Product Security Specialist for Medical Devices (Cyber Security) in London
Product Security Specialist for Medical Devices (Cyber Security)

Product Security Specialist for Medical Devices (Cyber Security) in London

London Full-Time 60000 - 80000 £ / year (est.) No home office possible
Astro Studios, Inc.

At a Glance

  • Tasks: Secure medical devices by assessing risks and implementing security strategies.
  • Company: Join a leading tech consultancy focused on innovation and positive impact.
  • Benefits: Enjoy flexible working, competitive salary, health perks, and professional development opportunities.
  • Why this job: Make a difference in healthcare technology while growing your cybersecurity expertise.
  • Qualifications: 5+ years in medical device security and proficiency in security frameworks required.
  • Other info: Collaborative environment with strong support for learning and career growth.

The predicted salary is between 60000 - 80000 £ per year.

We believe in the power of ingenuity to build a positive human future. As strategies, technologies, and innovation collide, we create opportunity from complexity. Our teams of interdisciplinary experts combine innovative thinking and breakthrough technologies to progress further, faster. Our clients adapt and transform, and together we achieve enduring results.

We are over 4,000 strategists, innovators, designers, consultants, digital experts, scientists, engineers, and technologists. And we have deep expertise in consumer and manufacturing, defence and security, energy and utilities, financial services, government and public services, health and life sciences, and transport. Our teams operate globally from offices across the UK, Ireland, US, Nordics, and Netherlands.

Join our Digital & Data team working alongside product, design and a wide range of other experts and cross-disciplinary teams to bring ideas to life through innovative software solutions. Grow a flexible and unique career within a trust-based, inclusive environment that values excellence, innovation, and curiosity. You have the option to progress with us on a technical career track. No need to go onto the Partner career track if this doesn’t align with what you want to do.

Hybrid working - our approach is to be in the office or on client site a minimum of 2 days per week. Work on a broad variety of projects and tech stacks for clients across seven sectors - no project is ever the same. Join other experts within our supportive and collaborative tech community through knowledge-sharing and peer-level support, coaching and mentoring. Deepen your expertise through our culture of learning and growth – you’ll have budget to take courses (technical and non-technical training), plus gain certifications.

What you can expect:

  • Work to agile best practices and cross-functionally with multiple teams and stakeholders. You’ll be using your technical skills to problem solve with our clients, as well as working on internal projects.
  • Work with client product teams and functional groups on determining objectives, scope, and timelines for key product security initiatives and architecting the delivery methodologies.
  • Assess security risks across client product portfolios and recommend remediation strategies while balancing business and technical requirements.
  • Advise on strategies around coding, threat modeling, and security testing for embedded systems, IoT devices while ensuring compliance with industry regulations.
  • Work alongside client R&D teams to lead on secure code reviews, threat modeling, security risk assessments, vulnerability assessments and validation and verification of controls.
  • Monitor emerging cybersecurity threats in the IoT and medical device landscape and write thought leadership to showcase PA’s point of view on these.
  • Build strong stakeholder relationships across our clients.
  • Foster team growth, training and deliver outcomes.
  • Support and drive business development efforts.
  • Manage projects with expertise.
  • Solve problems with a consulting approach.

Hybrid working with the team on client site or in our office a minimum of two days per week. However, the actual time you spend and where you spend it will vary by role or assignment, including up to 5 days per week on a client site.

Even if you don’t meet every requirement below, feel free to still apply as we are often hiring for similar roles which your background might be better suited to.

Requirements:

  • 5+ years of relevant experience in the medical device space (either industry or through consulting/service provider).
  • Proficiency in security frameworks (e.g., NIST, OWASP, MITRE ATT&CK, PASTA, STRIDE) and standards such as FDA cybersecurity guidance.
  • Experience assessing security risks using industry standard methods (penetration test results, threat modeling, security testing) and determining residual risk after applying compensating security controls.
  • Experience implementing and demonstrating compliance to security frameworks such as NIST, IEC, HITRUST, HIPAA, GDPR, ISO 27001, SOC 2 Type 2 and familiarity working with Quality Management Systems.
  • Experience working with teams in a structured software development lifecycle process.
  • Excellent interpersonal skills, both written and verbal, with the ability to clearly convey complex security topics to a wide audience - technical and non-technical teams.
  • Proven track record of achieving outcomes and nurturing relationships.
  • Skilled in crafting compelling proposals and other business development materials. Proficient in cultivating opportunities within the client base and network.
  • Holds Cyber Security accreditations/qualifications such as (CISSP, CSSLP, CISM), indicating a solid foundation in the field.
  • You thrive in problem-solving and analytical thinking.
  • You enjoy collaborating with multiple stakeholders in a fast-paced environment.

Please be aware that some of our UK roles at PA Consulting require a UK security clearance. All PA people are required to undergo background checks and to achieve the Baseline Personnel Security Standard however, some UK roles also require higher levels of National Security Vetting, where applicants must have at least 5 years of continuous residency in the UK. We therefore ask that you only apply if you meet the residency requirements (i.e. you are a British citizen or have been resident in the UK for the past 5 years), as this is the prerequisite for a security clearance. If you’re unsure about your eligibility, we encourage you to review the UK Government’s guidance on security vetting before applying.

