We don’t just build technology. We build hope.
Do you wish you could make a bigger impact?
At Elekta, our product security team protects our customer systems across the globe ensuring patient data is secured and safe to achieve medical device intended use from concept to end of life.
This is a hands-on security engineer role reporting to the Chief Product Security office / Head of Product security. You will be part of the security team applying your software engineering, security analysis, penetration testing, DevOps, and requirement definition experience working in a consultative manner embedded with multiple software and hardware development teams.
Ideal candidates should be self-motivated, thrive in a fast-paced environment and always searching for a better way. The ideal candidate will have previous IT Security experience, software development, and/or DevOps build experience.
This is a hybrid work environment requiring 3 days on site based on the teams supported.
If you are creative, smart, and motivated by continual technical skill growth, we’d like to talk to you.
What you’ll do at Elekta
Your responsibilities will include (but not limited to)
1. Bring technical security skills to support multiple stakeholders such as Architecture, Engineering, IT, and Testing teams to implement security capabilities.
2. Develop deliverables to meet medical device regulatory requirements globally.
3. Implement end to end medical device risk assessments in alignment with SW96 risk assessment.
4. Perform in depth analysis of the security posture of hardware and software products independently and as part of engineering teams.
5. Develop cybersecurity requirements for medical devices.
6. Execution of vulnerability assessments, penetration tests and secure code scanning.
7. Track vulnerabilities identified in development, testing, and post market monitoring and work resolutions and mitigations.
8. Respond to cybersecurity questionnaires from customers.
9. Support global teams for cybersecurity related requests.
10. Serve as a cybersecurity subject matter expert for software teams and the local site.
11. Analyze Security incidents to determine root cause.
12. Keep up-to-date on emerging cybersecurity technologies and trends.
The right stuff
1. Familiarity with cybersecurity-related guidance from FDA 524B, MDR, IEC/ISO, NMPA, ISO27001, and NIST.
2. Understanding of the secure development lifecycle of medical devices and software, including knowledge of secure coding techniques and good practice and OWASP.
3. Experience in an FDA/MDR-regulated field (Medical Device/Pharmacy) is a plus, but not required.
4. Experience in a DevSecOps role is a plus, but not required.
5. Threat hunting experience is a plus.
6. Security certifications from organizations such as (ISC2) and CompTIA are a plus, but not required.
What you bring
1. Bachelor's degree in related area and/or equivalent experience/training.
2. 7+ years of experience in cybersecurity-related job roles, preferably in product security area and IT Security.
3. Experience performing cybersecurity risk assessments and analysis following medical device standards.
4. 3 years of experience working with software development.
5. Experience with Linux, Windows, Citrix, and Network Operating Systems required.
What you’ll get:
In this role, you will work for a higher purpose; hope for everyone dealing with cancer, and for everyone regardless of where in the world, to have access to the best cancer care. In addition to this, Elekta offers a range of benefits.
1. Hybrid work option (you are required to work on location at least 3 days/week)
2. Up to 25 paid vacation days (plus bank holidays)
3. Holiday Purchase Scheme
4. Private Medical Insurance
5. Attractive Employer Pension Contribution Package
6. Cycle to work scheme
7. Life Assurance
8. Onsite subsidized restaurant, offering budget-friendly dining
9. Love electric (Electric vehicle salary sacrifice scheme)
Hiring process
We are looking forward to hearing from you! Apply by submitting your application and résumé in English, via the “Apply” button. Please note that we do not accept applications by e-mail.
Your Elekta contact
For questions, please contact the Global Talent Acquisition Partner responsible, Sarah Elmasry, at Sarah.Elmasry@elekta.com. We do not accept applications through e-mail.
We are an equal opportunity employer
We evaluate qualified applicants without regard to age, race, colour, religion, sex, sexual orientation, gender identity, genetic information, national origin, disability, veteran status, or any other protected characteristic.
#J-18808-Ljbffr