Auf einen Blick
- Aufgaben: Join us to enhance product security and automate processes in a dynamic team.
- Arbeitgeber: BD is a leader in health technology, committed to innovation and inclusivity.
- Mitarbeitervorteile: Flexible work options available; full-time or part-time based on your needs.
- Warum dieser Job: Make a real impact in health tech while growing your skills in a supportive environment.
- Gewünschte Qualifikationen: BS in Computer Science or related field; 3+ years in IT-Security architecture required.
- Andere Informationen: This is a fixed-term contract until 30.09.2025.
Das voraussichtliche Gehalt liegt zwischen 52136 - 72990 € pro Jahr.
Product Security Engineer (m/w/d) – Full/Part time
Job Description Summary
This position involves improvements and automation in our ROWA department. It\’s a cross-functional position, and we work closely with compliance and regulatory affairs.
This position will involve very technical aspects, compliance, cyber security, and preparation of documents.
We are flexible! This position can be either full time or part time according to need and individual agreement.
Job Description
A career at BD means learning and working alongside inspirational leaders and colleagues who are equally passionate and committed to fostering an inclusive, growth-centered, and rewarding culture. You will have the opportunity to help shape the trajectory of BD while leaving a legacy at the same time.
To find purpose in the possibilities, we need people who can see the bigger picture, who understand the human story that underpins everything we do. We welcome people with the imagination and drive to help us reinvent the future of health. At BD, you’ll discover a culture in which you can learn, grow and thrive. And find satisfaction in doing your part to make the world a better place.
Become a maker of possible with us!
We are offering more flexibility! This position can be either full time or part time based on need and individual agreement.
Responsibilities:
- Educate engineering teams to understand security requirements and find practical solutions on how to implement them into new and existing products.
- Implement software security solutions and architect/design products in accordance with industry accepted standards for medical device security including encryption, disaster recovery, authentication, audit logging, hardening measures, patch management, and vulnerability monitoring.
- Lead product security risk assessments, hazard analysis, and provide vulnerability remediation guidance and mentoring to product development software engineers both on and off-site.
- Lead technical design reviews.
- Assist product development teams in creating Product Security documentation.
- Assist product development teams regarding the approval of product security documentation in various document management systems.
- Assist product development teams and co-create Threat Models.
- Become a subject matter expert for the security footprint of a product. Manage together with the product development team the security roadmap and keep track of milestones.
- Participate on product security incident response teams.
- Interface with other technical departments such as Penetration Testing Team, Systems, Hardware Engineering, Quality, and technical services.
- Assure adherence to BD development policies and software quality procedures.
- Support the Product Security Documentation process.
- Please note this is a fixed term contract with End Date – 30.09.2025.
Qualifications:
- BS degree in Computer Science, Computer Engineering, Electrical Engineering, or other related engineering field or equivalent work experience required.
- Minimum of 3 years of experience in IT-Security architecture, secure software development, systems & architecture concepts, and designs.
Required Knowledge, Skills, and Attributes:
- Understand different software development methodologies and embed product security milestones into agile and waterfall development principles.
- Practical experience with Project Management.
- Capability to build relationships with key personnel in product development teams.
- Good understanding of technical IT- and Cybersecurity aspects and the ability to explain technical risks to technical and non-technical audiences.
- Solid understanding of IT-Security domains.
- Highly self-organized and ability to work in a complex matrix organization.
- Understanding of networking and related security aspects and common attacks.
- Demonstrated understanding of developing in a regulated environment and adhering to a quality management system.
- Excellent written and verbal communication and interpersonal skills are essential.
- Solid understanding of Microsoft Office products and tools.
Nice-to-Haves:
- Experience with Security tools and distributions (BurpSuite, Nessus, NMAP, etc.).
- Experience with Dynamic and static code analysis tools.
- Knowledge of completing a Trace and plan using a Security Requirements Traceability Matrix (SRTM) or similar tool.
- Experience working in a regulated (FDA, MDR) environment with medical instrumentation is a plus.
- Work experience in network security along with networking fundamentals (IP protocol, firewalls, etc.) is strongly desired.
- Recognized Security certifications (CISSP, CEH, CSSLP, etc.).
The minimum annual gross salary for this position is €52.136,- (IT KV ST1 Regelstufe). Based on individual skills and experience, we offer appropriate additional payment.
Click on apply if this sounds like you!
Becton, Dickinson and Company is an Equal Opportunity/Affirmative Action Employer. We do not unlawfully discriminate on the basis of race, color, religion, age, sex, creed, national origin, ancestry, citizenship status, marital or domestic or civil union status, familial status, affectional or sexual orientation, gender identity or expression, genetics, disability, military eligibility or veteran status, or any other protected status.
To learn more about BD visit:
Primary Work Location
AUT Vienna – Handelskai
Additional Locations
IRL Limerick – Castletroy
Work Shift
#J-18808-Ljbffr
Product Security Engineer (m/w/d) - Full/Part time Arbeitgeber: Becton Dickinson
Kontaktperson:
Becton Dickinson HR Team
StudySmarter Bewerbungstipps 🤫
So bekommst du den Job: Product Security Engineer (m/w/d) - Full/Part time
✨Tip Number 1
Familiarize yourself with the specific security requirements for medical devices. Understanding the regulatory landscape and compliance standards will help you demonstrate your expertise during interviews.
✨Tip Number 2
Network with professionals in the field of product security, especially those who have experience in regulated environments. Engaging with industry experts can provide valuable insights and potentially lead to referrals.
✨Tip Number 3
Showcase your practical experience with security tools and methodologies relevant to the role. Being able to discuss your hands-on experience with tools like BurpSuite or Nessus can set you apart from other candidates.
✨Tip Number 4
Prepare to discuss how you would approach educating engineering teams about security requirements. Highlighting your communication skills and ability to bridge technical and non-technical audiences will be crucial.
Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: Product Security Engineer (m/w/d) - Full/Part time
Tipps für deine Bewerbung 🫡
Understand the Job Requirements: Carefully read the job description to understand the specific qualifications and skills required for the Product Security Engineer position. Highlight your relevant experience in IT-Security architecture and secure software development.
Tailor Your CV: Customize your CV to reflect your experience with security tools, project management, and your understanding of IT and Cybersecurity aspects. Make sure to include any relevant certifications like CISSP or CEH.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for product security and your ability to educate teams on security requirements. Mention specific examples of how you've implemented security solutions in past roles.
Highlight Soft Skills: Emphasize your excellent communication and interpersonal skills in your application. Provide examples of how you've built relationships with product development teams and explained technical risks to non-technical audiences.
Wie du dich auf ein Vorstellungsgespräch bei Becton Dickinson vorbereitest
✨Understand the Technical Requirements
Make sure you have a solid grasp of the technical aspects mentioned in the job description, such as software security solutions and compliance standards. Be prepared to discuss how your experience aligns with these requirements.
✨Showcase Your Communication Skills
Since this role involves educating engineering teams and interfacing with various departments, demonstrate your ability to communicate complex technical concepts clearly to both technical and non-technical audiences.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios, especially related to product security risk assessments and vulnerability remediation. Think of examples from your past experiences that highlight your expertise.
✨Highlight Your Project Management Experience
Discuss any practical experience you have with project management, particularly in embedding product security milestones into development processes. This will show your capability to manage security within a complex matrix organization.