Additional information:

Please note that the interview stages may be subject to change based on the specific requirements of the role.

  • Quick call with one of our Tech Recruiters – to discuss your application, the role and PA.
  • Round 1: Either a competency or technical interview (60 mins).
  • Round 2: Either a competency or technical interview, whichever you didn’t do at first round (60 mins).
  • Final round: Meeting with a PA leader - a mini case study and discussion around your client-centricity (60 mins).

Life At PA encompasses our peoples' experience at PA. It’s about how we enrich peoples’ working lives by giving them access to unique people and growth opportunities and purpose led meaningful work. Our purpose guides how we work with our clients and our teams, and support our communities, to deliver insight and impact, solving the world’s most complex challenges. We’re focused on building a workplace that values human difference and diverse mindsets, and a culture of inclusion and equality that unlocks the potential in our people so everyone can be their best self.

We are dedicated to supporting the physical, emotional, social and financial well-being of our people. Check out some of our extensive benefits:

  • Health and lifestyle perks accompanying private healthcare for you and your family.
  • 25 days annual leave (plus a bonus half day on Christmas Eve) with the opportunity to buy 5 additional days.
  • Generous company pension scheme.
  • Opportunity to get involved with community and charity-based initiatives.
  • Annual performance-based bonus.
  • PA share ownership.
  • Tax efficient benefits (cycle to work, give as you earn).

We’re committed to advancing equality. We recruit, retain, reward and develop our people based solely on their abilities and contributions and without reference to their age, background, disability, genetic information, parental or family status, religion or belief, race, ethnicity, nationality, sex, sexual orientation, gender identity (or expression), political belief, veteran status, any other range of human difference brought about by identity and experience. We welcome applications from underrepresented groups.

Adjustments or accommodations - Should you need any adjustments or accommodations to the recruitment process, at either application or interview, please contact us.

Product Security Specialist for Medical Devices (Cyber Security) in London employer: Astro Studios, Inc.

At PA Consulting, we pride ourselves on being an exceptional employer, offering a dynamic and inclusive work culture that fosters innovation and collaboration. Our commitment to employee growth is evident through our extensive training budgets and flexible career paths, allowing you to thrive in your role as a Product Security Specialist for Medical Devices. With hybrid working options and a focus on well-being, we ensure that our team members enjoy a fulfilling work-life balance while contributing to meaningful projects that make a real impact in the healthcare sector.
Astro Studios, Inc.

Contact Detail:

Astro Studios, Inc. Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Product Security Specialist for Medical Devices (Cyber Security) in London

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for those interviews! Research the company and its projects, especially in the medical devices space. Be ready to discuss how your skills align with their needs and showcase your problem-solving abilities.

✨Tip Number 3

Don’t shy away from showcasing your expertise! Bring examples of your past work, especially any relevant security frameworks or compliance experiences. This will help you stand out as a candidate who knows their stuff.

✨Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team and contributing to our innovative projects.

We think you need these skills to ace Product Security Specialist for Medical Devices (Cyber Security) in London

Cyber Security
Security Frameworks (NIST, OWASP, MITRE ATT&CK, PASTA, STRIDE)
Risk Assessment
Penetration Testing
Threat Modelling
Security Testing
Compliance with FDA Cybersecurity Guidance
Quality Management Systems
Interpersonal Skills
Written and Verbal Communication
Business Development
Cyber Security Accreditations (CISSP, CSSLP, CISM)
Analytical Thinking
Collaboration with Stakeholders
Project Management

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in medical devices and cybersecurity. We want to see how your skills align with the role, so don’t hold back on showcasing your relevant achievements!

Show Off Your Technical Skills: Since this role is all about product security, be sure to mention your proficiency in security frameworks like NIST or OWASP. We love seeing candidates who can clearly articulate their technical expertise and how it applies to our projects.

Be Clear and Concise: When writing your application, keep it straightforward. Use clear language to convey complex ideas, especially around security topics. We appreciate applicants who can communicate effectively with both technical and non-technical audiences.

Apply Through Our Website: Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it shows you’re keen to join our team at StudySmarter!

How to prepare for a job interview at Astro Studios, Inc.

✨Know Your Security Frameworks

Make sure you’re well-versed in security frameworks like NIST, OWASP, and MITRE ATT&CK. Be ready to discuss how you've applied these in your previous roles, especially in the context of medical devices. This shows you not only understand the theory but can also implement it practically.

✨Showcase Your Problem-Solving Skills

Prepare to share specific examples where you've assessed security risks or conducted threat modelling. Use the STAR method (Situation, Task, Action, Result) to structure your answers, making it easy for the interviewers to see your analytical thinking in action.

✨Communicate Clearly

You’ll need to convey complex security topics to both technical and non-technical teams. Practice explaining your past projects in simple terms, focusing on the impact of your work. This will demonstrate your interpersonal skills and ability to collaborate effectively.

✨Engage with the Company’s Values

Research the company’s mission and values, particularly their focus on ingenuity and collaboration. Be prepared to discuss how your personal values align with theirs and how you can contribute to fostering a positive human future through your role.

Product Security Specialist for Medical Devices (Cyber Security) in London
Astro Studios, Inc.
Location: London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>