At a Glance
- Tasks: Lead cybersecurity initiatives in healthcare tech, shaping security practices from the ground up.
- Company: Established healthcare technology firm focused on patient safety and innovation.
- Benefits: Up to £75,000 salary, hybrid work, 25 days leave, life insurance, and more.
- Other info: Autonomy in role with excellent career growth opportunities in a dynamic environment.
- Why this job: Make a real impact on patient safety while defining security in a global organisation.
- Qualifications: Experience in healthcare tech, strong knowledge of NIST 800, and cloud security expertise.
The predicted salary is between 75000 - 75000 £ per year.
Our client is an established name in healthcare technology, developing solutions that sit at the intersection of patient safety and clinical innovation. As part of an ambitious project to build out their Edinburgh R&D teams to own the next generation of their flagship product, they are now looking to hire a Senior Cyber Security Engineer with previous experience in medical-tech or healthcare.
What is in it for you:
- Salary up to £75,000
- Hybrid working - 3 days a week into the office
- 25 days annual leave - which increase in years of service
- Life insurance
- Pension
- Paid charity work days
- Healthcare cash plan
- ... and much more.
The Role:
Rather than stepping into an existing security operation, you will be carving out the role itself. Sitting across product development, you will be the person engineering teams turn to when security decisions need to be made, from how a cloud environment is architected through to how a vulnerability is disclosed to a customer. Our client operates in a tightly regulated space where the consequences of poor security practice extend well beyond data loss.
- Managing external-facing security communications, from customer queries through to vulnerability and incident reporting
- Embedding security and privacy thinking into product development from the earliest design stages
- Running threat assessments and maintaining ongoing visibility of the risk landscape across assigned products
- Serving as the internal expert voice on cybersecurity within product, engineering, and quality conversations
- Keeping the business on the right side of a demanding regulatory framework spanning multiple international standards
- Owning the investigation and resolution of any security incidents or complaints tied to their product portfolio
What We're Looking For:
- Experience in a healthcare or medical device environment
- Strong command of NIST 800
- Strong experience in Cloud Security (AWS/Azure/GCP)
- Proven track record managing product security in a regulated healthcare or medical device setting
- Regulatory landscape such as FDA guidance, HIPAA, GDPR, ISO 13485, ISO 14971, AAMI TIR 57, ISO 27001 series, and 21 CFR 820 among others
- Technical credibility across cloud architecture, network security, OS hardening across Windows and Linux environments, and secure software development practices
This is a chance to define how security is done within a business that genuinely cannot afford to get it wrong, and to do so with the backing and resource of a well-established global organisation. The role offers real autonomy, a direct line into product and engineering leadership, and the kind of career-defining scope that comes with building something from nothing.
Bright Purple is an equal opportunities employer: we are proud to work with clients who share our values of diversity and inclusion in our industry.
Senior Cyber Security Engineer in Edinburgh employer: Bright Purple Resourcing
Contact Detail:
Bright Purple Resourcing Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Cyber Security Engineer in Edinburgh
✨Tip Number 1
Network like a pro! Reach out to folks in the healthcare tech space on LinkedIn or at industry events. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to cloud security and regulatory compliance. This gives potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on common cybersecurity scenarios, especially in healthcare. We recommend practising how you'd handle specific security incidents or regulatory challenges to impress your interviewers.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who take that extra step!
We think you need these skills to ace Senior Cyber Security Engineer in Edinburgh
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior Cyber Security Engineer role. Highlight your experience in healthcare tech and any relevant projects you've worked on. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity in healthcare and how you can contribute to our mission. Keep it engaging and personal – we love a good story!
Showcase Relevant Experience: When detailing your experience, focus on your work with NIST 800, cloud security, and regulatory frameworks. We’re keen to see how you've navigated these areas in past roles, especially in a medical device environment.
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you don’t miss out on any important updates from us!
How to prepare for a job interview at Bright Purple Resourcing
✨Know Your Stuff
Make sure you brush up on your knowledge of NIST 800 and the regulatory landscape like FDA guidance and HIPAA. Be ready to discuss how your experience in healthcare or medical devices aligns with the role, as this will show you understand the unique challenges in this sector.
✨Showcase Your Cloud Security Skills
Since cloud security is a big part of this role, be prepared to talk about your experience with AWS, Azure, or GCP. Bring examples of how you've architected secure cloud environments or managed vulnerabilities in the past to demonstrate your technical credibility.
✨Communicate Clearly
You'll need to manage external-facing security communications, so practice articulating complex security concepts in simple terms. Think about how you would explain a vulnerability to a customer or team member who may not have a technical background.
✨Emphasise Your Autonomy
This role offers a chance to carve out your own path, so highlight any previous experiences where you've taken initiative or led projects. Discuss how you can embed security thinking into product development from the start, showing that you're ready to take ownership.