Senior Product Security Specialist

vor 3 Wochen


Frankfurt am Main, Hessen, Deutschland Exocad Vollzeit
Job Summary:

To strengthen our Quality- /Security team at Exocad, we are seeking a Senior Product Security Engineer in Technology Governance and Compliance. The ideal candidate will have a strong background in product security, risk management, and project management. This role will report directly to the Senior Manager, Product Security and will collaborate with the other company-wide Information Security- and other relevant teams to ensure every medical device both hardware and software launched is as secure as it can be and increasing the assurance levels of security in the infrastructure underlying all our products.

Main Responsibilities:
  • Coordinate with cross-functional teams for medical device security requirements throughout the total product lifecycle such as risk assessment, security testing (SAST, DAST, SCA, penetration testing), and publication of product security collaterals.
  • Perform and participate in medical device security risk assessments to include threat modeling, security design controls, mitigations, and publication of assessment reports.
  • Use software tools for automation of processes.
  • Support Regulatory Affairs and Quality Assurance teams with regulatory submissions to include US FDA, EU MDR, Japanese PMDA, China NMPA or other international regulatory bodies.
  • Active engagement with development teams to include review of architecture flows, data flows, and system or software design requirements for compliance with product security regulatory requirements for medical devices.
  • Assess conformance with monitoring and reporting of product security vulnerability management through vulnerability scans, customer complaints, and third parties.

Your Profile and Skills:
  • Bachelor's or master's degree in a relevant field (Cybersecurity/Security, Software Engineer, Computer Engineer, Biomedical Engineer, Risk Management, or others) OR an equivalent combination of education, training, and experience in the medical device industry, preferably with software in a medical device or software as a medical device.
  • Minimum of 7 years of professional experience with any combination of at least 2 technical disciplines, including the following: application security, medical device security, risk management, biomedical engineering, medical device design (SiMD/SaMD), or cloud security.
  • Knowledge of medical device cybersecurity standards such as IEC , IEC TR :2012, FDA Cybersecurity Guidance, or Medical Device Software – Software Life Cycle (ISO processes.
  • Fluent in English with excellent verbal and written communication skills comfortable interacting at all levels of the organization. In addition German skills would be a plus.
  • Effective problem-solving skills with particular emphasis on root cause analysis with attention to details.
  • Demonstrated project management and decision-making skills.
  • Experience with regulatory compliance and submissions.
  • Ability to work as a team player to find solutions.
  • Travel: 5% - with some international travel required.

Preferred / would be a plus:
  • Knowledge of application of risk management to medical devices (ISO and/or medical device quality management requirements (ISO
  • Experience working with people across multiple global geographies.
  • Demonstrate knowledge in understanding and applying medical device cybersecurity regulations, standards, and principles such as those published by ISO/IEC, AAMI, HSCC, EU MDR, NMPA, FDA.
  • Information Security professional certification such as CMRP, HCISPP, CISM, CISA, CISSP, CompTIA, CHP, CRMP, and/or other certifications related to cyber forensics, threat intelligence, incident handling or ethical hacking.
  • A passion for self-improvement through learning in all disciplines– but especially in information technology – and discovering how to apply that knowledge to better assess risk in software in a medical device or software as a medical device.

What we offer you ...
  • Exciting and varied activities in a dynamic and growth-oriented software company
  • Open-door policy and responsive, agile approach to decision making
  • Positive working atmosphere that promotes both individual freedom and responsibility
  • Strong team spirit and very good working atmosphere
  • Modern offices and workstations, working with the latest technologies
  • Flexible working hours
  • Hybrid work, Tuesday till Thursday are office days, Monday and Friday home office is possible
  • Training opportunities
  • Company events
  • Sports opportunities and work-life balance
  • Free drinks, fruit and snacks / Canteen with own cook
  • Good transport connections
  • JobTicket/JobBike

Our Mission
exocad's mission is to make high-quality dental restorations accessible to everyone. At exocad you will work on a product that gives people more quality of life every day. exocad offers you a very interesting working environment in one of the market-leading software companies in the dental industry.

  • Frankfurt am Main, Hessen, Deutschland Exocad Vollzeit

    Job Title: Senior Product Security SpecialistWe are seeking a Senior Product Security Specialist to strengthen our Quality- /Security team at Exocad. As a key member of our team, you will be responsible for ensuring the security of our medical devices throughout their entire lifecycle.Main Responsibilities:Coordinate with cross-functional teams to identify...


  • Frankfurt am Main, Hessen, Deutschland Exocad Vollzeit

    Job Title: Senior Product Security EngineerWe are seeking a Senior Product Security Engineer to strengthen our Quality- /Security team at Darmstadt. As a Senior Product Security Engineer, you will be responsible for ensuring the security of our medical devices and software.Main Responsibilities:Coordinate with cross-functional teams for medical device...


  • Frankfurt am Main, Hessen, Deutschland Exocad Vollzeit

    We are seeking a highly skilled Senior Product Security Engineer to join our team at Exocad. As a key member of our Quality- /Security team, you will play a crucial role in strengthening our security posture and ensuring the highest level of security for our medical devices. Main Responsibilities: Coordinate with cross-functional teams to ensure medical...


  • Frankfurt am Main, Hessen, Deutschland Ratiodata GmbH Vollzeit

    Wir suchen dich als Senior Network Security SpecialistUnsere Netzwerk-Security-Abteilung ist auf der Suche nach einem erfahrenen Security Engineer, der sich auf die Weiterentwicklung und Betreuung unserer f5-Umgebungen spezialisiert hat.Deine Aufgaben:Betreuung und Weiterentwicklung von f5-Umgebungen (LTM / ASM / AFM)Konfiguration von Services, Bewertung von...


  • Frankfurt am Main, Hessen, Deutschland Exocad Vollzeit

    About the Role:We are seeking a highly skilled Senior Product Security Engineer to join our team at Exocad. As a key member of our Technology Governance and Compliance team, you will play a crucial role in ensuring the security of our medical devices.As a Senior Product Security Engineer, your primary responsibility will be to analyze data, identify trends,...


  • Frankfurt am Main, Hessen, Deutschland ITL Germany Vollzeit

    Job Title: Senior Network Infrastructure SpecialistJob Description: At ITL Germany, we are seeking a highly skilled Senior Network Infrastructure Specialist to join our team.As a Senior Network Infrastructure Specialist, you will be responsible for designing, implementing, and maintaining our network infrastructure.Key Responsibilities:* Design and implement...


  • Frankfurt am Main, Hessen, Deutschland 360T Vollzeit

    About the RoleWe are seeking a highly motivated and experienced Information Security Specialist to join our team at 360T. As a key member of our Information Security and Data Protection Team, you will be responsible for ensuring the security and integrity of our systems and data.Key ResponsibilitiesDevelop and implement security policies and procedures to...


  • Frankfurt am Main, Hessen, Deutschland NVISO Vollzeit

    About the RoleWe are seeking a highly skilled Cyber Security Specialist to join our team at NVISO. As a SOC Professional Service SOAR Consultant, you will play a key role in assisting our customers with the identification and creation of SOAR automations.Key ResponsibilitiesIdentify customer needs and structure analysis steps into automated...


  • Frankfurt am Main, Hessen, Deutschland Fortinet Vollzeit

    About the Role:We are seeking a highly skilled Network Security Specialist to join our team at Fortinet. As a key member of our Professional Services team, you will be responsible for delivering technical expertise and support to our customers.Key Responsibilities:Develop a thorough understanding of customer engagements, including objectives, project scope,...


  • Frankfurt am Main, Hessen, Deutschland Deutsche Börse AG Vollzeit

    Job Overview Deutsche Börse Group is seeking a highly skilled Cyber Security Specialist to join our team. As a key member of our Group Security department, you will play a critical role in executing our information security strategy and protecting our information assets. Your Key Responsibilities Support the definition of our Threat Modeling program...


