×
Register Here to Apply for Jobs or Post Jobs. X

Lead Product Security Engineer

Job in Danvers, Essex County, Massachusetts, 01923, USA
Listing for: Scorpion Therapeutics
Full Time position
Listed on 2026-03-02
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, IT Consultant
Salary/Wage Range or Industry Benchmark: 80000 - 100000 USD Yearly USD 80000.00 100000.00 YEAR
Job Description & How to Apply Below

Role Summary

Lead Product Security Engineer responsible for owning and driving the product security program across the full product development lifecycle for J&J Heart Recovery devices. You will partner with engineering and cross‑functional teams to ensure security‑by‑design and regulatory compliance, influence development initiatives, and help shape future product development and industry standards. You will work in a Patient First culture to directly impact patient lives.

Responsibilities
  • Partner with engineering and other cross‑functional teams (cloud, console, pump, etc.) to drive successful adherence to J&J Heart Recovery's product security program.
  • Deliver documentation for pre‑market development activities including security plans, architecture and data flow diagrams, threat models, requirements, SBOM, and risk documentation.
  • Define and implement key management infrastructure (PKI, HSMs, TPMs, and secure enclave integration) for device identity, authentication, and software signing.
  • Monitor and drive post‑market vulnerability management activities, with adherence to strict timelines.
  • Support compliance certification activities, such as SOC2, FedRAMP, ISO 27001, etc.
  • Identify, research, evaluate, and integrate new compliance requirements and industry standards/trends into the product security program.
  • Guide teams to make decisions that balance business needs with security objectives.
  • Think across organizational boundaries and empathize with customers, both internal and external.
  • Perform other related duties and responsibilities, as assigned.
Qualifications
  • Required:

    4+ years of industry experience in Information Security.
  • Required:

    Working knowledge of regulatory standards and compliance frameworks (e.g., NIST Cybersecurity Framework, ISO
    27001, SOC2, HIPAA, GDPR).
  • Required:

    Experience with security risk management techniques and tactics.
  • Preferred: FDA‑regulated environment experience.
  • Required:

    Demonstrated organizational skills, attention to detail, the ability to handle multiple assignments simultaneously in a timely manner, and ability to meet deadlines.
  • Required:

    Committed to working with a sense of urgency and embracing new challenges.
  • Required:

    Strong communication and interpersonal skills.
Education
  • Bachelor’s degree in Computer Science, Information Systems, or related field.
Additional Requirements
  • Up to 20% travel.
#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary