Jobs · Information Technology · Illinois

Principal Engineer, Product Cybersecurity,

Baxter International Inc. · Round Lake, IL · 3 days ago
Information Technology$120k–$165k/yrFull-time

About the Role

As Principal Engineer, you will own and direct the cybersecurity design and analysis of multiple medical devices. Demonstrate subject matter expert knowledge in state-of-the-art security principles. Resolve difficult problems from conception to final design with team input. Plan, lead, and deliver project assignments in the evaluation, selection, and adaptation of various cybersecurity engineering techniques, procedures, and criteria with minimal guidance. Contribute to a cybersecurity vision that aligns with the organization's vision and strategic plan. Utilize a solid understanding of device and system connectivity concepts in a medical device domain. Provide direction to technical team members accountable for implementing cybersecurity, integration, and connectivity deliverables. Exhibit creativity and innovation in completing divisional and cross-functional/business unit goals and objectives.

Responsibilities

  • Implement proof-of-concept projects to define innovative solutions on platforms/server platforms.
  • Lead implementation of medical device cybersecurity principles as part of an overall security architecture.
  • Create, own, and maintain system requirements, architectures, risk analysis, and other specifications that define the cybersecurity functionality of medical device systems (both embedded and hosted).
  • Create threat models of medical device systems and the interfaces between medical devices.
  • Perform vulnerability scanning of medical device systems and analyze results.
  • Monitor threat intelligence and analyze CWEs and CVEs that affect medical device systems, proposing solutions.
  • Drive cybersecurity improvements through cross-functional teams, primarily software.
  • Lead discussions to resolve competing constraints between interrelated functions (Engineering, Risk Management, Compliance, Clinical, Human Factors, Regulatory, Marketing, Service).
  • Ensure compliance with the product development process, Quality System, and Design Control requirements.
  • Interface with regulatory bodies, representing Baxter and Baxter products, ensuring regional cybersecurity needs are met.

Requirements

  • BS in Computer Science, Engineering, Mathematics, Information Management, or related field with 5+ years of industry experience, or a Master’s with 3+ years.
  • Experience with threat modeling, penetration testing, fuzz testing, vulnerability scanning, and secure code analysis.
  • Experience with cybersecurity-related software such as Blackduck, Coverity, etc.
  • Experience dealing with threat intelligence, CWEs, and CVEs.
  • Familiarity with cybersecurity-related organizations and certifications such as UL (UL-2900), ICS-CERT, FIPS 140, etc.
  • Experience with cybersecurity functionality on embedded systems and hosted software applications.
  • Strong organization and communication skills, with the ability to interface with both technical and non-technical personnel.
  • Ability to convince management on courses of action with minimal assistance using both written and verbal methods.

Applicants must be authorized to work for any employer in the U.S. Baxter is unable to sponsor or take over sponsorship of an employment visa at this time.

Schedule

This role follows a flexible workplace policy, including a minimum of 3 days a week onsite.

Pay

The estimated base salary for this position is $120,000 to $165,000 annually. The range reflects the anticipated salary range for the position, though individual pay may vary based on location, skills, expertise, experience, and other relevant factors. This position may also be eligible for discretionary bonuses.

Benefits

  • Medical and dental coverage starting on day one.
  • Insurance coverage for basic life, accident, short-term and long-term disability, and business travel accident.
  • Employee Stock Purchase Plan (ESPP) with the ability to purchase company stock at a discount.
  • 401(k) Retirement Savings Plan (RSP) with employee contributions and company matching.
  • Flexible Spending Accounts (FSAs).
  • Educational assistance programs.
  • Paid holidays, paid time off (20 to 35 days based on length of service), family and medical leaves of absence, and paid parental leave.
  • Commuting benefits.
  • Employee Discount Program.
  • Employee Assistance Program (EAP).
  • Childcare benefits.

Similar jobs