Own the security and cloud‑connectivity architecture for connected medical devices
Define secure communication protocols, encryption strategies, authentication flows, and patch/update sequences
Lead development of cloud‑based device features, including data ingestion, device identity, and OTA update mechanisms
Establish processes and best practices for secure device connectivity and data protection
Collaborate with cloud infrastructure, cybersecurity, regulatory, and quality teams to ensure compliant and resilient designs
Ensure adherence to IEC 62304, ISO 14971, FDA regulations, and global cybersecurity expectations for medical devices
Contribute to system‑level risk analyses and threat modeling
Mentor engineers in secure cloud design, cybersecurity principles, and regulated‑system development
Drive continuous improvement of security processes, tooling, and lifecycle management
Requirements
Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, or related field
10+ years of software engineering experience (15+ years preferred)
3+ years in a software architect, principal engineer, or cybersecurity-focused technical leadership role
Experience designing secure connectivity for embedded or IoT devices, preferably in regulated industries
Strong understanding of cybersecurity principles: encryption, key management, secure boot, identity management, threat modeling, and secure OTA updates
Proven experience with Class II or Class III medical devices or similarly regulated, high-assurance environments (defense, aerospace, industrial automation, home security systems)
Deep familiarity with one or all of the following: IEC 62304, ISO 14971, ISO 13485, and FDA QSRs
Experience defining security architecture for device-to-cloud systems
Proficiency with Git, requirements management tools (DOORS, Jama), and issue tracking systems (Jira)