DE Jobs

Search from over 2 Million Available Jobs, No Extra Steps, No Extra Forms, Just DirectEmployers

Job Information

ThermoFisher Scientific Product Security Strategist in Shanghai, China

Work Schedule

Other

Environmental Conditions

Office

Job Description

When you’re part of the team at Thermo Fisher Scientific, you’ll do important work, like helping customers in finding cures for cancer, protecting the environment or making sure our food is safe. Your work will have real-world impact, and you’ll be supported in achieving your career goals.

This role is a member of the Corporate Infrastructure & Security (CIS), Product and Software Security, Business Enablement team and evaluates and guides Thermo Fisher product development teams on the incorporation of security concepts and controls in the design of new and existing consumer products and platforms.

How will you make an impact?

By enabling our product development and sustainment teams, you will help ensure that Thermo Fisher products are developed and tested against security standards, further helping our customers to make the world healthier, cleaner and safer.

The Role

The Product Security Strategist shares the responsibility for security associated with the company’s Product Security program. They will work with all parts of the program, including research, testing and validation of a product platforms, education, and integration of solutions with the overarching CIS program.

  • Work closely with key Senior Strategists and product development leaders to ensure security is incorporated in all customer-facing product offerings.

  • Support efforts to instill security into all levels of the development process.

  • Evaluate business processes around product security and anticipate requirements, uncover areas for improvement, and help develop and implement solutions leading to the integration of security within the product lifecycle.

  • Review existing processes to ensure consistent application of secure development lifecycle practices.

  • Build working relationships with product development team members, to maintain and improve product and application security processes.

  • Maintain product portfolios for relevant lines of business.

  • Contribute to maturing process, policy, and standards.

  • Work with members across business units to help prioritize remediation of security vulnerabilities discovered during the security assessment process.

  • Coordinate and participate in delivering threat modeling for products.

  • Proactively ensure that applicable regulatory mandates are addressed with mitigating or compensating controls.

  • Coordinate/participate in and perform design reviews, peer reviews, and code reviews.

  • Ensure excellent consistency, documentation, and process across all programs.

  • Collaborate with other departments (e.g., Risk Management, Internal Audit, HR, Legal, etc.) ensuring that compliance issues are routed to the appropriate teams for investigation and resolution.

  • Travel up to 10%.

How will you get here?

  • Bachelor’s Degree in Information Assurance, Information Security, Management Information Systems, Risk Management, or Computer Science (Master’s Degree a plus) / equivalent field experience.

  • 5+ years of related work experience with information or product security, secure software development, risk assessment, or vulnerability management

Knowledge, Skills, Abilities

  • Understanding of device research methods, variables and parameters including analysis, testing and documentation

  • Knowledge of security controls and standards, including OWASP Top 10, CIS 20, NIST, ISO, IEC and their application for medical devices

  • Understanding of how to connect new and changing threats to IoT landscape

  • Understanding of security protocols and concepts and the ability to translate to a product specific context

  • Strong customer service background, with outstanding verbal and written communication skills required

  • Strong interpersonal skills with a proven track record of explaining security concepts

  • Strong attention to detail, organizational skills supporting project management

  • Consistent record of positive, professional interactions with diverse audiences, including executives, managers, and domain experts

  • Relevant technical certifications a plus

At Thermo Fisher Scientific, each one of our 70,000 extraordinary minds has a unique story to tell. Join us and contribute to our singular mission—enabling our customers to make the world healthier, cleaner and safer.

Apply today! http://jobs.thermofisher.com

Thermo Fisher Scientific is an EEO/Affirmative Action Employer and does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability or any other legally protected status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

Thermo Fisher Scientific is an EEO/Affirmative Action Employer and does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability or any other legally protected status.

DirectEmployers