Baxter International Inc.

Principle Engineer, Cybersecurity

Baxter International Inc.  •  Republic of India (Onsite)  •  3 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

This is where your work makes a difference.

At Baxter, we believe every person—regardless of who they are or where they are from—deserves a chance to live a healthy life. It was our founding belief in 1931 and continues to be our guiding principle. We are redefining healthcare delivery to make a greater impact today, tomorrow, and beyond.

Our Baxter colleagues are united by our Mission to Save and Sustain Lives. Together, our community is driven by a culture of courage, trust, and collaboration. Every individual is empowered to take ownership and make a meaningful impact. We strive for efficient and effective operations, and we hold each other accountable for delivering exceptional results.

Here, you will find more than just a job—you will find purpose and pride.

Job Description

Your Role at Baxter

This is where your work saves lives.

As a Principal Product Cybersecurity Engineer, you will own and direct the cybersecurity design, architecture, and analysis of medical devices, digital platforms, and connected healthcare solutions. You will serve as a cybersecurity subject matter expert, leading security initiatives from concept through deployment while providing technical leadership and mentorship across cross-functional teams. You will drive cybersecurity strategy, influence technical decision making, and ensure products are designed and maintained in alignment with industry best practices, regulatory expectations, and organizational objectives.

You will contribute to the organization's cybersecurity vision and strategic roadmap, utilizing deep knowledge of medical device security, connectivity, cloud technologies, software development, and risk management to deliver innovative and secure solutions.

What You'll Be Doing

· Lead the implementation of cybersecurity principles as part of the overall architecture for medical devices, connected systems, digital platforms, and hosted solutions.

· Create, own, and maintain security-related documentation including:

· Threat Models and Interface Architecture

· Security Requirements and Architectures

· Security Risk Assessments and Security Risk Analyses

· Data Protection Impact Assessments (DPIAs)

· Product Security Whitepapers

· Manufacturer Disclosure Statements for Medical Devices (MDS2)

· Software Bills of Materials (SBOMs)

· Static Code Analysis Reports and Security Evidence Packages

· Partner with product development teams to establish and maintain cybersecurity requirements, plans, policies, and best practices throughout the product lifecycle.

· Lead threat modeling activities and security architecture reviews for medical devices, software applications, cloud-hosted services, and interconnected systems.

· Perform and guide vulnerability assessments, penetration testing, fuzz testing, secure code analysis, and vulnerability scanning activities.

· Establish governance processes around product vulnerability management and cybersecurity risk management.

· Monitor threat intelligence, analyze emerging threats, CWEs, CVEs, and zero-day vulnerabilities, and assess potential impacts on products and platforms.

· Assess third-party software, open-source components, and off-the-shelf technologies for secure use within Baxter products and solutions.

· Drive cybersecurity improvements across cross-functional teams including Engineering, Quality, Regulatory, Risk Management, Marketing, Clinical, Human Factors, Service, and Compliance.

· Ensure compliance with product development processes, quality systems, design controls, and applicable cybersecurity standards and regulations.

· Support annual security audits and assessments, including SOC 2, HITRUST, and other cybersecurity compliance initiatives.

· Participate in security incident investigations, response activities, and post-incident recovery efforts.

· Interface with regulatory agencies and external stakeholders as needed to represent cybersecurity aspects of Baxter products.

· Contribute to external cybersecurity communications including security bulletins, whitepapers, FAQs, and customer-facing documentation.

· Lead project planning, estimation, and execution of cybersecurity deliverables while mentoring and guiding junior engineers and technical teams.

What You'll Bring

Required Qualifications

· Bachelor's degree in Computer Science, Engineering, Information Security, Mathematics, Information Management, or a related technical discipline; advanced degree preferred.

· 5+ years of experience in software development, cybersecurity engineering, product security, or secure software development lifecycle (SSDLC) activities.

· Strong understanding of application security and secure development practices throughout the software lifecycle.

· Experience addressing OWASP Top 10 vulnerabilities and implementing secure coding practices.

· Experience performing threat modeling, security risk assessments, secure design reviews, and vulnerability analysis.

· Experience with threat modeling methodologies such as STRIDE, DREAD, LINDDUN, PASTA, or similar frameworks.

· Experience with vulnerability scanning, penetration testing, fuzz testing, and secure code analysis tools.

· Experience with security and software analysis tools such as Coverity, Black Duck, Fortify, Nessus, or equivalent technologies.

· Experience analyzing threat intelligence, CVEs, and CWEs and translating findings into actionable product improvements.

· Strong technical writing and communication skills with the ability to communicate effectively to both technical and non-technical audiences.

· Ability to influence technical direction, lead cross-functional initiatives, and drive decisions aligned with business objectives.

Preferred Qualifications

· Experience with cybersecurity requirements for medical devices, connected healthcare systems, cloud platforms, and hosted software applications.

· Familiarity with security, privacy, and risk management frameworks including NIST 800-53, ISO 27001/27002, IEC TR 80001, UL 2900, FIPS 140, ICS-CERT guidance, and privacy-by-design principles.

· Expertise in designing secure networks, systems, cloud architectures, and application ecosystems.

· Security certifications such as CSSLP, CAP, CISSP, or equivalent.

Strong analytical skills, attention to detail, and a demonstrated ability to solve complex cybersecurity challenges.

Equal Employment Opportunity

Baxter is an equal opportunity employer. Baxter evaluates qualified applicants without regard to race, color, religion, gender, national origin, age, sexual orientation, gender identity or expression, protected veteran status, disability/handicap status or any other legally protected characteristic.

Reasonable Accommodations

Baxter is committed to working with and providing reasonable accommodations to individuals with disabilities globally. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the application or interview process, please click on the link here and let us know the nature of your request along with your contact information.

Recruitment Fraud Notice

Baxter has discovered incidents of employment scams, where fraudulent parties pose as Baxter employees, recruiters, or other agents, and engage with online job seekers in an attempt to steal personal and/or financial information. To learn how you can protect yourself, review our Recruitment Fraud Notice.

Baxter International Inc.

About Baxter International Inc.

For nearly a century, we have delivered on our commitment to saving and sustaining the lives of patients, working alongside clinicians and providers around the world. We believe every person — regardless of who they are or where they are from — deserves a chance to live a healthy life, free from illness and full of possibility. At the intersection of progress and purpose is where we are redefining what it means to be a global medtech leader. It is where we are relentlessly pursuing healthcare transformation, fueled by our compassion for patients and providers and the challenges they face. It is where bold ideas meet the promise for meaningful change in the world around us. We are there, at every step of the journey, to help clinicians deliver the best care possible.

Industry
Manufacturing & Production
Company Size
10,000+ employees
Headquarters
Deerfield, Illinois
Year Founded
Unknown
Social Media