Senior Technical Manager, Product Security
Listed on 2025-12-02
-
IT/Tech
Cybersecurity, Information Security, Data Security, IT Consultant
Senior Technical Manager, Product Security
Join to apply for the Senior Technical Manager, Product Security role at BD (Tissuemed Ltd).
BD is one of the largest global medical technology companies in the world. Advancing the world of healthcare is our Purpose, and it’s no small feat. It takes the imagination and passion of all of us—from design and engineering to manufacturing and marketing—to look at the impossible and find transformative solutions that turn dreams into possibilities.
Job DescriptionThe Product Security Office (PSO) ensures product security risks for BD’s software‑based products and solutions are managed well over the lifecycle. The Senior Technical Manager will ensure the latest security requirements and expectations are met for BD’s portfolio of products, reporting to the Product Security Sr. Director. This role works in partnership with R&D, Enterprise Security, Quality, Regulatory Affairs, and leaders at corporate, regional, and business‑unit levels to advance compliance and promote agile management.
RoleResponsibilities
- Collaborate with all levels and geographies within the respective business to advance the product security strategy and objectives within the portfolio.
- Technology Leadership:
Provide guidance and lead execution of security work including architecture analysis & reviews, threat assessment & modeling, implementing security technologies, security vulnerability analysis, SBOM creation and composition, security testing in an agile development environment, and security risk assessments for products and third‑party solution providers. Provide leadership and guidance to Product Security team members on critical security issues, tactical alignment, and pivotal initiatives. - Project Leadership:
Develop comprehensive project plans, including timelines, resources and milestones, ensuring all activities align with project strategy and goals and monitoring to mitigate risks and keep product security initiatives on track. - Risk Management, Quality & Compliance:
Evaluate vulnerabilities and security issues to determine applicability and actual risk given environmental conditions, mitigations and compensating controls, and make recommendations on priorities and acceptance. Assess overall product risk posture. Participate in delivery of all required product security quality and regulatory documentation associated with product launches. - Operational Management:
Ensure that security‑by‑design practices are implemented in the development of products and the associated software environments. - Cross‑Functional
Collaboration:
Work closely with R&D and product teams to evaluate security risk, solutions, and drive security remediations into product releases. Champion initiatives such as demonstrating innovative product security processes & technologies. - Leadership & Management:
Collaborate with or mentor a small team of Product Security Engineers where applicable. Work with cross‑functional teams and stakeholders to ensure projects are meeting technical objectives and deadlines. - Stakeholder Management:
Communicate effectively to ensure alignment with business goals and technical feasibility. Engage in technical discussions with PSO and BD leadership as well as speaking in public forums where applicable. Enable development of Security Champions across the organization. - May perform other duties as required.
- Undergraduate or Graduate degree in cybersecurity, computer science, software engineering, or a technical engineering/scientific field.
- Minimum of 6 years in cybersecurity, product security, or security risk management.
- Three (3)+ years in a Product Security and/or Application Development Security function in a regulated environment.
- Hands‑on security engineering experience including threat and vulnerability analysis, Static Code and Software Composition analysis, Dev Sec Ops integration.
- Experience assessing security risks using industry‑standard methods.
- Experience implementing security design, development, validation, and compliance in a regulated environment.
- Experience implementing and demonstrating compliance to security frameworks (NIST 800‑53, IEC 81001‑5, HITRUST,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).