Sr Cybersecurity Specialist
HealthMinds Consulting Private Limited · Bengaluru, Karnataka, India
Hospitals and Health Care · 11-50 employees
About the role
The specialist will technically lead a team in product security, managing vulnerabilities, and creating SBOMs for software components. They will also partner with cross-functional teams to assess risks, prioritize remediation, and automate vulnerability management workflows.
What they look for
Requirements
Candidates must have a bachelor's degree in computer science or software engineering with 12 to 16 years of relevant experience. Proficiency in Python, experience in regulated industries, and knowledge of threat modeling and vulnerability assessment are required.
Full description
Sr Cybersecurity Specialist
JOB DESCRIPTION
Responsibilities may include the following and other duties may be assigned:
· Technically lead a group of engineers working on Product Security, Vulnerabilities, Propose Solutions.
· Create and maintain SBOMs for products and related software components.
· Review, analyze, and triage vulnerabilities identified by SBOM scanning tools.
· Partner with cross-functional teams to assess risk and prioritize remediation efforts.
· Monitor and track vulnerability status to ensure timely and effective resolution.
· Develop or use scripts to automate and improve vulnerability management processes.
· Maintain thorough and accurate documentation of findings, actions taken, and outcomes.
· Provide recommendations for component upgrades based on vulnerability findings and observed trends
Required knowledge and Experience:
· Bachelor’s degree in computer science software engineering or equivalent with 12 to 16 years of relevant experience.
· Prior experience in product security, Threat modelling, Threat analysis, CVSS Scoring.
· Understand product architecture, identify security gaps, propose security enabled technical proposals, Risk assessment.
· Proficiency in Python or another scripting language. Develop Python scripts and automation utilities to improve vulnerability management workflows.
· Experience in vulnerability management. - Vulnerability Assessment & Triage
· Experience working in a regulated industry.
· Familiarity with SBOM management tools such as Dependency-Track.
· Medical Device Cybersecurity Guidance
· Documentation & Audit Readiness
Good to have:
· Experience in medical device cybersecurity or other regulated industries.
· Familiarity with FDA Cybersecurity Guidance, IEC 62304, IEC 81001-5-1, or similar standards.
· Experience supporting product security compliance initiatives.
· Knowledge of software composition analysis (SCA) tools and open-source governance.
Physical Job Requirements The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position.