Staff Product Security Engineer
Skillsource is working on behalf of our client, a global leader in advanced medical technology solutions. We are seeking a Staff Product Security Engineer to lead product security strategy, enhance security practices across a diverse product portfolio, and guide engineering teams in delivering secure, compliant, and resilient medical technology products.
This is a senior technical leadership role with significant influence across engineering, quality, regulatory, and IT functions. The position offers the opportunity to shape the future security posture of next‑generation products while safeguarding existing platforms in a rapidly evolving threat landscape.
About the Role
As Staff Product Security Engineer, you will be central to defining, implementing, and maturing the product security strategy across a major product line. You will establish a security‑first culture, embed secure-by-design practices from concept to post‑market, and manage a team focused on risk reduction, regulatory compliance, and continuous improvement.
Working closely with cross‑functional engineering and corporate security teams, you will drive alignment with enterprise security objectives and ensure that products meet the highest cybersecurity, safety, and regulatory standards.
Key Responsibilities
Leadership & Team Development- Lead, mentor, and develop a high-performing Product Security team supporting multiple products.
- Foster a culture of accountability, innovation, and continuous improvement.
- Increase team efficiency and deliver clear, measurable security enhancements across the portfolio.
- Strengthen product resilience by integrating secure-by-design principles, threat modelling, and proactive vulnerability management.
- Translate corporate cybersecurity strategy into practical roadmaps and actionable team plans.
- Monitor and report product security status, using metrics and benchmarks to guide decision‑making.
- Partner with R&D, Quality, Regulatory, IT, and other technical teams to embed security throughout the full product lifecycle.
- Guide engineering teams in interpreting security requirements and implementing practical, compliant solutions.
- Support technical design reviews, architecture assessments, and code inspections.
- Deploy software security solutions aligned with industry standards for medical devices, including:
- Encryption and PKI
- Authentication and audit logging
- Hardening, patching, and configuration management
- Disaster recovery and vulnerability monitoring
- Conduct product security risk assessments and hazard analyses.
- Advise on remediation strategies for identified vulnerabilities.
- Support preparation and maintenance of Product Security documentation, including:
- Standardised security documents
- Incident and Vulnerability Management Plans
- Product Security White Papers
- Use document management platforms such as SAP, SharePoint, and DocuSign.
- Ensure compliance with internal development policies and quality management procedures.
- Contribute to the handling of product security incidents and coordinate with specialised teams including penetration testers, systems engineering, hardware engineering, and quality.
About You
Education & Experience- Bachelors degree in Computer Science, Computer Engineering, Electrical Engineering, or related field (or equivalent experience).
- Minimum 5 years experience in IT security architecture, secure software development, and system design.
- Experience leading and managing technical teams.
- Strong understanding of embedded device security.
- Hands-on experience with cryptography, encryption algorithms, and PKI.
- Proficiency with dynamic and static code analysis tools.
- Solid knowledge of networking, protocols, and modern threat vectors.
- Experience working in regulated environments with robust quality management systems.
- Strong communication and interpersonal skills.
- High level of professionalism and commitment to achieving project outcomes.
- Proficiency with Microsoft Office tools.
- Occasional travel may be required.
- This role requires a minimum on-site presence each week to support collaboration, innovation, and cross-functional communication.
- Applicants must have existing permission to work in Ireland.