Sr. Cybersecurity Specialist

Intone Networks
United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Bluetooth Cyber Security Systems Development Life Cycle Software Engineering Cloud Integration Vulnerability Analysis

Requirements

Key Qualifications Medical Device Experience (5+ Years): A minimum 5 years of direct, hands-on experience in medical device cybersecurity, preferably a Class III devices. Have demonstrated experience in creating documentation for at last one FDA 510K, PMA submission, or EU MDR technical documentation submission. Hands-on experience with standards like ISO 14971, IEC 62304 and ISO 13485 and experience in aligning these with regulatory requirements. Proven track record of working on devices with Bluetooth communication, mobile apps, and cloud integration. Regulatory Documentation Expertise: In-depth knowledge of FDA submission requirements, including: Cybersecurity documentation for 510(k) and PMA submissions. Creation of threat models, risk management files, and security testing reports tailored to FDA guidance. Familiarity with CE marking requirements for the EU, including: Cybersecurity sections for Technical Documentation under MDR. Ensuring compliance with ISO 14971, IEC 62304, and IEC/TR 60601-4-5. Demonstrated ability to produce submission-ready documentation in formats acceptable to both the FDA and Notified Bodies. SDLC Integration: Expertise in integrating threat and vulnerability management across the Software Development Lifecycle (SDLC). Ability to trace threats, risks, and mitigations through design, development, and testing stages, ensuring that all necessary artifacts are prepared and submission-ready for the specific Notified Body. Cybersecurity Risk Management: Experience in conducting and documenting: Threat modeling (e.g., STRIDE). Risk assessments and alignments with AAMI TIR57 and ISO 14971. Security testing results, including penetration testing and vulnerability assessments, documented in submission-ready formats. Standards and Compliance: Familiarity with relevant standards for medical device cybersecurity: FDA Premarket Guidance for cybersecurity risk management. ISO 13485 for quality system integration. IEC 62304 for secure software lifecycle processes. Communication and Collaboration: Strong ability to work cross-functionally with engineering, regulatory, and quality teams to ensure submission documentation meets all regulatory requirements. Experience presenting and defending cybersecurity strategies and documentation during audits or regulatory reviews.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:04 min

Replacing complex wireless networking with web bluetooth connections

George Cave · WWC 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

6:47 min

Designing an event-based microservices architecture

Martin Nader · LIVE

3:10 min

Navigating medical device certification and clinical trials

Alexandre Guenoun Alexandre Guenoun +3 · WWC Europe 2026

4:15 min

Modulating music tempo with Web Bluetooth API

Rowdy Rabouw Rowdy Rabouw · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all