Sr. Staff Engineer

Posted 11 Hours Ago
Be an Early Applicant
Bengaluru, Bengaluru Urban, Karnataka, IND
In-Office
Senior level
Healthtech • Other • Robotics • Biotech • Manufacturing
Together with our customers, we're on a mission to make healthcare better.
The Role
Lead design and continuous improvement of vulnerability management for medical devices: develop SBOM and configuration management, run vulnerability assessments and penetration tests across embedded, web, and mobile, embed DevSecOps into SDLC, guide product teams on remediation and risk, apply NIST/ISO frameworks, and communicate findings to leadership.
Summary Generated by Built In
Work Flexibility: Hybrid

Who We Want:

The Product Security Engineer will be a valued professional within the Stryker organization. They will lead efforts to design, execute, and continually improve the effectiveness of the vulnerability management processes for Stryker products. This Engineer will develop strategies and plans to create, sustain, and optimize the various aspects of vulnerability management including roles, processes, and technologies for Stryker medical devices and advanced solutions. This role will develop and optimize automated solutions for the generation of software bills of material, continuous vulnerability monitoring, and vulnerability resolution processes throughout the product lifecycle.

What You Will Do:

  • Create and own strategies that prioritize objectives for creating effective vulnerability management processes across the entire lifecycle of medical device and associated solutions.
  • Develop efficient solutions for determining the disposition of vulnerabilities produced through internal assessments and analysis efforts throughout the product lifecycle.
  • Guide product development teams in completing overall vulnerability management procedures within a defined security risk management process.
  • Work with product teams and product security services teams to develop and optimize the generation, repositories, and version management of software bills of material (SBOM) for a variety of medical device technologies.
  • Design and implement SBOM configuration management solutions to enable continuous vulnerability management processes.
  • Develop and own the policy and process of coordinated vulnerability disclosure.
  • Review current state and desired state of vulnerability assessment capabilities to define a roadmap needed improvements.
  • Work with tool vendors to develop and implement vulnerability management solutions associated with in-market medical devices and health software products.
  • Develop standards and internal guidance for the timeliness of security patches for medical products and related systems.
  • Apply regulatory guidance and industry best practices to drive strategies for product security procedures and work instructions.
  • Provide product security guidance and leadership to internal taskforce teams.
  • Collaborate with product teams to assess security risks and drive design decisions for new products and related systems based on vulnerability assessment results.
  • Develop and deliver presentations and communications to clearly convey security topics up to the senior leadership level.
  • Collaborate with Stryker enterprise functions to leverage domain expertise and capabilities and identify areas of opportunity.
  • Recommend efficiency and process improvements to product security capabilities and functions.
  • Manage all facets of Vulnerability Assessment and Penetration testing involving embedded devices, Web and Mobile based Applications.
  • Perform attacks and identify vulnerabilities on interfaces like USB, WiFi. Ethernet etc.
  • Perform manual and automated security code review for complex Desktop, Web and Mobile applications to identify security flaws.
  • Leverage DevSecOps to embed security testing into all phases of SDLC.
  • Provide support/inputs in issue remediation.
  • Prepare Test Plans and Test Reports to support test activities.

Knowledge and Capabilities:

  • Demonstrated knowledge of various vulnerability management aspects including SBOM generation, vulnerability assessments, threat modeling, security risk assessment processes, and security patching best practices.
  • Proficient in identifying security vulnerabilities across several areas of computing such as cloud, distributed applications, embedded systems, or IOT.
  • Thorough understanding of the current revisions of NIST, ISO, and other related security frameworks especially those that apply to vulnerability management.
  • Proven experience building successful working relationships with internal and external personnel in various departments.
  • Expertise in applying security control frameworks, security risk assessments, and scoring the severity of security threats and vulnerabilities.
  • Proficient in using one or more vulnerability scanning tools.
  • Proven expertise working with product development teams in a broad number of computing environments.
  • Excellent written and verbal communication skills.
  • Proven ability to facilitate meetings to accomplish goals and objectives in a collaborative environment.
  • Proven ability to develop and analyze procedural documents and associated artifacts.
  • Demonstrated ability to understand and communicate how objectives fit into broader organizational goals, prioritize tasks, and develop timelines and work estimates.

What You Will Need:

  • Bachelor's Degree in product security, computer science, mathematics, statistics, or related field
  • 10+ years of applicable (product) security work experience required.

Preferred Qualifications:

  • Master's Degree in security related discipline preferred.
  • Understands security risk management processes preferably in the healthcare or medical device industry.
  • Direct experience working in a product focused vulnerability management process.
  • One or more active, industry recognized, and relevant cybersecurity certifications.

Travel Percentage: 10%

Skills Required

  • Bachelor's Degree in product security, computer science, mathematics, statistics, or related field
  • 10+ years of applicable product security work experience
  • Experience with SBOM generation, repositories, and configuration management
  • Experience designing and operating vulnerability management processes and coordinated disclosure
  • Experience performing vulnerability assessment and penetration testing for embedded devices, web, and mobile applications
  • Proficiency with one or more vulnerability scanning tools
  • Experience with manual and automated security code review for desktop, web, and mobile applications
  • Experience applying NIST, ISO, or similar security frameworks to vulnerability management
  • Experience embedding security testing into SDLC using DevSecOps practices
  • Ability to communicate security topics and present to senior leadership
  • Master's Degree in a security-related discipline
  • Experience in healthcare or medical device industry security risk management
  • One or more active, industry-recognized cybersecurity certifications

Stryker Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Stryker and has not been reviewed or approved by Stryker.

  • Healthcare Strength Multiple medical plan options with HSA support and global mental‑health access indicate broad, accessible care. These features materially enhance the overall value of the total‑rewards package.
  • Retirement Support A meaningful 401(k) company match with potential additional company contribution, alongside an ESPP, supports long‑term savings and wealth building. Documented plan specifics help employees understand eligibility, timing, and vesting mechanics.
  • Parental & Family Support Paid parental and caregiver leave, adoption and surrogacy assistance, and practical supports like breast milk shipping reflect a comprehensive, family‑friendly approach. These offerings address varied family‑building paths and caregiving needs.

Stryker Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Portage, MI
51,000 Employees
Year Founded: 1941

What We Do

Stryker is a global leader in medical technologies and, together with its customers, is driven to make healthcare better. The company offers innovative products and services in MedSurg, Neurotechnology, Orthopaedics and Spine that help improve patient and healthcare outcomes. Alongside its customers around the world, Stryker impacts more than 130 million patients annually. More information is available at www.stryker.com. Together with our customers, we are driven to make healthcare better.

Gallery

Gallery

Similar Jobs

Uniphore Logo Uniphore

Staff Software Engineer

Artificial Intelligence • Machine Learning
In-Office
Bangalore, Bengaluru Urban, Karnataka, IND
465 Employees

Celonis Logo Celonis

Staff Software Engineer

Big Data • Information Technology • Productivity • Software • Analytics • Business Intelligence • Consulting
Hybrid
Bangalore, Bengaluru Urban, Karnataka, IND
3000 Employees

ServiceNow Logo ServiceNow

Software Engineer

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Hybrid
Bangalore, Bengaluru Urban, Karnataka, IND
29000 Employees

ServiceNow Logo ServiceNow

Staff Software Engineer

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Hybrid
Bangalore, Bengaluru Urban, Karnataka, IND
29000 Employees

Similar Companies Hiring

Fairly Even Thumbnail
Hardware • Robotics • Sales • Software • Hospitality
New York, NY
30 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees
LTX Thumbnail
Robotics • Conversational AI • Generative AI
Jerusalem, Israel
300 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account