Sr Principal Eng, Cybersecurity (hybrid)

Year    Bengaluru, Karnataka, India

Job Description

b'


This is where you save and sustain lives At Baxter, we are deeply connected by our mission. No matter your role at Baxter, your work makes a positive impact on people around the world. You\'ll feel a sense of purpose throughout the organization, as we know our work improves outcomes for millions of patients. Baxter\'s products and therapies are found in almost every hospital worldwide, in clinics and in the home. For over 85 years, we have pioneered significant medical innovations that transform healthcare. Together, we create a place where we are happy, successful and inspire each other. This is where you can do your best work. Join us at the intersection of saving and sustaining lives\xe2\x80\x94where your purpose accelerates our mission. About Baxter Baxter Healthcare\xe2\x80\x99s mission is to save and sustain lives by delivering products and services that are the essential building blocks of healthcare. Also important to Baxter is ensuring the safety and security of its medical devices. Baxter is seeking a Medical Device Cybersecurity Engineer, whose primary responsibility is to ensure the safety and security of the global corporation\'s medical devices, products, and applications. The candidate will perform state of the art medical device cybersecurity pre-market threat analysis and risk assessment. The candidate will help ensure that cybersecurity is an integral component throughout product development. The candidate must have an excellent combination of software development skills and knowledge in security principles to prioritize the functional/technical aspects of the solution, and then help the product teams to execute the implementation. This role will work with a team of engineers, architects, and analysts across multiple organizations, supporting cybersecurity feature prototyping, threat analysis, and penetration test finding/vulnerability assessment. Role Description:
  • Accountable for defining and implementing the Cybersecurity strategy across Digital Health Platforms.
  • Provide leadership, strategic guidance and cross functionally collaborate with GBUs to architect, design and develop the software security features for multiple products and platforms.
  • Implement innovative security solutions for platforms and/or server platforms.
  • Lead implementation of medical device cybersecurity functionalities that are part of an overall security architecture, including common security protocol stacks such as IPsec, TLS, OAuth, and SAML.
  • Leading day-to-day security assessments and mitigations addressing product development for security by design in R&D, Privacy by Design, Threat-Modeling, Security Risk Assessments, Vulnerability Scanning, Penetration Testing, Security Whitepaper, MDS2 and SBOM Publishing
  • Ensures the confidentiality, integrity, and availability of digital data
  • Keep abreast of industry CVE\xe2\x80\x99s, security guidance\xe2\x80\x99s and standards, participate and lead on appropriate customer security disclosures.
  • Assess security findings from various sources. This includes Static Code Analysis and Penetration Testing.
  • Identify known/unknown vulnerabilities associated with Baxter\xe2\x80\x99s medical devices and provide inputs/technical expertise to multiple teams to eliminate/mitigate identified cybersecurity risks.
  • Develop security tools that help to collect cyber threat intelligence, track emerging vulnerabilities in software, and enforce secure coding standards.
  • Support medical device cybersecurity certification programs such as UL 2900.
  • Perform internal security tests to validate security capabilities and compliance for medical devices.
  • Work with internal or external resources to plan and execute Security Activities (like Penetration Testing, SOC2 audits) on various products.
  • Manage relationship with strategic partners in this space to ensure Baxter development process with respect to Cybersecurity, is industry leading, Top Quartile.
  • Interface with ministries of health, and certifying bodies to represent the company and devices in threat analysis, certification, and notifications
Minimum Requirements/Experience
  • Bachelor\'s Degree Computer Science or an equivalent with 11+ years of demonstrated product security experience in industry- healthcare, medical device preferred. Master\xe2\x80\x99s degree in technology management or similar preferred.
  • Familiarity with the development of medical products and importance of protecting PII/PHI and IP data.
  • Understanding of software components and associated security risks and how to mitigate risks to drive state of the art medical solutions.
  • Certification in security such as CAP, CCSP, or equivalent preferred.
  • Keen attention to detail, critical thinking, analytical abilities and abilities to work independently.
  • Proven interpersonal and communication (verbal, written, presentation) skills.
  • Proven understanding of application security throughout the Software Development Lifecycle (SDLC).
  • Experience in addressing OWASP Top 10 vulnerabilities.
  • Experience with some or all of the following: NIST 800-53, AMII TIR57, FDA Pre-Post Market Guidance, DoD RMF/ATO, SOC2, HiTrust, EU-MDR GDPR guidelines.
  • Proven ability to work closely with Cross-Functional teams such as R&D, Regulatory, Quality, Marketing, Legal to ensure compliance and appropriate mitigation of security risks for medical products.
  • Working knowledge in Operating Systems such as Linux, container orchestration frameworks such as Kubernetes, Cloud environments such as AWS or Azure, Azure Lakehouse etc.
  • Knowledge of threat modeling tools like Microsoft Stride, malware analysis, digital forensics
  • Some knowledge in cybersecurity standards such as NIST 800-53, ISO 27001, and FIPS 140-2 is preferred.
  • Experience or strong interest in IoT (Internet of Things) device development, application development
At Baxter, we offer a dynamic and future focused work environment offering workplace flexibility, additional annual leave and a strong value driven culture.
Baxter is committed to supporting the needs for flexibility in the workplace. We do so through our flexible workplace policy which includes a minimum of 3 days a week onsite. This policy provides the benefits of connecting and collaborating in-person in support of our Mission
Reasonable Accommodations


Baxter is committed to working with and providing reasonable accommodations to individuals with disabilities globally. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the application or interview process, please click on the link here and let us know the nature of your request along with your contact information. Recruitment Fraud Notice

Baxter has discovered incidents of employment scams, where fraudulent parties pose as Baxter employees, recruiters, or other agents, and engage with online job seekers in an attempt to steal personal and/or financial information. To learn how you can protect yourself, review our Recruitment Fraud Notice. 127118

Beware of fraud agents! do not pay money to get a job

MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Related Jobs

Job Detail

  • Job Id
    JD3260024
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Bengaluru, Karnataka, India
  • Education
    Not mentioned
  • Experience
    Year