Senior Cyber Security Engineer

  • Sivara GmbH
  • Edinburgh, Midlothian
  • 21/06/2026
Full time Information Technology Telecommunications

Job Description

Salary: £75,000 - 75,000 per year

Requirements
  • We require experience in a healthcare or medical device environment.
  • We require strong command of NIST 800.
  • We require strong experience in cloud security across AWS, Azure, or GCP.
  • We require a proven track record managing product security in a regulated healthcare or medical device setting.
  • We require familiarity with regulatory and compliance frameworks such as FDA guidance, HIPAA, GDPR, ISO 13485, ISO 14971, AAMI TIR 57, ISO 27001 series, and 21 CFR 820.
  • We require technical credibility across cloud architecture, network security, OS hardening in Windows and Linux environments, and secure software development practices.
  • We prefer candidates with senior level cybersecurity experience.
  • We prefer candidates with experience working in product development environments.
  • We prefer candidates who can operate effectively in a tightly regulated industry.
  • We prefer candidates who can work hybrid from Edinburgh, with regular office presence.
Responsibilities
  • We will have this person own and define the security function within our Edinburgh R&D teams.
  • We will rely on this person to guide security decisions across product development, from cloud architecture to vulnerability disclosure.
  • We will have this person manage external facing security communications, including customer queries, vulnerability reporting, and incident reporting.
  • We will have this person embed security and privacy considerations into product development from the earliest design stages.
  • We will have this person run threat assessments and maintain visibility of the risk landscape across assigned products.
  • We will have this person serve as our internal cybersecurity expert across product, engineering, and quality discussions.
  • We will have this person help keep us aligned with a demanding multi standard regulatory framework.
  • We will have this person investigate and resolve security incidents and complaints tied to our product portfolio.
  • We will have this person partner closely with product and engineering leadership to shape how security is implemented.
Technologies
  • AWS
  • Azure
  • Cloud
  • GCP
  • Linux
  • Network
  • Security
  • Windows