Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Product Security Engineer image - Rise Careers
Job details

Senior Product Security Engineer

Company Description

At Intuitive, we are united behind our mission: we believe that minimally invasive care is life-enhancing care. Through ingenuity and intelligent technology, we expand the potential of physicians to heal without constraints.

As a pioneer and market leader in robotic-assisted surgery, we strive to foster an inclusive and diverse team, committed to making a difference. For more than 25 years, we have worked with hospitals and care teams around the world to help solve some of healthcare's hardest challenges and advance what is possible.

Intuitive has been built by the efforts of great people from diverse backgrounds. We believe great ideas can come from anywhere. We strive to foster an inclusive culture built around diversity of thought and mutual respect. We lead with inclusion and empower our team members to do their best work as their most authentic selves.

Passionate people who want to make a difference drive our culture. Our team members are grounded in integrity, have a strong capacity to learn, the energy to get things done, and bring diverse, real world experiences to help us think in new ways. We actively invest in our team members to support their long-term growth so they can continue to advance our mission and achieve their highest potential.

Join a team committed to taking big leaps forward for a global community of healthcare professionals and their patients. Together, let's advance the world of minimally invasive care.

Job Description

Primary Function of Position:

The Sr Product Security Engineer will contribute broadly to the Product Security Team and product development groups by conducting security testing and review of Intuitive Surgical products. The primary functions of the position include validation and verification of the security solutions and features in our current and next generation surgical robotic systems. The successful candidate must excel in a high-energy team environment and have a commitment to high product quality throughout the product lifecycle.

Responsibilities:

  • Development of product security design validation and verification methodologies.
  • Develop and execute product security test strategies and test plans.
  • Contribute to security evaluation and threat assessments of a wide range of Intuitive Surgical products.
  • Document and verify the existing security mitigations and identify if additional mitigations are required for Intuitive Surgical products.

Qualifications

Required Skills and Experience

  • Minimum of 8 years of related experience and a Bachelor’s degree; or 6 years of experience and a Master's degree; or a PhD with 3 years of experience; or equivalent experience
  • In-depth knowledge of security concepts regarding device, operating systems, firmware and software security
  • Minimum of 3 years of experience with C/C++ development and scripting with Python and Bash
  • Experience on security verification and testing associated with device interfaces including USB, JTAG, serial ports, UART, SPI, CANBUS, Ethernet and Wi-Fi
  • Knowledge of TCP/IP, Networking and Public key cryptography
  • Experience on security validation and verification practices, techniques, and tools such as Kali Linux, Wireshark, nmap, and Metasploit
  • Experience with secure coding practices, code reviews and vulnerability triage
  • Familiarity with product security assessments, threat modeling, and risk analysis
  • Security Certifications such as OSCP or CEH is a plus
  • Excellent documentation and communication skills

Preferred Skills and Experience

  • Experience with Medical Device Industry regulations pertaining to Cybersecurity
  • Experience working with third-party penetration testing vendors

Additional Information

Due to the nature of our business and the role, please note that Intuitive and/or your customer(s) may require that you show current proof of vaccination against certain diseases including COVID-19.  Details can vary by role.

Intuitive is an Equal Employment Opportunity / Affirmative Action Employer. We provide equal employment opportunities to all qualified applicants and employees, and prohibit discrimination and harassment of any type, without regard to race, sex, pregnancy, sexual orientation, gender identity, national origin, color, age, religion, protected veteran or disability status, genetic information or any other status protected under federal, state, or local applicable laws.

EEO and AA Policy

We will consider for employment qualified applicants with arrest and conviction records in accordance with fair chance laws.

Preference will be given to qualified candidates who do not reside, or plan to reside, in Alabama, Arkansas, Delaware, Florida, Indiana, Iowa, Louisiana, Maryland, Mississippi, Missouri, Oklahoma, Pennsylvania, South Carolina, or Tennessee.

We provide market-competitive compensation packages, inclusive of base pay, incentives, benefits, and equity. It would not be typical for someone to be hired at the top end of range for the role, as actual pay will be determined based on several factors, including experience, skills, and qualifications. The target salary ranges are listed.

Average salary estimate

$135000 / YEARLY (est.)
min
max
$120000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Product Security Engineer, Intuitive

At Intuitive, we're excited to invite a Senior Product Security Engineer to join our dynamic team in Sunnyvale, CA. As a key player on the Product Security Team, you'll play a vital role in ensuring the security of our groundbreaking surgical robotic systems. Your work will involve diving deep into the nuts and bolts of our products, validating and verifying security solutions, and engaging in robust security testing. We believe that innovation happens when diverse ideas come together, and that's why we value your unique experiences and insights. As you develop and execute product security test strategies, you'll collaborate closely with product development groups while contributing to threat assessments and security evaluations for a wide range of our products. Your expertise in C/C++ development and Python scripting will be instrumental as you document existing security measures and identify potential enhancements. In our high-energy environment, your commitment to product quality and effective communication will ensure you thrive while working with a passionate team focused on making a difference in healthcare. If you're seeking an opportunity to take significant steps forward in a role that values authenticity, integrity, and inclusivity, we would love to see you on our team at Intuitive! Join us as we continue to advance the world of minimally invasive care together.

Frequently Asked Questions (FAQs) for Senior Product Security Engineer Role at Intuitive
What are the responsibilities of a Senior Product Security Engineer at Intuitive?

As a Senior Product Security Engineer at Intuitive, your primary responsibilities will include conducting security testing and reviews of our innovative surgical robotic systems. You'll be responsible for developing product security design validation methodologies, executing test strategies, and contributing to security evaluations and threat assessments. Your role will be essential in documenting existing security mitigations and identifying any additional requirements to enhance the security posture of Intuitive products.

