More jobs:
Senior Engineer, Product Security
Job in
Irvine, Orange County, California, 92713, USA
Listed on 2026-06-05
Listing for:
Edwards Lifesciences
Full Time
position Listed on 2026-06-05
Job specializations:
-
Engineering
Cybersecurity, Systems Engineer -
IT/Tech
Cybersecurity, Systems Engineer
Job Description & How to Apply Below
Many structural heart patients suffer from heart failure with limited options. Our Implantable Heart Failure Management (IHFM) team is at the forefront of addressing these unmet patient needs through pioneering technology that enables early, targeted therapeutic intervention. Our innovative solutions are not just transforming patient care but also creating a unique and exciting environment for our team members. It’s our driving force to help patients live longer and healthier lives.
Join us and be part of our inspiring journey.
- Help secure a connected medical technology ecosystem spanning cloud platforms, web applications, mobile applications, APIs, data platforms, embedded/sensor-adjacent systems, and AI/ML-enabled capabilities.
- Partner with software engineering, platform architecture, data engineering, Dev Sec Ops , quality, regulatory, and enterprise security teams to embed security into the product development lifecycle.
- Perform security architecture reviews, threat modeling, design reviews, and risk assessments for new product features, platform services, integrations, and data workflows.
- Drive secure‑by‑design practices across application, cloud, data, and device‑connected product development.
- Support implementation and continuous improvement of secure SDLC practices, including SAST, DAST, SCA, secrets detection, container/image scanning, infrastructure‑as‑code scanning, and vulnerability management.
- Help define and maintain product security requirements, standards, procedures, and evidence needed for regulated software development and compliance activities.
- Partner with engineering teams to triage vulnerabilities, prioritize remediation, assess residual risk, and ensure timely closure of security findings.
- Support penetration testing, third‑party assessments, cybersecurity documentation, and product security evidence for regulatory submissions, audits, and customer security inquiries.
- Help mature product security capabilities across cloud security, application security, API security, mobile security, data security, identity/access management, and secure deployment practices.
- Serve as a hands‑on security partner to engineering teams, helping translate security requirements into practical technical solutions without slowing product innovation.
- Bachelor’s degree in engineering or technical field plus 4 years of previous related experience criteria
-or
- Master’s degree in engineering or technical field plus 2 years of previous related experience or equivalent work experience based on Edwards criteria - Experience in product security, application security, cloud security, software security engineering, or secure software development.
- Strong understanding of secure software development lifecycle practices and how to apply them in modern product engineering environments.
- Experience securing cloud‑based applications and services, preferably in AWS, Azure, or GCP.
- Hands‑on experience with threat modeling, security architecture reviews, vulnerability management, and security risk assessments.
- Familiarity with modern application architectures, including APIs, microservices, containers, CI/CD pipelines, infrastructure‑as‑code, and cloud‑native services.
- Working knowledge of common application security risks and frameworks, such as OWASP Top 10, API Security Top 10, CWE, CVSS, and secure coding practices.
- Experience with security testing tools and practices, including SAST, DAST, SCA, secrets scanning, dependency scanning, and penetration testing coordination.
- Ability to partner effectively with software engineers, product managers, architects, Dev Sec Ops , QA, regulatory, and compliance teams.
- Strong written and verbal communication skills, with the ability to explain technical security concepts to both technical and non‑technical stakeholders.
- Ability to balance security risk, product delivery, usability, regulatory expectations, and business priorities in a pragmatic way.
- Experience in regulated industries such as medical devices, digital health, healthcare technology, life sciences, financial services, or aerospace.
- Familiarity…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×