Senior Principal Engineer, Product Security

VANTIVE INC.
Plymouth, United States of America
21 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 175K

Job location

Plymouth, United States of America

Tech stack

Adobe Flash
Agile Methodologies
Software System Penetration Testing
Authentication Protocols
C++
Cipher
Computer Engineering
Software Design Patterns
Linux
Embedded Software
OSI Models
Python
Open Web Application Security
Public Key Infrastructure
Real-Time Operating Systems
Secure Coding
Software Engineering
Software Vulnerability Management
Privacy Controls
Software Security
Firewalls (Computer Science)
Information Technology
U-Boot
Static Application Security Testing
Programming Languages
Dynamic Application Security Testing

Job description

As the Sr. Principal Product Security Engineer you will be responsible for designing, building, testing and implementing systems with the primary goal of product security across Vantive's medical device product portfolio in various operating environments. Prevention of breach of Intellectual Property (IP), Attack surface minimization, preventive security and privacy controls, incident/vulnerability management are some of the focus areas for this position., * Implement embedded secure code solutions, design patterns, and coding guidelines that meet security and privacy requirements defined in the security plans, risk assessments, policies, and procedures

  • Support security project governance through scheduling activities, planning and prioritization
  • Proactively drive security solutions implementation in-alignment with the development leads, security architects and product owner(s)
  • Drive feature implementations in line with the architecture via designs, coding, reviews and tests. Perform Proof of Concept (POC) activities as necessary
  • Review, Analyze and mitigate SAST, DAST, SCA and penetration test findings in collaboration with the developers for various electromechanical medical devices product lifecycles
  • Review current software security control measures and implement security enhancements across multiple medical devices
  • Participate in post-market product analysis to support vulnerability investigations as required as well as be engaged in continuous security monitoring, Vantive is committed to supporting the needs for flexibility in the workplace. We do so through our flexible workplace policy which includes a minimum of 3 days a week onsite. This policy provides the benefits of connecting and collaborating in-person in support of our Mission.

Requirements

This role requires deep knowledge of security by design, IoT secure code principles, physical security hardening, and embedded system development. Candidates should have experience in embedded software development with a desire to secure products to be able to protect our customers and patients using our life-sustaining products each day. Success in this role requires a strong understanding and interest in the latest security standards, protocols, products, and systems., * Experienced security developer able to interpret and guide software development teams on secure coding practices and application security test report interpretation for various coding languages and operating environments

  • Strong knowledge of secure software development lifecycle and practices including SAFe/ Agile methodologies for software development
  • Understanding of security by design principles and architecture level security concepts
  • Sound understanding and experience in implementing security technologies/techniques such as, Cryptographic Algorithms/Cipher Suites, Public key Infrastructure (PKI), Hardware/embedded authentication protocols, Secure Boot, and data-at-rest encryption methods
  • Experience implementing OWASP Top10 application security guidelines in embedded systems
  • Knowledge of embedded system architecture and security controls (e.g., firewall and border router configurations, wireless communication architectures, messaging authentication protocols
  • Experienced in generating, defining, and reviewing penetration test results through knowledge standard methodologies and tools including environmental configuration definition, security analysis, threat modeling, and system security audits
  • Knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities
  • Exposure to international privacy requirements & cross-industry trends, * Bachelor's degree in Computer Science, Computer Engineering, a related field or equivalent demonstrated experience and knowledge
  • Minimum 8+ years of experience in software development or related fields.
  • Minimum 5 years technical experience working with product security design/development for embedded systems
  • 3 years working with each of the following:
  • Experience with C/C++, Python, Linux and/or security design within real-time operating systems
  • Experience analyzing, interpreting, and mitigating security findings from multiple sources including SAST, DAST, SCA and penetration tests
  • Embedded data at rest security implementations including Code Signing, Secure boot, and flash encryption implementations
  • Embedded/IoT wired and wireless secure networking implementations within multiple layers of the OSI stack
  • IoT/Embedded PKI solutions and implementation

Benefits & conditions

$136,000.00 - $175,000.00 / yr parental leave, paid time off, paid holidays, 401(k), employee discount 1405 Xenium Lane North (Show on map) Apr 29, 2026, We understand compensation is an important factor as you consider the next step in your career. At Vantive, we are committed to equitable pay for all employees, and we strive to be more transparent with our pay practices. The estimated base salary for this position is $136,000 - $175,000 annually. The estimated range is meant to reflect an anticipated salary range for the position. We may pay more or less than the anticipated range based upon market data and other factors, all of which are subject to change. Individual pay is based on upon location, skills and expertise, experience, and other relevant factors. For questions about this, our pay philosophy, and available benefits, please speak to the recruiter if you decide to apply and are selected for an interview.

US Benefits at Vantive

This is where your well-being matters. Vantive offers comprehensive compensation and benefits packages for eligible roles. Our health and well-being benefits include medical, dental and vision coverage that start on day one, as well as insurance coverage for basic life, accident, short-term and long-term disability, and business travel accident insurance. Financial and retirement benefits include the Aon Pooled Employer Plan ("Aon PEP"), Vantive's 401(k) retirement savings plan, to help you prepare for your future. The Aon PEP is designed to help improve retirement outcomes by providing retirement resources more efficiently. The plan offers a robust set of investment options, financial education, and a suite of resources to support your retirement goals.

We also offer Flexible Spending Accounts, educational assistance programs, and time-off benefits such as paid holidays, paid time off ranging from 20 to 35 days based on length of service, family and medical leaves of absence, and paid parental leave. Additional benefits include commuting benefits, the Employee Discount Program, the Employee Assistance Program (EAP), and childcare benefits. Join us and enjoy the competitive compensation and benefits we offer to our employees.For additional information regarding Vantive's US Benefits, please speak with your recruiter or visit our Benefits site: Benefits | Vantive

About the company

Vantive is a vital organ therapy company on a mission to extend lives and expand possibilities for patients and care teams everywhere. For 70 years, our team has driven meaningful innovations in kidney care. As we build on our legacy, we are deepening our commitment to elevating the dialysis experience through digital solutions and advanced services, while looking beyond kidney care and investing in transforming vital organ therapies. Greater flexibility and efficiency in therapy administration for care teams, and longer, fuller lives for patients- that is what Vantive aspires to deliver. We believe Vantive will not only build our leadership in the kidney care space, it will also offer meaningful work to those who join us. At Vantive, you will become part of a community of people who are focused, courageous and don't settle for the mediocre. Each of us is driven to help improve patients' lives worldwide. Join us in advancing our mission to extend lives and expand possibilities.

Apply for this position