Analogdevices
Product Cybersecurity Engineer (Medical Devices)
US, MA, Wilmington
Sponsorship not specified$135k-$202kDetected 7 hours ago
Machine LearningCybersecurityPenetration TestingIncident ResponseComplianceProduct ManagementSupply ChainRoboticsFDA RegulatoryMedical DevicesCommunicationCollaborationWritingCISSP
About the role
- About Analog Devices Analog Devices, Inc. (NASDAQ: ADI ) is a global semiconductor leader that bridges the physical and digital worlds to enable breakthroughs at the Intelligent Edge.
- With revenue of more than $11 billion in FY25, ADI ensures today's innovators stay Ahead of What's Possible.
- Learn more at www.analog.com and on LinkedIn and X.
Responsibilities
- Lead cybersecurity risk management activities throughout the product lifecycle in alignment with FDA guidance and industry best practices.
- Support cybersecurity documentation for FDA regulatory submissions, including cybersecurity risk management files, SBOM requirements, and other regulatory deliverables.
- Conduct security architecture reviews and evaluate system designs against secure architecture principles, cybersecurity frameworks, and regulatory expectations.
- Develop and maintain cybersecurity risk management documentation, vulnerability management processes, and incident response procedures.
- Partner with internal and external teams to integrate secure-by-design principles into product development and lifecycle management activities.
- Participate in secure development lifecycle (SDL/SSDLC) activities, including security requirements definition, design reviews, and cybersecurity verification activities.
- Support SBOM generation, third-party software assessments, and supply chain cybersecurity risk evaluations.
Requirements
- 7+ years of experience in cybersecurity, product security, software security, or related engineering roles.
- Demonstrated experience performing threat modeling for complex systems using methodologies such as STRIDE, attack trees, misuse cases, or equivalent frameworks.
- Experience defining security controls, cybersecurity requirements, and mitigation strategies based on identified threats and risks.
- Familiarity with cybersecurity standards and frameworks such as NIST Cybersecurity Framework, ISO 14971, IEC 62304, AAMI TIR57, and OWASP guidance.
- Experience with vulnerability management, security testing, penetration testing, and remediation processes.
- Familiarity with Software Bill of Materials (SBOM), third-party software risk management, and supply chain cybersecurity concepts.
- Experience integrating cybersecurity requirements into Secure Development Lifecycle (SDL/SSDLC) processes.
- Experience with post-market cybersecurity monitoring, vulnerability disclosure, and incident response processes.
- Required Travel: Yes, 10% of the time
Nice to have
- Master's or Ph.D. degree in Cybersecurity, Computer Science, Computer Engineering, Software Engineering, or a related technical discipline.
- Ph.D. preferred.
Compensation
- $135k-$202k
Benefits
- Perform product security risk assessments and threat modeling for medical devices and SaMD platforms.
- Investigate and support remediation of cybersecurity vulnerabilities affecting medical devices, software platforms, and connected product ecosystems.
- Support internal audits, external assessments, FDA inspections, and cybersecurity reviews related to medical device security and regulatory compliance.
- This position qualifies for a discretionary performance-based bonus which is based on personal and company factors.
- This position includes medical, vision and dental coverage, 401k, paid vacation, holidays, and sick time, and other benefits.
- Actual wage offered may vary depending on work location, experience, education, training, external market data, internal pay equity, or other bona fide factors.
Equal opportunity
- Notice of Applicant Rights Under the Law.
Apply directly at Analogdevices →Create a free account for alerts like thisView Analogdevices immigration profile
This listing is sourced directly from Analogdevices's careers page and normalized into a canonical job model.