Talent.com
Verathon
Cyber Security EngineerVerathon • Burnaby, Metro Vancouver Regional District, Canada
Cyber Security Engineer

Cyber Security Engineer

Verathon • Burnaby, Metro Vancouver Regional District, Canada
16 days ago
Salary
CA$125,000.00 yearly
Job type
  • Full-time
Job description

Verathon is a global medical device company focused on supporting customers by being their trusted partner, delivering high-quality products that endure over time and ensure clinical and economic utility. Two areas where Verathon has significantly impacted patient care, and become the market leader in each, are bladder volume measurement and airway management. The company’s BladderScan portable ultrasound and GlideScope video laryngoscopy & bronchoscopy systems effectively address unmet needs for healthcare providers and meaningfully raise the standard of care for patients. Verathon, a subsidiary of Roper Technologies, is headquartered in Bothell, Washington, USA and has international subsidiaries in Canada, Europe and Asia Pacific. For more information, please visit www.verathon.com.

Overview

The Cybersecurity Engineer is responsible for leading the system-level cybersecurity engineering activities required to design and sustain secure medical devices across Verathon's product portfolio. This role is the primary owner of product security architecture, system threat modeling, and the translation of FDA and consensus standards guidance into actionable security requirements and verification evidence. Working closely with Software Engineering, Quality, and Regulatory teams, the Cybersecurity Systems Engineer ensures that Verathon's products are designed and documented to satisfy regulatory expectations throughout the product lifecycle, from initial design through post-market sustaining activities.

Responsibilities

  • Define product security architecture, including trust boundaries, control objectives, and interface documentation; specify and review designs for authentication, authorization, cryptography, secure update mechanisms, event logging, data integrity, and system hardening
  • Lead system-level threat modeling (e.g., STRIDE / MITRE ATT&CK for IC) and allocate mitigations across hardware, firmware, and software; ensure trust-boundary assumptions are explicit, traceable, and testable
  • Derive cybersecurity requirements from FDA guidance and consensus standards (IEC 62443, IEC 81001-5-1, AAMI SW96); define verification strategies specifying required evidence, timing, and ownership
  • Produce and maintain design-level product security documentation including architecture views, control rationale, security requirements traceability matrices, and interface/external connection records
  • Own the engineering interface during penetration testing engagements: lead scope clarification, environment setup, and technical Q&A; assess design impact of findings; define remediation technical approach and support retest readiness
  • When post-release remediation is required, define technical scope and verification approach; coordinate with engineering and release functions to ensure validated deployment and documentation closure
  • Lead interoperability security assessments for device interfaces with external systems, networks, and devices; evaluate security and safety risks across normal and fault operating modes and define appropriate risk controls for interface trust boundaries
  • Conduct CVE impact analysis for fielded products; assess applicability of newly disclosed vulnerabilities to system-level components and architecture; support prioritization and remediation scoping
  • Contribute to release readiness for security-driven sustaining updates, including inputs to patch packaging, documentation updates, and design change records
  • Collaborate with the Software to ensure security requirements are correctly allocated and verification evidence is complete across the system
  • Work cross-functionally across Systems, Software, Quality, and Regulatory disciplines to align on security architecture decisions and ensure consistent implementation
  • Own and maintain the Product Security Management Plan and associated Product Security Management File, ensuring all required cybersecurity activities are planned, traceable, and audit-ready
  • Support Verathon's Quality Management System (QMS), including participation in design reviews, ECO procedures, and DHF/regulatory submission artifact preparation
  • Stay current with evolving FDA cybersecurity guidance, NIST CSF, and relevant medical device security standards; identify implications for Verathon products and processes

