Overview
Job Summary
The Werfen Product Privacy and Security Program is a shared service model with responsibility for Cybersecurity and Privacy by Design, Compliance, Security Testing and Incident Response. As a Werfen Product Security Officer you are responsible for cybersecurity and privacy functions for our Products. This role is a trusted collaborator of the Project Teams and works with the Quality and Regulatory functions to ensure the product privacy and security posture.
Responsibilities
Key Accountabilities
- Represent the Werfen Product Privacy and Security Office.
- Responsible for leading Product cross functional team members to complete all technical aspects of product cyber security tasks and initiatives.
- Participate in customer assurance with Quality, Regulatory, Marketing, Services, and the Affiliates. This includes Product Security communications content such as:
- Product Labeling,
- Completion of security inquiries,
- Complaint and vulnerability investigation and reports,
- Provide consistent cybersecurity and privacy guidance to Werfen and Customers.
- Represent cybersecurity and privacy in the Risk Assessment as a subject matter expert including:
Want more jobs like this?
Get jobs in Bedford, MA delivered to your inbox every week.
- Cyber security threat management process,
- Continuous technical analysis and monitoring of cyber security signals.
Networking/Key Relationships
- Provide technical and team leadership to one or more medium project team(s) or a program team, including cyber security consulting, and cyber security technical leadership within the program area. Drive the successful attainment of Product Security program/cyber security project related goals.
- Responsible for product security program communication for both within the product security team, project team(s) and between the team(s) and executive management.
Qualifications
Minimum Knowledge & Experience for the position:
- At least 10 years of cyber security experience, preferably in product development with at least 4 years successful technical leadership, cyber security coordination, or cyber security management are required
- Requires Bachelor’s degree in Business, Computer Science, Computer Engineering or the equivalent combination of related training, proficiency and experience.
- Certification in cyber security e.g. (CISSP/CISM/CISA, Security +; Cisco CCNP Security) preferred.
- Certification in project or program management is desirable.
- Full and comprehensive knowledge of the complete product lifecycle, including all aspects of product development from conception to manufacturing introduction.
Skills & Capabilities:
- Problem solving, conflict management, listening, managing and measuring work
- Quality and Regulatory experience e.g. (510K submissions)
- Knowledge of domain specific standards and approaches on privacy and product security (ISO 2700x, NIST 800 Series Special Publications)
- Knowledgeable and experience with laws and regulations on cyber security, privacy, data protection and breach notification (e.g.: FDA cyber security guidelines, 95/46/ED, HIPAA, GDPR, ISO 13485, ISO 14971. AAMI TIR 57; 21CFR820, SB1386, etc.)
- Experience in designing or leading software products using Secure SDLC.
- Understanding of securing and hardening Windows and Linux operating systems
- Understanding of networking and network security
- Familiarity with agile and project management tools and techniques
- Team player, self-motivated, perseverance
- Strong oral and written skills
Travel Requirements:
- 10% Travel