Sr Principal Product Security Engineer

3 weeks ago


Minneapolis, United States Baxter Full time

This is where you save and sustain lives

At Baxter, we are deeply connected by our mission. No matter your role at Baxter, your work makes a positive impact on people around the world. You’ll feel a sense of purpose throughout the organization, as we know our work improves outcomes for millions of patients.

Baxter’s products and therapies are found in almost every hospital worldwide, in clinics and in the home. For over 85 years, we have pioneered significant medical innovations that transform healthcare.

Together, we create a place where we are happy, successful and inspire each other. This is where you can do your best work.

Join us at the intersection of saving and sustaining lives— where your purpose accelerates our mission.

Your Role at Baxter

Join us as we revolutionize the treatment landscape and help improve patient lives worldwide.

Baxter plans to spin off our ~$5B Kidney Care segment into an independent, publicly traded company. The new standalone entity will leverage our nearly 70-year legacy in acute therapies and home and in-center dialysis to provide best-in-class care to the people we serve. With its own investment priorities and enhanced management focus, the company will be better positioned to pursue growth opportunities and invest in innovation. We will build on our leadership in the kidney care space, fueled by our steadfast focus on innovation, our passion for patients and their families and our expertise in operational excellence.

This is where you can make an impact.

What you will be doing: Work directly with embedded software developers in building a security by design mindset by defining implementations and coding inline with the Application Security Program mandates Implement embedded secure code solutions, design patterns, and coding guidelines that meet security and privacy requirements defined in the security plans, risk assessments, policies, and procedures Support security project governance through scheduling activities, planning and prioritization Proactively drive security solutions implementation in-alignment with the development leads, security architects and product owner(s) Drive feature implementations in line with the architecture via designs, coding, reviews and tests. Perform Proof of Concept (POC) activities as necessary Review, Analyze and mitigate SAST, DAST, SCA and penetration test findings in collaboration with the developers for various electromechanical medical devices product lifecycles Review current software security control measures and implement security enhancements across multiple medical devices Participate in post-market product analysis to support vulnerability investigations as required as well as be engaged in continuous security monitoring

What you will bring: Experienced security developer able to interpret and guide software development teams on secure coding practices and application security test report interpretation for various coding languages and operating environments Strong knowledge of secure software development lifecycle and practices including SAFe/ Agile methodologies for software development Understanding of security by design principles and architecture level security concepts Sound understanding and experience in implementing security

technologies/techniques

such as, Cryptographic Algorithms/Cipher Suites, Public key Infrastructure (PKI), Hardware/embedded authentication protocols, Secure Boot, and data-at-rest encryption methods Experience implementing OWASP Top10 application security guidelines in embedded systems Knowledge of embedded system architecture and security controls (e.g., firewall and border router configurations, wireless communication architectures, messaging authentication protocols Experienced in generating, defining, and reviewing penetration test results through knowledge standard methodologies and tools including environmental configuration definition, security analysis, threat modeling, and system security audits Knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities Exposure to international privacy requirements & cross-industry trends

Qualifications and Skills Bachelor's degree in Computer Science, Computer Engineering, a related field or equivalent demonstrated experience and knowledge Minimum 8+ years of experience in software development or related fields. Minimum 5 years technical experience working with product security design/development for embedded systems 3 years working with each of the following:

Experience with C/C++, Python, Linux and/or security design within real-time operating systems Experience analyzing, interpreting, and mitigating security findings from multiple sources including SAST, DAST, SCA and penetration tests Embedded data at rest security implementations including Code Signing, Secure boot, and flash encryption implementations Embedded/IoT wired and wireless secure networking implementations within multiple layers of the OSI stack IoT/Embedded PKI solutions and implementation.

We understand compensation is an important factor as you consider the next step in your career. At Baxter, we are committed to equitable pay for all employees, and we strive to be more transparent with our pay practices. The estimated base salary for this position is $120,000 to $165,000 annually. The estimated range is meant to reflect an anticipated salary range for the position. We may pay more or less than of the anticipated range based upon market data and other factors, all of which are subject to change. Individual pay is based on upon location, skills and expertise, experience, and other relevant factors. This position may also be eligible for discretionary bonuses. For questions about this, our pay philosophy, and available benefits, please speak to the recruiter if you decide to apply and are selected for an interview.

