Talent.com
Senior Product Security Analyst

Senior Product Security Analyst

iRhythm Technologies, Inc.San Francisco, California, United States
12 hours ago
Job type
  • Full-time
Job description

Career-defining. Life-changing.

At iRhythm, you'll have the opportunity to grow your skills and your career while impacting the lives of people around the world. iRhythm is shaping a future where everyone, everywhere can access the best possible cardiac health solutions. Every day, we collaborate, create, and constantly reimagine what's possible. We think big and move fast, driven by our commitment to put patients first and improve lives. We need builders like you. Curious and innovative problem solvers looking for the chance to meaningfully shape the future of cardiac health, our company, and your career

About This Role : Key Responsibilities

FDA Cybersecurity Compliance : Ensure compliance with FDA cybersecurity guidance and regulations in collaboration with Cybersecurity, Regulatory, Quality, and Systems Development teams.

Risk Assessments & CSRAs : Conduct comprehensive security risk assessments, including

Cybersecurity Risk Assessments (CSRAs) , to identify vulnerabilities and threats across device hardware, firmware, software, and cloud components.

Threat Modeling : Develop and maintain device-specific cyber threat models, factoring in patient safety, data privacy, and operational continuity.

SBOM Management : Demonstrate familiarity with Software Bill of Materials (SBOM) and effectively communicate technical details.

Security Documentation : Create and maintain cybersecurity documentation for pre- and post-market activities, ensuring regulatory alignment.

Data Flow Diagrams : Produce detailed data flow diagrams to support the threat modeling process.

Security Design Reviews : Participate in design reviews of medical device architectures and implementations, providing actionable recommendations for system security requirements.

Vulnerability Analysis & Management : Perform and support

vulnerability analysis

and coordinate the vulnerability management program, including scanning, patching, and remediation for medical devices.

Threat Detection Tools : Leverage and maintain

application and threat detection tools

(Veracode, Snyk, GitLab, or equivalent) to identify security flaws early in the SDLC.

Incident Response : Support investigation and remediation of device-related security incidents, minimizing impact and preventing recurrence.

Data Privacy Compliance : Partner with the Privacy Team to ensure adherence to HIPAA, GDPR, and other data protection regulations.

Required Qualifications

Bachelor's degree in Computer Science, Information Security, or related field.

8+ years of experience in information security, with direct focus on

product security for medical devices .

Strong understanding of security principles, methodologies, and tools within the PDLC and SDLC.

Demonstrated experience conducting

Cybersecurity Risk Assessments (CSRAs) ,

vulnerability analysis , and working with modern threat detection tools (Veracode, Snyk, GitLab, or similar).

Familiarity with

NIST Cybersecurity Framework, NIST SP 800-171, and deeper controls / frameworks such as NIST SP 800-53 (Security and Privacy Controls), NIST SP 800-92 (Log Management), and NIST SP 800-63 (Digital Identity Guidelines).

Hands-on experience with vulnerability identification and threat modeling within healthcare using methodologies such as STRIDE.

Experience operating in a regulated environment

(FDA, HIPAA, GDPR, international regulatory frameworks).

Experience with medical device hardware or Software as a Medical Device (SaMD).

Experience with medical device software development and regulatory processes.

Excellent problem-solving, analytical, and communication skills, able to take a multi-siloed approach.

Ability to understand intro dependencies of teams across; mobile applications, hardware and cloud environments.

Proven track record of 510k experience and completion.

Preferred Qualifications

Industry certifications such as CISSP, CISM, CISA, or medical device security-specific certifications.

Experience with international frameworks and standards (EU MDR, JIS T 2304 / IEC 62304).

Understanding penetration testing methodologies and tools, able to work with pen test teams independently with little guidance.

Proficiency with programming languages and technologies commonly used in medical device development.

Location : San Francisco

Actual compensation may vary depending on job-related factors including knowledge, skills, experience, and work location.

Estimated Pay Range

$141,450.00 - $184,000.00

As a part of our core values, we ensure an inclusive workforce. We welcome and celebrate people of all backgrounds, experiences, skills, and perspectives. iRhythm Technologies, Inc. is an Equal Opportunity Employer. We will consider for employment all qualified applicants with arrest and conviction records in accordance with all applicable laws.

iRhythm provides reasonable accommodations for qualified individuals with disabilities in job application procedures, including those who may have any difficulty using our online system. If you need such an accommodation, you may contact us at taops@irhythmtech.com

About iRhythm Technologies

iRhythm is a leading digital healthcare company that creates trusted solutions that detect, predict, and prevent disease. Combining wearable biosensors and cloud-based data analytics with powerful proprietary algorithms, iRhythm distills data from millions of heartbeats into clinically actionable information. Through a relentless focus on patient care, iRhythm's vision is to deliver better data, better insights, and better health for all.

Make iRhythm your path forward. Zio, the heart monitor that changed the game.

There have been instances where individuals not associated with iRhythm have impersonated iRhythm employees pretending to be involved in the iRhythm recruiting process, or created postings for positions that do not exist. Please check any communications to be sure they come directly from @irhythmtech.com email address. If you believe you have been the victim of an imposter or want to confirm that the person you are communicating with is legitimate, please contact taops@irhythmtech.com. Written offers of employment will be extended in a formal offer letter from an @irhythmtech.com email address ONLY.