Join Rise to see the full answer
What qualifications are needed to apply for the Senior Product Security Engineer position at Intuitive?

To qualify for the Senior Product Security Engineer role at Intuitive, candidates should possess a minimum of 8 years of relevant experience coupled with a Bachelor’s degree—or alternatively, have 6 years of experience and a Master's degree, or a PhD with 3 years of experience. A strong background in security concepts across various technology domains, solid experience with C/C++ and scripting languages such as Python and Bash, as well as familiarity with security validation tools like Kali Linux and Wireshark, are crucial for this role.

Join Rise to see the full answer
What skills should a successful Senior Product Security Engineer at Intuitive have?

Successful candidates for the Senior Product Security Engineer position at Intuitive should have in-depth knowledge of device and operating system security, experience in security verification and testing, and expertise in secure coding practices. Proficiency with communications interfaces and networking, including USB and Wi-Fi security, along with related certifications such as OSCP or CEH, will enhance your candidacy for this vital role.

Join Rise to see the full answer
What does the work environment look like for a Senior Product Security Engineer at Intuitive?

The work environment for a Senior Product Security Engineer at Intuitive is collaborative and high-energy, emphasizing teamwork and innovation. We pride ourselves on fostering an inclusive culture where diverse backgrounds and ideas thrive. You will work closely with talented colleagues who are driven by a shared passion for advancing healthcare technology in a supportive environment that values your authenticity and integrity.

Join Rise to see the full answer
What opportunities for growth exist for a Senior Product Security Engineer at Intuitive?

At Intuitive, we are committed to investing in our team members’ long-term growth. As a Senior Product Security Engineer, you will have the opportunity to expand your skill set and advance your career through ongoing training, mentorship programs, and exposure to cutting-edge technologies in medical device cybersecurity. With a strong emphasis on professional development, you can achieve your career aspirations while making a significant impact on healthcare innovations.

Join Rise to see the full answer
Common Interview Questions for Senior Product Security Engineer
Can you describe your experience with security testing in robotic systems?

When answering this question, focus on specific projects where you conducted security testing on robotic systems. Highlight the methodologies you used, the challenges you faced, and how you collaborated with cross-functional teams to improve security outcomes.

Join Rise to see the full answer
What security frameworks and standards do you find most effective for secure coding?

Discuss recognized security frameworks and coding standards relevant to the industry, such as OWASP or NIST guidelines. Emphasize how these frameworks influence your coding practices and decision-making processes to enhance software security.

Join Rise to see the full answer
How do you approach threat modeling during the product development lifecycle?

Detail your approach to threat modeling, including the tools you use and key steps in the process. Explain how you identify potential vulnerabilities, assess risks, and communicate findings to technical teams to mitigate threats effectively.

Join Rise to see the full answer
What tools have you used for security validation and what was your experience with them?

Be specific about the security validation tools you've used, such as Kali Linux or nmap, and explain scenarios where these tools helped you identify vulnerabilities. Share any lessons learned and improvements you made to processes based on your experience.

Join Rise to see the full answer
Discuss a challenging security issue you faced and how you resolved it.

Select a specific challenge that emphasizes your problem-solving skills. Explain the problem, your thought process, the solution you implemented, and the outcome. Highlight any collaboration with other teams that contributed to a successful resolution.

Join Rise to see the full answer
How do you stay updated with the latest cybersecurity threats and technologies?

Explain your strategies for staying informed about current cybersecurity threats and trends, such as subscribing to industry publications, attending conferences, engaging in forums, or collaborating with industry peers. This shows your commitment to ongoing education and adaptability.

Join Rise to see the full answer
What role does communication play in your approach to security within a team?

Emphasize the importance of clear communication in ensuring that security practices are understood and implemented effectively across teams. Discuss how you tailor your communication style to different audiences, whether they be technical or non-technical.

Join Rise to see the full answer
What is your experience with third-party security evaluations?

Discuss any relevant experiences you have working with third-party vendors or penetration testing services. Focus on what you learned from these engagements and how they influenced your security strategies or practices within your organization.

Join Rise to see the full answer
Can you give an example of how you implemented security best practices in a previous role?

Provide a specific example that illustrates your ability to implement security best practices effectively. Discuss the initial challenges, your approach to addressing them, and the lasting impact of your actions on the organization.

Join Rise to see the full answer
What do you believe are the biggest challenges currently facing product security in the medical device industry?

Share your insights on the current landscape of product security in the medical device industry, discussing issues like regulatory challenges, evolving threat vectors, and the need for secured, compliant systems. This demonstrates your awareness of industry trends and potential obstacles.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
ITW Hybrid 19875 S Diamond Lake Rd, Rogers, MN 55374, USA
Posted 10 days ago
Photo of the Rise User
Posted 14 days ago
Photo of the Rise User
Fluence Hybrid Houston, TX, USA
Posted 11 days ago
Photo of the Rise User
Mission Driven
Social Impact Driven
Passion for Exploration
Reward & Recognition
Photo of the Rise User
Techo-Bloc Hybrid Douglassville, PA 19518, USA
Posted 9 days ago
Photo of the Rise User
Posted 12 days ago
Posted 7 days ago

Founded in 1995, Intuitive Surgical, Inc develops, manufactures and markets robotic technologies designed to improve clinical outcomes and help patients return more quickly to active and productive lives. The company is headquartered in Sunnyvale,...

127 jobs
MATCH
Calculating your matching score...
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
December 24, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!