Auf einen Blick
- Aufgaben: Join us to enhance product security and automate processes in a dynamic, cross-functional team.
- Arbeitgeber: BD is a leader in health technology, committed to innovation and inclusivity.
- Mitarbeitervorteile: Flexible work options (full-time or part-time) and a supportive growth-centered culture.
- Warum dieser Job: Make a real impact in health tech while developing your skills in a collaborative environment.
- Gewünschte Qualifikationen: BS in relevant fields and 3+ years in IT-Security architecture required.
- Andere Informationen: This is a fixed-term contract until 30.09.2025.
Das voraussichtliche Gehalt liegt zwischen 52136 - 72990 € pro Jahr.
Job Description Summary
This position involves improvements and automation in our ROWA department. It\’s a cross-functional position, and we work closely with compliance and regulatory affairs.
This position will involve very technical aspects, compliance, cyber security, and preparation of documents.
We are flexible! This position can be either full-time or part-time according to need and individual agreement.
Job Description
A career at BD means learning and working alongside inspirational leaders and colleagues who are equally passionate and committed to fostering an inclusive, growth-centered, and rewarding culture. You will have the opportunity to help shape the trajectory of BD while leaving a legacy at the same time.
To find purpose in the possibilities, we need people who can see the bigger picture, who understand the human story that underpins everything we do. We welcome people with the imagination and drive to help us reinvent the future of health. At BD, you\’ll discover a culture in which you can learn, grow, and thrive. And find satisfaction in doing your part to make the world a better place.
Become a maker of possible with us!
We are offering more flexibility! This position can be either full-time or part-time based on need and individual agreement.
Responsibilities:
- Educate engineering teams to understand security requirements and find practical solutions on how to implement them into new and existing products.
- Implement software security solutions and architect/design products in accordance with industry-accepted standards for medical device security including encryption, disaster recovery, authentication, audit logging, hardening measures, patch management, and vulnerability monitoring.
- Lead product security risk assessments, hazard analysis, and provide vulnerability remediation guidance and mentoring to product development software engineers both on and off-site.
- Lead technical design reviews.
- Assist product development teams in creating Product Security documentation.
- Assist product development teams regarding the approval of product security documentation in various document management systems.
- Assist product development teams and co-create Threat Models.
- Become a subject matter expert for the security footprint of a product. Manage together with the product development team the security roadmap and keep track of milestones.
- Participate in product security incident response teams.
- Interface with other technical departments such as Penetration Testing Team, Systems, Hardware Engineering, Quality, and technical services.
- Assure adherence to BD development policies and software quality procedures.
- Support the Product Security Documentation process.
- Please note this is a fixed-term contract with End Date – 30.09.2025.
Qualifications:
- BS degree in Computer Science, Computer Engineering, Electrical Engineering, or other related engineering fields, or equivalent work experience required.
- Minimum of 3 years of experience in IT-Security architecture, secure software development, systems & architecture concepts, and designs.
Required Knowledge, Skills, and Attributes:
- Understand different software development methodologies and embed product security milestones into agile and waterfall development principles.
- Practical experience with Project Management.
- Capability to build relationships with key personnel in product development teams.
- Good understanding of technical IT and Cybersecurity aspects and the ability to explain technical risks to both technical and non-technical audiences.
- Solid understanding of IT-Security domains.
- Highly self-organized and ability to work in a complex matrix organization.
- Understanding of networking and related security aspects and common attacks.
- Demonstrated understanding of developing in a regulated environment and adhering to a quality management system.
- Excellent written and verbal communication and interpersonal skills are essential.
- Solid understanding of Microsoft Office products and tools.
Nice-to-Haves:
- Experience with Security tools and distributions (BurpSuite, Nessus, NMAP, etc.).
- Experience with Dynamic and static code analysis tools.
- Knowledge of completing a track trace and plan using a Security Requirements Traceability Matrix (SRTM) or similar tool with the goal of tracking.
- Experience working in a regulated (FDA, MDR) environment with medical instrumentation is a plus.
- Work experience in network security along with networking fundamentals (IP protocol, firewalls, etc.) strongly desired.
- Recognized Security certifications (CISSP, CEH, CSSLP, etc.).
The minimum annual gross salary for this position is €52,136 (IT KV ST1 Regelstufe). Based on individual skills and experience, we offer appropriate additional payment.
Click on apply if this sounds like you!
Becton, Dickinson and Company is an Equal Opportunity/Affirmative Action Employer. We do not unlawfully discriminate on the basis of race, color, religion, age, sex, creed, national origin, ancestry, citizenship status, marital or domestic or civil union status, familial status, affectional or sexual orientation, gender identity or expression, genetics, disability, military eligibility or veteran status, or any other protected status.
To learn more about BD, visit:
Primary Work Location
AUT Vienna – Handelskai
Additional Locations
IRL Limerick – Castletroy
Work Shift
#J-18808-Ljbffr
Product Security Engineer (m/w/d) - Full/Part time Arbeitgeber: Becton, Dickinson and Company
Kontaktperson:
Becton, Dickinson and Company HR Team
StudySmarter Bewerbungstipps 🤫
So bekommst du den Job: Product Security Engineer (m/w/d) - Full/Part time
✨Tip Number 1
Familiarize yourself with the specific security requirements and compliance standards relevant to medical devices. Understanding these regulations will help you demonstrate your expertise during interviews and discussions.
✨Tip Number 2
Network with professionals in the IT security and medical device fields. Attend industry conferences or webinars to connect with potential colleagues and learn about the latest trends and challenges in product security.
✨Tip Number 3
Prepare to discuss your experience with security tools and methodologies, especially those mentioned in the job description. Being able to articulate your hands-on experience will set you apart from other candidates.
✨Tip Number 4
Showcase your ability to communicate complex technical concepts to both technical and non-technical audiences. This skill is crucial for the role, so be ready to provide examples of how you've done this in past positions.
Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: Product Security Engineer (m/w/d) - Full/Part time
Tipps für deine Bewerbung 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and qualifications required for the Product Security Engineer position. Tailor your application to highlight relevant experiences and skills that align with the job description.
Highlight Relevant Experience: In your CV and cover letter, emphasize your experience in IT-Security architecture, secure software development, and any relevant projects you've worked on. Use specific examples to demonstrate your expertise in cybersecurity and compliance.
Showcase Communication Skills: Since the role requires explaining technical risks to both technical and non-technical audiences, make sure to showcase your written and verbal communication skills in your application. Provide examples of how you've successfully communicated complex information in the past.
Tailor Your Documents: Customize your CV and cover letter for this specific position. Use keywords from the job description, such as 'product security documentation' and 'risk assessments', to ensure your application stands out to the hiring team.
Wie du dich auf ein Vorstellungsgespräch bei Becton, Dickinson and Company vorbereitest
✨Understand the Technical Requirements
Make sure you have a solid grasp of the technical aspects mentioned in the job description, such as software security solutions and compliance standards. Be prepared to discuss how your experience aligns with these requirements.
✨Showcase Your Communication Skills
Since the role involves educating engineering teams and explaining technical risks to non-technical audiences, practice articulating complex concepts in simple terms. This will demonstrate your ability to bridge the gap between technical and non-technical stakeholders.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios, especially related to product security risk assessments and vulnerability remediation. Think of examples from your past experiences where you successfully navigated similar challenges.
✨Highlight Your Project Management Experience
Given the emphasis on project management in the role, be ready to discuss your experience managing projects, particularly in regulated environments. Share specific examples of how you ensured adherence to quality management systems and met project milestones.