Principal Product Security Engineer, jobs in United States
cer-icon
Apply on Employer Site
company-logo

Baxter International Inc. · 11 hours ago

Principal Product Security Engineer,

Baxter International Inc. is dedicated to redefining healthcare delivery and saving lives. They are seeking a Principal Product Security Engineer to enhance the cybersecurity of their diagnostic cardiology products by driving secure design and influencing architecture throughout the software lifecycle.

BiotechnologyClinical TrialsHealth CareMedical
badNo H1Bnote

Responsibilities

Define and document the security architecture and cybersecurity posture of life‑critical medical products
Lead threat modeling, interface analysis, and secure design reviews across product lines
Author product security whitepapers, technical documentation, and regulatory‑facing materials
Develop Manufacturer Disclosure Statements for Medical Devices (MDS²) and related artifacts
Produce and interpret static code analysis and vulnerability assessment reports
Partner with development teams on security requirements and policies
Establish and drive governance around vulnerability management, from discovery through remediation
Support incident response, investigation, and recovery efforts in collaboration with cross‑functional teams
Use industry‑leading tools (e.g., Tenable Nessus, Fortify, Coverity) to identify, analyze, and mitigate risks
Monitor and assess zero‑day threats and emerging vulnerabilities
Participate in security planning, project scoping, and delivery of security initiatives
Evaluate third‑party and off‑the‑shelf components to ensure secure use

Qualification

CybersecuritySecure software developmentThreat modelingVulnerability assessmentSecure coding practicesRisk assessmentsApplication securityRegulatory complianceTechnical documentationMentoringCollaboration

Required

Bachelor's degree in Computer Science or a related technical field
5+ years of experience working within a secure software development life cycle (SSDLC)
Strong understanding of application security across the full software life cycle
Hands‑on experience developing, reviewing, or enforcing secure coding practices
Familiarity with handling PHI and PII in regulated environments
Experience with threat modeling methodologies such as STRIDE, DREAD, LINDDUN, or PASTA
Proven ability to perform security risk assessments and clearly communicate risk and business impact
Experience analyzing, documenting, and remediating software and system vulnerabilities
Expertise in designing secure networks, systems, and application architectures

Preferred

Familiarity with industry standards and guidance including IEC TR 80001, NIST 800‑53, ISO/IEC 27001 & 27002

Benefits

Medical and dental coverage that start on day one
Insurance coverage for basic life, accident, short-term and long-term disability, and business travel accident insurance
Employee Stock Purchase Plan (ESPP), with the ability to purchase company stock at a discount
401(k) Retirement Savings Plan (RSP), with options for employee contributions and company matching
Flexible Spending Accounts
Educational assistance programs
Paid holidays
Paid time off ranging from 20 to 35 days based on length of service
Family and medical leaves of absence
Paid parental leave
Commuting benefits
Employee Discount Program
Employee Assistance Program (EAP)
Childcare benefits

Company

Baxter International Inc.

company-logo
For nearly a century, we have delivered on our commitment to saving and sustaining the lives of patients, working alongside clinicians and providers around the world.

Funding

Current Stage
Public Company
Total Funding
$2.28B
Key Investors
German Federal Ministry of Education and Research
2025-12-08Post Ipo Debt· $600M
2021-04-21Grant· $1.81M
2019-05-15Post Ipo Debt· $1.68B

Leadership Team

leader-logo
Andrew Hider
President and Chief Executive Officer
linkedin
leader-logo
Giuseppe Accogli
EVP & Chief Operating Officer
linkedin
Company data provided by crunchbase