Sr. Product Security Engineer, Software (On site- San Diego, CA office) jobs in United States
cer-icon
Apply on Employer Site
company-logo

Abbott · 1 month ago

Sr. Product Security Engineer, Software (On site- San Diego, CA office)

Abbott is a global healthcare leader that helps people live more fully at all stages of life. The Sr. Product Security Engineer role focuses on integrating cybersecurity into the product lifecycle, ensuring devices meet regulatory requirements and protect patient safety while working as part of a cross-functional team.

BiotechnologyEmergency MedicineGeneticsHealth CareHealth DiagnosticsManufacturingMedicalMedical DeviceNutritionPharmaceutical
check
H1B Sponsor Likelynote

Responsibilities

Participate in threat modeling and security architecture reviews for embedded medical devices and supporting software
Collaborate with engineering, quality, and regulatory teams to apply secure-by-design principles throughout development
Support risk assessments and contribute to risk mitigation strategies aligned with FDA and international cybersecurity guidance
Implementation of security risk controls and operating system hardening
Assist with penetration testing and vulnerability assessments of firmware, hardware interfaces, and software components
Help define and maintain security requirements, secure coding practices, and design controls
Stay current with emerging threats and vulnerabilities relevant to embedded systems and healthcare technologies
Contribute to regulatory documentation and support audits with evidence of cybersecurity controls
Share cybersecurity best practices with development teams and support internal training efforts
Formulates and implements research and development programs, policies, and procedures required to support profitable growth
Interfaces with appropriate internal and external resources to ensure intellectual property is appropriately protected
Provides technical assistance for diagnosing design and manufacturing quality problems
Guides development and documentation of test plan protocols, standard operating procedures, specifications and test procedures
Complies with U.S. Food and Drug Administration (FDA) regulations, other regulatory requirements, Company policies, operating procedures, processes, and task assignments. Maintains positive and cooperative communications and collaboration with all levels of employees, customers, contractors, and vendors
Contribute to the development of security controls for new and existing embedded diagnostic devices, including secure boot, firmware integrity, authentication, and encryption
Assist in security risk management activities following ISO 14971, IEC 62304, and FDA cybersecurity guidance
Support incident response planning and post-market surveillance for cybersecurity events
Help ensure alignment with Abbott’s Quality Management System (QMS) and contribute to continuous improvement of cybersecurity processes
Apply knowledge of regulatory and industry standards (e.g., NIST CSF, ISO 27001, IMDRF, EU MDR) in day-to-day work
Use your knowledge of programming languages

Qualification

Embedded systemsProduct cybersecurityThreat modelingRisk assessmentSecure coding practicesRegulatory complianceJavaPythonEmbedded LinuxIncident responseVulnerability managementContinuous improvementCommunication skillsTechnical documentationTeam collaboration

Required

Bachelor's degree in Computer Engineering, Computer Science, or related field
5+ years of experience in embedded systems, medical device development, or product cybersecurity

Preferred

Familiarity with FDA cybersecurity guidance, ISO 14971, IEC 62304, and AAMI TIR57/TIR97/SW96
5 years of software development experience and continued education in cyber security (MS, certifications)
Solid understanding of embedded software security, hardware attack surfaces, and secure communication protocols
Experience with threat modeling, risk assessment, and secure development lifecycle (SDLC) practices
Strong communication skills and ability to document technical findings clearly
Experience with Java, Python, and embedded Linux development
Knowledge of cryptographic protocols, secure boot, code signing, and key management
Familiarity with hardware interfaces (e.g., UART, SPI, I2C) and their security implications
Experience with static/dynamic code analysis tools (e.g., SonarQube, Veracode)
Understanding of post market surveillance, vulnerability disclosure, and incident response in regulated environments
Experience in Threat Modeling using tools such as Microsoft Threat Modeling Tool
Understanding of the relationship between threat, vulnerability and potential risk in the context of risk management
Knowledge of national and international regulatory compliances and frameworks such as NIST Cybersecurity Framework, ISO 27001, EU DPD, HIPAA/HITECH
Ability to translate complex IT Security problems and issues into simple business terms/business impact
X.509 certificates and PKI Hierarchy definition and management
Knowledge of industry standards and frameworks such as NIST 800-53, FIPS 140-2/3, Cybersecurity Maturity Model Certification (CMMC), Risk Management Framework (RMF), Authority to Operate (ATO), FISMA, FedRAMP
Certifications such as CISSP, CSSLP, or GICSP are a plus

Benefits

Career development with an international company where you can grow the career you dream of.
Employees can qualify for free medical coverage in our Health Investment Plan (HIP) PPO medical plan in the next calendar year.
An excellent retirement savings plan with a high employer contribution
Tuition reimbursement, the Freedom 2 Save student debt program, and FreeU education benefit - an affordable and convenient path to getting a bachelor’s degree.

Company

Abbott is a healthcare company that produces diagnostic kits, medical devices, nutritional products, and branded generic medicines.

H1B Sponsorship

Abbott has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2021 (1)

Funding

Current Stage
Public Company
Total Funding
$6.79M
2011-03-15Post Ipo Debt· $0.1M
2009-03-16Post Ipo Debt· $6.69M
1980-12-12IPO

Leadership Team

leader-logo
Robert Ford
President & Chief Executive Officer
linkedin
leader-logo
Mike Peterson
Senior Vice President
linkedin
Company data provided by crunchbase