The successful candidate for this job may be required to verify that he or she has been vaccinated against COVID-19, subject to reasonable accommodations for individuals with medical conditions or religious beliefs that prevent vaccination, and in accordance with applicable law.

Equal Employment Opportunity

Baxter is an equal opportunity employer. Baxter evaluates qualified applicants without regard to race, color, religion, gender, national origin, age, sexual orientation, gender identity or expression, protected veteran status, disability/handicap status or any other legally protected characteristic.

EEO is the LawEEO is the law - Poster SupplementPay Transparency Policy

Reasonable Accommodations

Baxter is committed to working with and providing reasonable accommodations to individuals with disabilities globally. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the application or interview process, please click on the link here and let us know the nature of your request along with your contact information.

Recruitment Fraud Notice

Baxter has discovered incidents of employment scams, where fraudulent parties pose as Baxter employees, recruiters, or other agents, and engage with online job seekers in an attempt to steal personal and/or financial information. To learn how you can protect yourself, review our Recruitment Fraud Notice. 120375 #J-18808-Ljbffr


  • Sr. Security Engineer

    7 hours ago


    Minneapolis, United States Jostens Full time

    Sr. Security Engineer - IAM ABOUT YOU:The Sr. Security Engineer IAM role is responsible for designing, implementing, and maintaining robust security solutions that ensure the integrity, confidentiality, and availability of our organization's IAM and Security Engineer, Security, Technical Architect, Engineer, Technology, Director, Manufacturing


  • Minneapolis, United States C4 Technical Services Full time

    Sr. IAM Security Engineer (Remote Work Option) Remote or MN Primary Job Functions We are seeking a Sr. IAM Security Engineer who will be a part of our Cyber Security Team. This team works with the business community to secure data, systems, network resources, and protect the confidentiality, integrity and availability of our customers and company assets to...


  • Minneapolis, United States Apollo Professional Solutions Full time

    Sr. Mechanical EngineerMinneapolis MNContractPay Rate:  $58.28/Hr.Benefits:  per diem, overtime, medical, dental, vision, 401kTravel:  10%REQUIREMENTS: Sr. Mechanical Engineer US Citizenship Our client requires that candidates must be able to obtain DoD Secret Personnel Clearance (PCL) to start, for which the U.S. Government requires U.S....


  • Minneapolis, United States Detroit Engineered Products Full time

    Description: We have multiple openings for individuals with experience and a passion for real-time, embedded software development. The Principal Software Engineer plans, leads, and performs a variety of tasks across the areas of software requirements analysis, software architecture and design, implementation (code and unit test), documentation,...


  • Minneapolis, United States eTeam Full time

    Title: Principal Facilities Engineer Location: Plymouth, MN Duration: 5+ Months Pay Rate: $60.00/hr on W2 to $65.00/hr on W2Summary: This position will be responsible for offering facility maintenance support of a R&D facility involving chemistry, biosafety and electromechanical system labs for medical devices and drug products. Under direction of the SR...


  • Minneapolis, United States GeoLogics Corporation Full time

    Geologics is seeking a talented Sr. MechanicalEngineerto work with one of our national aerospace and defense partners based in Minneapolis, MN.In this role, you will work closely with electrical engineering staff or electrical designers to support one or more aspects of the Combat Vehicle design/build process.Position:Sr. Mechanical Design EngineerType: W-2,...


  • Minneapolis, United States USPRO Full time

    Principal Software EngineerMinneapolis, MNJob Description:We have multiple openings for individuals with experience and a passion for real-time, embedded software development. The Principal Software Engineer plans, leads, and performs a variety of tasks across the areas of software requirements analysis, software architecture and design, implementation (code...


  • Minneapolis, United States USPRO Full time

    Principal Software EngineerMinneapolis, MNJob Description:We have multiple openings for individuals with experience and a passion for real-time, embedded software development. The Principal Software Engineer plans, leads, and performs a variety of tasks across the areas of software requirements analysis, software architecture and design, implementation (code...


  • Minneapolis, United States USPRO Full time

    Principal Software EngineerMinneapolis, MNJob Description:We have multiple openings for individuals with experience and a passion for real-time, embedded software development. The Principal Software Engineer plans, leads, and performs a variety of tasks across the areas of software requirements analysis, software architecture and design, implementation (code...


