Remote Medical Device/IoT Security Architect

at Maveris

Posted 1 day ago 0 applied

Description:

  • Maveris is an IT and cybersecurity services company that helps organizations create secure digital solutions.
  • The company is Veteran-owned and serves customers across the Federal Government and private sector.
  • There is an opening for a full-time, permanent Medical Device/IoT Security Architect to support a large Federal Government customer.
  • The Medical Device/IoT Security Architect will provide technical and programmatic support services to the Department of Veterans Affairs.
  • Responsibilities include leading the delivery of a Federal Agency’s Enterprise Security Architecture and Strategy.
  • The role involves providing thought leadership for new techniques and design patterns related to Enterprise Security Architecture within Automation and DevSecOps.
  • The architect will ensure the Enterprise Security Architecture aligns with the NIST Cybersecurity Framework and other federal mandates.
  • Designing security patterns and reference architectures to protect sensitive medical data and comply with regulatory standards such as HIPAA is essential.
  • Conducting risk assessments, threat modeling, and vulnerability testing for IoT and medical devices is part of the job.
  • The architect will architect secure communication protocols and encryption methods to protect data in transit and at rest.
  • Collaboration with medical device manufacturers, healthcare providers, and IT teams to embed security controls within device firmware, software, and hardware is required.
  • The role also involves collaborating with cross-functional teams to ensure security throughout the lifecycle of connected devices.

Requirements:

  • A Bachelor’s degree is required for this position.
  • Candidates must have 7 years of relevant experience in the field.
  • Hands-on experience securing connected medical devices and IoT environments in healthcare or other highly regulated industries is necessary.
  • Experience working with healthcare standards such as HIPAA, FDA guidelines, and IEC 80001 for medical devices is required.
  • Familiarity with security frameworks and methodologies, including the NIST Cybersecurity Framework and ISO 27001, is essential.
  • Knowledge of network security, wireless protocols, and data encryption specific to IoT environments is required.
  • Experience with cybersecurity tools such as vulnerability scanners, SIEM, and threat detection systems is necessary.
  • Hands-on experience with Zero Trust security models is also required.

Benefits:

  • Maveris offers a 401(k) plan with company match to support employees' retirement savings.
  • Employees receive dental insurance as part of their benefits package.
  • Health insurance is provided to ensure employees have access to medical care.
  • Vision insurance is included to support employees' eye health.
  • Life insurance is offered to provide financial security for employees' families.
  • Paid Time Off (PTO) is available to allow employees to take necessary breaks and vacations.