For more information, see https : / / www.ftc.gov / business-guidance / blog / 2023 / 01 / taking-ploy-out-employment-scams and https : / / www.ic3.gov / Media / Y2020 / PSA200121

#J-18808-Ljbffr

Create a job alert for this search

Senior Product Analyst • San Francisco, California, United States

Related jobs
  • Promoted
  • New!
Security Compliance Senior Analyst

Security Compliance Senior Analyst

CoinbaseOakland, CA, United States
Full-time
Ready to be pushed beyond what you think you're capable of?.At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, ...Show moreLast updated: 22 hours ago
  • Promoted
Senior Security Analyst

Senior Security Analyst

EverlawOakland, CA, United States
Full-time
We're looking for a Security Analyst / Senior Security Analyst to join our corporate Security Operations team and focus on securing our internal corporate systems and infrastructure.This role is cr...Show moreLast updated: 30+ days ago
  • Promoted
Senior Product Security Engineer

Senior Product Security Engineer

CrusoeSan Francisco, CA, United States
Full-time
Senior Product Security Engineer.Crusoe is building the World's Favorite AI-first Cloud infrastructure company.We're pioneering vertically integrated, purpose-built AI infrastructure solutions trus...Show moreLast updated: 30+ days ago
  • Promoted
Senior Product Manager, Agentic Offensive Security

Senior Product Manager, Agentic Offensive Security

hackeroneSan Francisco, CA, United States
Full-time
HackerOne is a global leader in Continuous Threat Exposure Management (CTEM).The HackerOne Platform unites agentic AI solutions with the ingenuity of the world's largest community of security resea...Show moreLast updated: 14 days ago
  • Promoted
  • New!
Senior Product Security Engineer

Senior Product Security Engineer

Tools for HumanitySan Francisco, CA, United States
Full-time
World is a network of real humans, built on privacy-preserving proof-of-human technology, and powered by a globally inclusive financial network that enables the free flow of digital assets for all....Show moreLast updated: 22 hours ago
  • Promoted
Senior Product Analyst

Senior Product Analyst

Owner.comSan Francisco, CA, United States
Full-time
We’re building an effective, impactful Product Analytics function at.As a Senior Product Analyst, you will play a pivotal role in shaping the product roadmap through close collaboration with Produc...Show moreLast updated: 30+ days ago
  • Promoted
Senior Product Security Engineer

Senior Product Security Engineer

GitHubSan Francisco, CA, United States
Full-time
As the global home for all developers, GitHub is the complete AI-powered developer platform to build, scale, and deliver secure software. Over 150+ million developers, including more than 90% of the...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Senior Security Analyst

Senior Security Analyst

Menlo VenturesOakland, CA, United States
Full-time
Security Analyst / Senior Security Analyst.Security Operations team and focus on securing our internal corporate systems and infrastructure. This role is critical in protecting our company's employe...Show moreLast updated: 22 hours ago
  • Promoted
  • New!
Senior Product Analyst

Senior Product Analyst

InkittSan Francisco, California, United States
Full-time
Get AI-powered advice on this job and more exclusive features.This range is provided by Inkitt.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.I...Show moreLast updated: 12 hours ago
  • Promoted
Senior Product Security Analyst

Senior Product Security Analyst

El Camino HealthSan Francisco, CA, United States
Full-time
Senior Product Security Analyst page is loaded## Senior Product Security Analystlocations : San Francisco, CAtime type : Full timeposted on : Posted Yesterdayjob requisition id : JR704 • •Career-...Show moreLast updated: 26 days ago
  • Promoted
Senior Security Engineer, Product

Senior Security Engineer, Product

DecagonSan Francisco, CA, United States
Full-time
Decagon is the leading conversational AI platform empowering every brand to deliver concierge customer experience.Our AI agents provide intelligent, human-like responses across chat, email, and voi...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Senior Product Analyst

Senior Product Analyst

NeonSan Francisco, California, United States
Full-time
About Neon Neon is a global payments and e-commerce platform designed to help game publishers earn more money and independence from app stores. We believe commerce should be open and transparent : cl...Show moreLast updated: 12 hours ago
  • Promoted
  • New!
Senior Product Security Analyst

Senior Product Security Analyst

iRhythm TechnologiesSan Francisco, CA, United States
Full-time
At iRhythm, you'll have the opportunity to grow your skills and your career while impacting the lives of people around the world. Rhythm is shaping a future where everyone, everywhere can access the...Show moreLast updated: 22 hours ago
  • Promoted
  • New!
Senior Product Security Engineer

Senior Product Security Engineer

LMArenaSan Francisco, CA, United States
Full-time
Senior Product Security Engineer.You'll work across product, infrastructure, and data pipelines to proactively identify risks, embed security into core features, and build scalable defenses against...Show moreLast updated: 22 hours ago
  • Promoted
Senior Manager, Product Security

Senior Manager, Product Security

TiVo CorporationSan Jose, CA, United States
Full-time
Xperi invents, develops and delivers technologies that create extraordinary experiences at home and on the go for millions of people around the world. Powering billions of consumer electronics, conn...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Senior Product Security Architect

Senior Product Security Architect

Motorola SolutionsSan Mateo, CA, United States
Full-time
At Motorola Solutions, we believe that everything starts with our people.We're a global close-knit community, united by the relentless pursuit to help keep people safer everywhere.Our critical comm...Show moreLast updated: 22 hours ago
  • Promoted
Senior Product Analyst

Senior Product Analyst

NeonpaySan Francisco, CA, United States
Full-time
Neon is a global payments and e-commerce platform designed to help game publishers earn more money and independence from app stores. We believe commerce should be open and transparent : clear decisio...Show moreLast updated: 25 days ago
  • Promoted
Senior Manager, Product Security

Senior Manager, Product Security

XperiSan Jose, CA, United States
Full-time
Xperi invents, develops and delivers technologies that create extraordinary experiences at home and on the go for millions of people around the world. Powering billions of consumer electronics, conn...Show moreLast updated: 30+ days ago