Overview
At Spacelabs Healthcare, we are on a mission to provide continuous innovation in healthcare technology for better clinical and economic outcomes. Our scalable solutions deliver critical patient data across local and remote systems, enable better-informed decisions, increase efficiencies, and create a safer environment for patients.
Why work at Spacelabs? Because lives depend on you!
The Spacelabs Privacy and Security Program is a shared service model with responsibility for Cybersecurity and Privacy by Design, compliance, security testing and incident response.
As a Spacelabs Senior Cybersecurity Engineer you are responsible for cybersecurity and privacy functions for our products. The role collaborates with Spacelabs Project Teams to ensure the product privacy and security posture. This role is a trusted collaborator of the Project Teams and works closely with Engineering and Quality/Regulatory functions. This role includes managing.
Responsibilities
- Represent the Spacelabs Cybersecurity and Privacy Team
- Responsible for leading product cross‑functional team members to complete all technical aspects of product cybersecurity tasks and initiatives; be the “Product Owner” for cybersecurity
- Ensure the confidentiality, integrity and availability of Spacelabs cloud products and solutions
- Lead cybersecurity and privacy by design and by default for the assigned projects
- Represent cybersecurity with the product development teams to ensure cybersecurity and privacy is being designed into products
- Represent cybersecurity and privacy in the risk assessment as a subject‑matter expert, including:
- cybersecurity threat management process
- continuous technical analysis and monitoring of cybersecurity signals
- Lead customer cybersecurity and privacy assurance. This includes product security communications content such as:
- product labeling
- completion of security inquiries
- complaint and vulnerability reports
- provide consistent cybersecurity and privacy guidance to Spacelabs and the customer
- Lead cybersecurity and privacy complaint, event and incident investigations for assigned projects
Qualifications
- 10+ years of cybersecurity and privacy compliance
- 5‑10 years of cloud security experience (AWS preferred)
- 5 years’ experience leading product cybersecurity projects and risk management activities – in medical device or healthcare domain (preferred)
- Experience in cross‑functional cybersecurity activities including product defense in depth, security technology, regulatory compliance and incident response
- Domain‑specific standards and approaches on privacy and product security (ISO 2700x, NIST 800 Series special publications)
- Knowledgeable and experienced with laws and regulations on cybersecurity, privacy, data protection and breach notification (FDA cybersecurity guidelines, 95/46/ED, HIPAA, GDPR, ISO 13485, ISO 14971, ISO 27001/27017/27018, ISO 30111, AAMI TIR 57, 21 CFR 820, SB1386, etc.)
- Experience in designing or leading software products using secure SDLC
- Thorough understanding of securing and hardening Windows and Linux operating systems
- Thorough understanding of networking and network security
- Thorough understanding of operating system security (e.g., hardening)
- Thorough understanding of web server security
- Thorough understanding of database security
- Thorough understanding of cloud design and architecture
- Thorough understanding of security by design and by default for cloud solutions (infrastructure, application and operational security)
- Thorough understanding of AWS cloud security best practices
- Cybersecurity training and certification such as CISSP/CISM/CISA, Security +, Cloud Security Alliance, SANS Cloud Security
- Bachelor’s degree plus a minimum of 15 years of related experience or master’s degree plus a minimum of 10 years of related experience, or waiver based on experience
- Degree should be in a technical discipline such as computer science, information security, or cybersecurity or software engineering
#J-18808-Ljbffr…
