Product Security Engineer Pharmacy Automation
Role details
Job location
Tech stack
Job description
As a Product Security Engineer (f/m/d) specializing in Pharmacy Automation, you will play a crucial role in safeguarding the security of our innovative pharmacy automation solutions. You will be responsible for integrating security throughout the product development lifecycle, ensuring our systems are robust against cyber threats and compliant with relevant regulations, ultimately protecting patient safety and data integrity., * Collaborate with product development teams (software, hardware, and firmware) to integrate security requirements and best practices into the design, development, and testing phases of pharmacy automation products.
- Conduct security threat modeling, risk assessments, and vulnerability analysis for new and existing products, identifying potential weaknesses and recommending mitigation strategies.
- Perform security code reviews, penetration testing, and fuzzing to identify and address security vulnerabilities in software and firmware.
- Develop and implement secure coding guidelines, security testing methodologies, and security-related documentation for product development teams.
- Stay up-to-date with the latest security trends, threats, and technologies, particularly those relevant to medical devices, industrial control systems, and healthcare IT.
- Execute product security risk assessments, hazard analysis, and provide vulnerability remediation guidance to product development software engineers
- Assist product development teams in complying with product security framework activities and creating security documentation, including Incident and Vulnerability Management Plans and Product Security White Papers
- Work closely with regulatory affairs and quality assurance teams to ensure product security compliance with industry standards (e.g., IEC 62443, HIPAA, GDPR, FDA guidance).
- Participate in incident response activities related to product security, including investigation, analysis, and remediation of security incidents.
- Educate and mentor development teams on secure design principles and coding practices.
- Evaluate third-party components and libraries for security vulnerabilities and recommend appropriate usage or alternatives.
- Contribute to the continuous improvement of the product security program and processes.
Requirements
- Bachelor's degree in Computer Science, Electrical Engineering, Cybersecurity, or a related technical field.
- Proven experience (3+ years) in product security engineering, with a strong focus on embedded systems, IoT, or industrial control systems.
- Solid understanding of common security vulnerabilities (e.g., OWASP Top 10) and their mitigation techniques.
- Experience with security testing tools and methodologies (e.g., static application security testing (SAST), dynamic application security testing (DAST), penetration testing).
- Proficiency in at least one programming language (e.g., C++, C#, Python, Java).
- Familiarity with secure development lifecycle (SDL) processes and frameworks.
- Knowledge of cryptography principles and secure communication protocols.
- Excellent analytical, problem-solving, and communication skills.
- Ability to work effectively in a cross-functional team environment.
Benefits & conditions
Our modern office is located in Vienna's Millennium Tower with excellent traffic connections. BD offers flexible working hours, (some) home office flexibility, a stock ownership program and numerous social benefits (e.g. free drinks, massages and Childcare support).
The minimum annual gross salary for this position is € 60.000,- (full-time basis). Based on individual skills and experience, we offer appropriate additional payment.