Principal Product Security Engineer at Baxter International

Skaneateles, New York, United States

Baxter International Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Healthcare, Medical DevicesIndustries

Requirements

  • Bachelor’s degree in Computer Science or a related field desired
  • 5+ years of secure software development life-cycle experience
  • Solid understanding of application security throughout the software life-cycle
  • Experience in addressing OWASP Top 10 vulnerabilities
  • Experience developing or analyzing secure coding practices with technologies such as ASP.Net (C#), SQL Server, HTML, C++
  • Strong technical writing skills
  • Familiarity with the privacy by design framework
  • Experience with Threat modeling methodologies like STRIDE, DREAD, LINDDUN, or PASTA
  • Experience performing security risk assessments and the ability to communicate impact of risk
  • Experience analyzing and documenting possible vulnerabilities found during development
  • Familiarity with industry standards and guidance such as IEC TR 80001, NIST 800-53, ISO IEC 27001 & 27002, etc
  • Expertise in designing secure networks, systems, and application architectures
  • Certification in security such as CAP, CSSLP, or equivalent desired but not required
  • Keen attention to detail, critical thinking and analytical abilities
  • Proven interpersonal and communication (verbal, written, presentation) skills

Responsibilities

  • Create technical documentation around the security of a product including: Threat modeling and interface architecture, Data Protection Impact Assessment, Product Security whitepapers, Manufacturer Disclosure Statement for Medical Devices, Software Bill of Materials, Static code analysis reports
  • Work collaboratively with the product development teams to establish information security requirements, plans, and policies
  • Establish governance around vulnerability management in products
  • Assist in responses to and recovery from a security breach in conjunction with other team members and business units
  • Use tools (Tenable Nessus, Fortify, Coverity, etc.) to scan for and test possible product vulnerabilities
  • Stay ahead of and advise about industry zero day discoveries and react to assess products
  • Work collaboratively with product teams on annual SOC2 and HiTrust audits for products
  • Investigate security breaches
  • Participate in project planning and scoping of security related deliverables and activities
  • Assess 3rd party and off the shelf components for secure use

Skills

Threat Modeling
Data Protection Impact Assessment
Software Bill of Materials
Static Code Analysis
Vulnerability Management
Tenable Nessus
Fortify
Coverity
Cybersecurity
Product Security

Baxter International

Provides essential medical products and services

About Baxter International

Baxter International provides a wide range of medical products and services essential for healthcare. The company operates in several areas, including critical care, hospital care, nutritional care, renal care, and surgical care. Its products are used in various settings, from emergency rooms to home healthcare, helping to meet the needs of patients and healthcare professionals. Baxter develops, manufactures, and distributes medical devices, pharmaceuticals, and biotechnology products, generating revenue through sales to healthcare providers and institutions. A key aspect that sets Baxter apart from competitors is its recent acquisition of Hillrom, which enhances its ability to offer comprehensive healthcare solutions. The company's goal is to improve care outcomes and increase access to healthcare through continuous innovation and a focus on patient needs.

Deerfield, IllinoisHeadquarters
1931Year Founded
IPOCompany Stage
Biotechnology, HealthcareIndustries
10,001+Employees

Benefits

Health Insurance
Dental Insurance
Life Insurance
Disability Insurance
Health Savings Account/Flexible Spending Account
Unlimited Paid Time Off
Paid Vacation
Paid Parental Leave
401(k) Retirement Plan
401(k) Company Match
Employee Stock Purchase Plan
Commuter Benefits
Mental Health Support

Risks

Needle-free injection technology could disrupt Baxter's traditional injection-based therapies.
Shift to home healthcare may require Baxter to adapt its product offerings.
Growing digital health importance necessitates further investment from Baxter to stay competitive.

Differentiation

Baxter's acquisition of Hillrom enhances its comprehensive healthcare solutions portfolio.
Strong focus on patient-centric innovation sets Baxter apart in the healthcare industry.
Baxter's partnerships, like with Ayogo, leverage digital health for improved patient outcomes.

Upsides

Baxter's investment in Medically Home aligns with the growing home healthcare market.
Rising demand for personalized medicine offers Baxter opportunities for targeted therapies.
Expansion in telehealth supports Baxter's integrated healthcare solutions strategy.

Land your dream remote job 3x faster with AI