Salary: £75,000 - 75,000 per year
Requirements
- We require experience in a healthcare or medical device environment.
- We require strong command of NIST 800.
- We require strong experience in cloud security across AWS, Azure, or GCP.
- We require a proven track record managing product security in a regulated healthcare or medical device setting.
- We require familiarity with regulatory and compliance frameworks such as FDA guidance, HIPAA, GDPR, ISO 13485, ISO 14971, AAMI TIR 57, ISO 27001 series, and 21 CFR 820.
- We require technical credibility across cloud architecture, network security, OS hardening in Windows and Linux environments, and secure software development practices.
- We prefer candidates with senior level cybersecurity experience.
- We prefer candidates with experience working in product development environments.
- We prefer candidates who can operate effectively in a tightly regulated industry.
- We prefer candidates who can work hybrid from Edinburgh, with regular office presence.
Responsibilities
- We will have this person own and define the security function within our Edinburgh R&D teams.
- We will rely on this person to guide security decisions across product development, from cloud architecture to vulnerability disclosure.
- We will have this person manage external facing security communications, including customer queries, vulnerability reporting, and incident reporting.
- We will have this person embed security and privacy considerations into product development from the earliest design stages.
- We will have this person run threat assessments and maintain visibility of the risk landscape across assigned products.
- We will have this person serve as our internal cybersecurity expert across product, engineering, and quality discussions.
- We will have this person help keep us aligned with a demanding multi standard regulatory framework.
- We will have this person investigate and resolve security incidents and complaints tied to our product portfolio.
- We will have this person partner closely with product and engineering leadership to shape how security is implemented.
Technologies
- AWS
- Azure
- Cloud
- GCP
- Linux
- Network
- Security
- Windows