  • Minneapolis, United States Trane Technologies, plc Full time

    At Trane Technologies. TM and through our businesses including Trane and Thermo King, we create innovative climate solutions for buildings, homes, and transportation that challenge what's possible for a sustainable world. We're a team that dares to l Refrigeration, Engineer, Principal, Technology, Product Development, Systems


  • Minneapolis, United States Custom Search Full time

    Our mid-sized medical device client is adding a Sr. Sustaining Engineer to the team. This is a newly created position reporting to the Director of Quality. The Sr. Sustaining Engineer will be primarily maintaining existing commercialized products post transfer by ensuring the products remains safe, compliant and optimized for manufacturing process...


  • Minneapolis, United States Olympus Full time

    Develop, maintain, and support the company Quality System, regulatory requirements and business strategy. Continuously improve Quality performance related to New Product Development, procurement, manufacturing, and metrics related to the strength of Quality Assurance, Assurance, Engineer, Quality Engineer, Principal, Quality, Technology


  • Minneapolis, United States SmartThings Full time

    We’re SmartThings, one of the leading IoT ecosystems in the world, creating the most effortless way for anyone to create a smart home. As a wholly owned subsidiary of Samsung, our corporate offices are based in Minneapolis and the Bay Area.More than 270 million people worldwide use SmartThings to control and manage their connected life. SmartThings...


  • Minneapolis, United States Epicor Full time

    Principal Product Manager - Compliance As a Principal Product Manager of Compliance, you will be responsible for ensuring that Epicor's products meet the highest standards of quality, security, and compliance across different markets and industries. You will work close with product management and development, legal, sales, marketing, and customer...


  • Minneapolis, United States Apollo Professional Solutions Full time

    Job Description Sr. Mechanical Engineer Minneapolis MN Contract Pay Rate:$58.28/Hr. Benefits:per diem, overtime, medical, dental, vision, 401k Travel:10% REQUIREMENTS: Sr. Mechanical Engineer US Citizenship Our client requires that candidates must be able to obtain DoD Secret Personnel Clearance (PCL) to start, for which the U.S. Government requires U.S....


  • Minneapolis, United States SmartThings Full time

      We’re SmartThings, one of the leading IoT ecosystems in the world, creating the most effortless way for anyone to create a smart home. As a wholly owned subsidiary of Samsung, our corporate offices are based in Minneapolis and the Bay Area. More than 270 million people worldwide use SmartThings to control and manage their connected life....


  • Minneapolis, United States Redbock - an NES Fircroft company Full time

    Sr. Packaging Engineer (24 month contract // Hybrid in Minneapolis, MN): W2 ONLY - Unable to work C2C/Sponsor Top 3 technical skills: Development of packaging for finished goods Packaging experience with medical devices or another regulated industry, ideally with sterile barrier experience (ISO 11607-1 and 11607-2) Experience or knowledge of industry...


  • Minneapolis, United States Redbock - an NES Fircroft company Full time

    Sr. Packaging Engineer (24 month contract // Hybrid in Minneapolis, MN):W2 ONLY - Unable to work C2C/SponsorTop 3 technical skills:Development of packaging for finished goodsPackaging experience with medical devices or another regulated industry, ideally with sterile barrier experience (ISO 11607-1 and 11607-2)Experience or knowledge of industry standards...


  • Minneapolis, United States Redbock - an NES Fircroft company Full time

    Sr. Packaging Engineer (24 month contract // Hybrid in Minneapolis, MN):W2 ONLY - Unable to work C2C/SponsorTop 3 technical skills:Development of packaging for finished goodsPackaging experience with medical devices or another regulated industry, ideally with sterile barrier experience (ISO 11607-1 and 11607-2)Experience or knowledge of industry standards...


  • Minneapolis, United States Redbock - an NES Fircroft company Full time

    Sr. Packaging Engineer (24 month contract // Hybrid in Minneapolis, MN):W2 ONLY - Unable to work C2C/SponsorTop 3 technical skills:Development of packaging for finished goodsPackaging experience with medical devices or another regulated industry, ideally with sterile barrier experience (ISO 11607-1 and 11607-2)Experience or knowledge of industry standards...