Cybersecurity Engineer

Vilnius/Hybrid

Project

We are seeking a Cybersecurity Engineer to support thedevelopment and lifecycle management of a Secure Connectivity Board (SCB)product.

This role will drive cybersecurity activities throughout the productlifecycle, ensuring security-by-design principles are embedded into productdevelopment and supporting compliance with applicable medical devicecybersecurity requirements.

Work

The successful candidate will work closely with Engineering, Quality, Regulatory Affairs, and external security experts to ensure cybersecurity risks are properly identified, assessed, mitigated, and documented.

Key Responsibilities

• Design, implement, and maintain cybersecurity controls throughout the product lifecycle (design, development, deployment, and post-market activities).

• Integrate Secure Software Development Lifecycle (Secure SDLC) practices into engineering processes.

• Conduct threat modeling, cybersecurity risk assessments, and vulnerability analyses for connected devices.

• Define cybersecurity requirements and security architecture recommendations.

• Coordinate static and dynamic application security testing (SAST/DAST).

• Coordinate and support penetration testing activities with external security experts.

• Support the creation and maintenance of cybersecurity risk management documentation and technical files.

• Collaborate with Engineering, Quality, Regulatory Affairs, and Product teams to ensure security-by-design principles are applied.

• Monitor security vulnerabilities and support remediation activities.

• Support post-market cybersecurity monitoring and vulnerability management activities.

• Participate in incident response planning and security investigations when required.

• Support the preparation of cybersecurity deliverables for regulatory submissions and audits.

Technical Skills

Experience with cybersecurity tools and technologies such as:

Application Security & Code Analysis

Experience with one or more of:

  • Black   Duck (or equivalent SCA tools)
  • Fortify
  • Checkmarx
  • Veracode
  • SonarQube

Vulnerability Management & Testing

Experience with one or more of:

  • Nessus
  • OpenVAS
  • Burp Suite
  • OWASP ZAP
  • Metasploit

Endpoint & Network Security

Experience with:

  • CrowdStrike, Carbon Black, or similar EDR solutions
  • Wireshark
  • Snort, Suricata, or similar network security technologies

Cloud & Infrastructure Security

Exposure to:

  • AWS  Security Hub, Azure Security Center, or equivalent cloud security platforms
  • Infrastructure-as-Code security tools (e.g., Checkov)

DevSecOps & Automation

Experience with:

  • Jenkins, GitLab CI/CD, or similar pipelines
  • Security integration within CI/CD environments
  • Docker and Kubernetes security concepts

Regulatory & Standards Knowledge

Awareness of the following standards and frameworks is beneficial:

  • ISO  14971 Risk Management
  • IEC 62304 Medical Device Software Lifecycle Processes
  • IEC 81001-5-1 Health Software Security
  • FDA  Premarket and Post market Cybersecurity Guidance
  • NIST Cybersecurity Framework
  • ISO  27001
  • HIPAA  (where applicable)

Preferred Qualifications

  • Experience  in medical device, healthcare, IoT, embedded systems, or other regulated  industries.
  • Familiarity  with FDA cybersecurity guidance and regulatory expectations.
  • Exposure  to FDA 510(k) submissions.
  • Familiarity  with IEC 81001-5-1.
  • Knowledge  of SBOM (Software Bill of Materials) practices and requirements.
  • Experience  supporting penetration testing and remediation activities.
  • Industry certifications such as CISSP, CEH, CSSLP, or equivalent.

Our Offer

• Support – You will have a Qdev buddy by your side

• Flexibility – flexible working hours, vacation schedule

• Online and offline training/workshops and other knowledge-sharing possibilities

• Additional health and personal accident insurance

• Snacks and fun activities in the office

• Additional time off

• Personal and sport budget

• Loyalty benefits and perks

• Agile, friendly and international environment

• Gross salary in a range of 4400-7500 EUR (negotiable, based on competencies)

Apply Now

Cybersecurity Engineer
Max file size 10MB.
Uploading...
fileuploaded.jpg
Upload failed. Max size for files is 10 MB.
Thank you! Your application has been received!
Something went wrong while submitting the form.
Ukmergės G. 322, Vilnius
12106, Lithuania
LinkedIn
Privacy Policy