave
+1
Director of Product Quality
Director of Product Quality

Werfenlife SA. • San Diego (CA)

On-site
USD 200,000 - 240,000
Senior Software Quality Engineer
Senior Software Quality Engineer

Werfen North America • Bedford (MA)

On-site
USD 130,000 - 160,000
Medical, dental, and vision insurance
401k plan retirement benefits
Paid vacation and sick leave
ACDx SW PMO - Program Manager I
ACDx SW PMO - Program Manager I

Werfenlife SA. • Bedford (MA)

On-site
USD 135,000 - 160,000
Systems Engineer III
Systems Engineer III

Werfen North America • Bedford (MA)

On-site
USD 90,000 - 120,000
Medical, dental, and vision insurance
401k plan with employer match
Paid vacation and sick leave
Senior Program Manager- R&D - Medical Device
Senior Program Manager- R&D - Medical Device

Werfen • Bedford (MA)

On-site
USD 190,000 - 220,000
Senior Software Development Engineer in Test, Digital Solutions
Senior Software Development Engineer in Test, Digital Solutions

Werfenlife SA. • Bedford (MA)

On-site
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+3
Project Manager I
Project Manager I

Werfenlife SA. • Bedford (MA)

On-site
USD 65,000 - 85,000
Medical insurance
Dental insurance
Vision insurance
+3