  • Frankfurt am Main, Hessen, Deutschland Control Risks Vollzeit

    Cyber Security Risk Assessment SpecialistControl Risks is seeking an experienced Cyber Security Risk Assessment Specialist to join its rapidly growing Digital Risks team. This is a unique opportunity that requires a highly motivated and diligent individual to help deliver Control Risks' cyber security risk assessment engagements primarily across the EMEA...

  • IT Security Specialist

    vor 4 Wochen


    Frankfurt am Main, Hessen, Deutschland deviceTRUST GmbH Vollzeit

    The CompanyWe're looking for a skilled IT security specialist to join our team at deviceTRUST GmbH.Our employees are passionate about creating new solutions and driving our customers' Zero Trust strategies forward.As a key member of our team, you'll help us develop and implement secure digital workspaces that enable our customers to work from anywhere, with...


  • Frankfurt am Main, Hessen, Deutschland NVISO Vollzeit

    About NVISONVISo is a leading provider of cyber security services, dedicated to protecting European society from potentially devastating cyber attacks. Our mission is to offer comprehensive cyber security solutions to private and governmental organizations, empowering them to better prepare for, prevent, detect, and respond to cyber security incidents.Job...


  • Frankfurt am Main, Hessen, Deutschland Kia Europe Vollzeit

    Job Mission: As a Senior Manager Security Audit at Kia Europe, you will be responsible for coordinating the cyber security review of the company either directly or through IT service providers. This includes conducting security risk assessments, identifying threats and vulnerabilities, and presenting recommendations to the company, subsidiaries, affiliate...


  • Frankfurt am Main, Hessen, Deutschland State Street Corporation Vollzeit

    About the RoleState Street Global Markets is seeking an experienced product specialist to serve as lead client services and relationship manager for mandates papered with SSBI GMBH for its Currency Management offering. The role's primary focus is on managing, servicing, and growing existing client relationships. This includes account setup and onboarding...


  • Frankfurt am Main, Hessen, Deutschland 360T Vollzeit

    About the RoleWe are seeking a highly motivated and detail-oriented Information Security Specialist to join our team at 360T. As a Junior Cybersecurity Manager, you will be responsible for ensuring the security and integrity of our systems and data.Key ResponsibilitiesEnsure awareness and alignment on security and data protection topicsExecute and improve...


  • Frankfurt am Main, Hessen, Deutschland Kia Europe Vollzeit

    Kia Europe is seeking a highly skilled Senior Manager Security Audit and Risk Expert to join our Information Security Team.We have an exciting opportunity for a Security Risk Management Specialist to coordinate the cyber security review of company either directly or through IT service providers.Key Responsibilities:Coordinate security trainings & audits for...


  • Frankfurt am Main, Hessen, Deutschland Zero to One search Vollzeit

    Job Title: Digital Product Management SpecialistAbout the Role:We are seeking a skilled Digital Product Management Specialist to join our team at Zero to One search. As a Digital Product Management Specialist, you will be responsible for the technical management of our Banking App, working closely with the IT development team, external partners, and...


  • Frankfurt am Main, Hessen, Deutschland BERSHKA Vollzeit

    Product Presentation Specialist - Bershka FrankfurtWe are seeking a highly skilled Product Presentation Specialist to join our team at Bershka Frankfurt. As a key member of our store team, you will be responsible for creating visually appealing product presentations that showcase our products in the best possible light.Key Responsibilities:Develop and...


  • Frankfurt am Main, Hessen, Deutschland Kia Europe Vollzeit

    Job Mission:As a key member of the Information Security Team at Kia Europe, you will coordinate the cyber security review of company assets, either directly or through IT service providers. This includes conducting security risk assessments, identifying threats and vulnerabilities, and presenting recommendations to the company, subsidiaries, affiliate...