job summary: The Product Security Senior Manager will be responsible for implementation of enterprise Product Security strategy and framework throughout organizations medical device portfolio. This includes identifying key strategy and goals, collaborating with internal organizations on existing process and policy enhancements, creating and communicating metrics to senior management, identifying communications plans and raising overall awareness of the capability. Specific responsibilities include supporting throughout a new product's development phases, create and review product security requirements, recommend security design solutions, help complete quality documentation, threat modelling, penetration testing, software architecture review and design recommendations, code analysis and other security testing or work as needed. Experience and Skills: 10 years of IT or cybersecurity experience. A minimum of 10 years of progressive experience in leadership roles within information technology or cybersecurity functions. Threat modeling experience. Data privacy experience, including GDPR and CCPA. Understanding of HIPAA/HITRUST & ISO 27001. Understanding of penetration testing, vulnerability scanning, CVSS and/or other general security testing principles. Ability to work autonomously and proactively seek out security opportunities within organization. Knowledge of traditional and real-time operating systems (i.e. QNX, Windows Embedded) hardening techniques. Ability to create and deliver cybersecurity awareness campaigns and other communications. Ability to translate technical security requirements into solutions. Ability to provide secure coding recommendations. Ability to lead large projects and proven ability to track to project plan timelines from a security perspective. Ability to write technical security requirements for embedded systems and web platforms. Creative problem-solving skills. Customer focus (internal & external). Excellent communication and collaboration skills, able to network, interface and influence at all levels of the organization, cross sector, cross-functionally and globally. strong leadership skills. Preferred Experience leading or participating in formal security audits (i.e. HITRUST, SOC2, FedRAMP). Familiarity with FDA and/or other global regulatory cybersecurity guidance requirements and submission process. Experience with web applications and server hardening (i.e. AWS, Azure) including knowledge of OWASP Top 10 and blue teaming techniques. Software development experience. CISSP or other security certification. MS and/or advanced degree. location: Danvers, Massachusetts job type: Contract salary: $80 - 85 per hour work hours: 8am to 5pm education: Bachelors responsibilities: A core member of the Product Security Team collaborating with cross functional teams to achieve best outcomes through building relationships with various stakeholders. Champion Product Security strategy and objectives within organization. Partner with internal organizations to enhance existing processes and policies. Create and present Product Security metrics to management. Responsible and accountable to implement Product Security governance model in collaboration with various stakeholders for pre and post market medical devices. Perform automated code scanning and coordinate formal security testing. Support customer cybersecurity questionnaires and contractual language for post-market medical devices in close collaboration with a deployment team. Experience utilizing SCA, binary, or other scanning tools or methodologies to compile a Software Bill of Materials (SBOM) and Manufacturer Disclosure Statement for Medical Device Security (MDS2). Other MedTech cybersecurity related duties as needed. Bachelor's degree or equivalent work experience. qualifications: Experience level: ManagerMinimum 10 years of experienceEducation: Bachelors (required) skills: Product SecuritySECURITYSECURITY ENGINEERNetwork Security Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.At Randstad Digital, we welcome people of all abilities and want to ensure that our hiring and interview process meets the needs of all applicants. If you require a reasonable accommodation to make your application or interview experience a great one, please contact HRsupport@randstadusa.com. Pay offered to a successful candidate will be based on several factors including the candidate's education, work experience, work location, specific job duties, certifications, etc. In addition, Randstad Digital offers a comprehensive benefits package, including health, an incentive and recognition program, and 401K contribution (all benefits are based on eligibility).