More jobs:
Product Cybersecurity Architect
Job in
Bridgewater, Somerset County, New Jersey, 08807, USA
Listed on 2026-07-16
Listing for:
Bausch + Lomb
Full Time
position Listed on 2026-07-16
Job specializations:
-
IT/Tech
Cybersecurity
Job Description & How to Apply Below
Our comprehensive portfolio of over 400 products is fully integrated and built to serve our customers across the full spectrum of their eye health needs throughout their lives. Our iconic brand is built on the deep trust and loyalty of our customers established over our 170-year history. We have a significant global research, development, manufacturing and commercial footprint of approximately 13,000 employees and a presence in approximately 100 countries, extending our reach to billions of potential customers across the globe.
We have long been associated with many of the most significant advances in eye health, and we believe we are well positioned to continue leading the advancement of eye health in the future.
** Why this Role Matters*
* Join the Surgical R&D organization in a role where you will help ensure the cybersecurity, safety, and reliability of innovative surgical products that support patient care. In this position, you will be responsible for embedding secure-by-design practices throughout the product lifecycle while partnering with engineering, quality, regulatory, and corporate security teams to deliver compliant and resilient solutions. This is a strong opportunity for someone who brings deep product security expertise, strong cross-functional collaboration skills, and a passion for advancing cybersecurity within a regulated medical device environment.
** What You'll Do*
* + Architect and implement a consistent cybersecurity strategy across surgical capital equipment product lines to establish a scalable and secure product ecosystem.
+ Embed secure-by-design principles throughout the product lifecycle, providing guidance on secure architecture, threat modeling, design controls, cryptography, and secure communication protocols.
+ Lead execution of cybersecurity requirements across development programs, ensuring alignment with regulatory expectations, corporate standards, and product quality objectives.
+ Coordinate vulnerability management activities, including intake, triage, risk assessment, remediation tracking, and documentation of product security issues through closure.
+ Serve as the Surgical R&D cybersecurity representative for vulnerability disclosure and incident response activities, supporting investigations, impact assessments, root cause analyses, and remediation efforts.
+ Partner with engineering teams to implement security testing practices, including SAST, DAST, SCA, penetration testing, and automated security controls within development pipelines.
+ Support supplier and third-party security initiatives by defining security requirements, managing software supply chain risks, and maintaining Software Bill of Materials (SBOM) processes.
+ Collaborate with Quality, Regulatory Affairs, IT, and Corporate Product Security teams to ensure compliance with evolving cybersecurity regulations and industry standards while enabling efficient product delivery.
** What You'll Bring*
* ** Required
Education & Experience:
*
* + Bachelor's degree in Engineering, Computer Science, Cybersecurity, or a related technical discipline.
+ 7+ years of experience in product security, application security, medical device cybersecurity, or software security within a regulated environment.
+ Demonstrated experience supporting or leading cybersecurity activities for medical device or other regulated product development programs.
+ Strong communication, collaboration, stakeholder management, and problem-solving skills.
+ Ability to translate technical cybersecurity risks into clear, actionable guidance for engineering, quality, and regulatory stakeholders.
** Specialized Technical, Regulatory & Industry Skills & Knowledge*
* + Strong expertise in secure product design, threat modeling, vulnerability management, and secure software development practices.
+ Working knowledge of connected device security, embedded systems, and software-enabled product architectures.
+
Experience with security testing tools and methodologies, including SAST, DAST, SCA, and penetration testing.
+ Understanding of software supply chain security practices, including SBOM development and third-party risk management.
+ Experience working across cross-functional and global teams to drive cybersecurity outcomes and influence stakeholders without direct authority.
+ Knowledge of secure development lifecycle (SDLC) frameworks, vulnerability disclosure processes, and product incident response activities.
+ Familiarity with cybersecurity governance, risk assessment, and compliance processes within regulated industries.
** Preferred*
* + Advanced degree in Cybersecurity, Computer Science, Engineering, or a related field.
+ Relevant industry certifications such as CISSP, CSSLP,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×