Qualifications

  • Bachelor's degree in Systems Engineering, Electrical Engineering, Computer Engineering, or a related technical discipline is required
  • 5+ years of demonstrated experience in systems engineering, product security engineering, or a related field, with at least 3 years focused on cybersecurity for connected or regulated products
  • Demonstrated experience with system-level threat modeling methodologies (e.g., STRIDE, PASTA, or TARA as defined in IEC 81001-5-1 / AAMI SW96)
  • Working knowledge of medical device cybersecurity regulatory requirements, including FDA premarket and postmarket cybersecurity guidance, IEC 81001-5-1, AAMI SW96, and IEC 62443
  • Experience defining security requirements and producing verification evidence in a regulated product development environment (FDA QSR / ISO 13485 QMS preferred)
  • Experience with CVE/NVD triage and vulnerability impact assessment at the system level including CVSS-based vulnerability scoring and cybersecurity risk assessment methodologies
  • Experience supporting or managing third-party penetration testing engagements, including findings triage and remediation scoping, is strongly preferred
  • Working knowledge of networking fundamentals (ports, protocols, firewalls) and OS-level security concepts across Linux and/or Windows environments relevant to connected medical devices
  • Relevant security certification (e.g., CISSP, CISM, CEH, CompTIA Security+, or equivalent) is preferred; candidates with equivalent demonstrated experience will be considered
  • Familiarity with SBOM concepts and supply chain security considerations for medical devices is an asset
  • Strong written communication skills with demonstrated ability to produce clear, audit-ready technical documentation

Why Join Us?

  • Be part of an innovative team that is dedicated to improving patient outcomes.
  • Engage in meaningful work that makes a difference in the healthcare industry.
  • Competitive salary and comprehensive benefits package.
  • Salary range - $125,000 - $193,400 (Compensation will vary based on skills, experience and location; it is not typical to be hired at or above the top of the salary range).
  • Full-time employees who are not on a commission plan are eligible for Verathon’s annual bonus plan based on company and individual performance.
  • Verathon provides a competitive benefits package including a generous HCSA, paid holidays, paid time off and a retirement matching plan.
#J-18808-Ljbffr
Create a job alert for this search

Cyber Security Engineer • Burnaby, Metro Vancouver Regional District, Canada

Similar jobs

Senior Security Engineer Focused on Detection and Response Frameworks

1PasswordVancouver, Metro Vancouver Regional District, CA
Full-time

Join as a Senior Security Engineer to strengthen detection and incident response frameworks.Lead initiatives that optimize security measures and enhance organizational resilience in a remote enviro... Show more

 • Promoted

Cyber Security Engineer - Vancouver

Yeah! GlobalVancouver, British Columbia, Canada
Full-time

About the job Cyber Security Engineer - Vancouver.Note: This job does not offer any Visa sponsorship.We are looking for applicants already living in Canada.Overview: Our client is seeking a highly ... Show more

 • Promoted

Junior Cloud Security Engineer

Peoples GroupVancouver
Full-time

We are hiring for this position out of our Toronto, Vancouver and Calgary offices.Successful candidates who apply outside of these areas will be expected to relocate and reside in a location that i... Show more

 • Promoted

Senior Lead Application Security Engineer

IFSVancouver
Full-time +1

IFS is a billion-dollar revenue company with 7000+ employees on all continents.Our leading AI technology is the backbone of our award-winning enterprise software solutions, enabling our customers t... Show more

 • Promoted

Senior Security Engineer

fispanVancouver, Canada
Permanent

Position OverviewAs a Senior Security Engineer, you will provide leadership, expertise, and advanced security analysis capabilities within the organization's security operations.Operating at a ... Show more

 • Promoted

Senior Security Engineer - Devsecops & Threat Modeling - C$70 - C$90 An Hour

New Value SolutionsRichmond, Canada
Full-time

A national IT consulting company in Canada is looking for a Security Engineer to join a DevSecOps team.The role involves performing threat modeling, secure code reviews, and penetration testing, en... Show more

 • Promoted

Senior Security Engineer in Cloud Environments

Themis Solutions Inc.Burnaby
Full-time

Take on a pivotal role as a Senior Infrastructure Security Engineer at Clio, the leader in legal AI technology.Ideal for candidates experienced in cloud security, with a hybrid work model across Ca... Show more

 • Promoted

Senior Network Architect - Enterprise Security & Hybrid

VancityVancouver, Metro Vancouver Regional District, Canada
Full-time +1

A prominent Canadian credit union is seeking a skilled Network Architect to provide technical leadership in managing its network infrastructure.This full-time permanent position involves ensuring t... Show more

 • Promoted

Senior Application Security Engineer - Hybrid (Vancouver)

Spring Financialvancouver, metro vancouver regional district, Canada
Full-time

A leading financial technology firm is seeking a Senior Application Security Engineer to lead its application security strategy.The role requires over 5 years of experience in application security,... Show more

 • Promoted

Security Infrastructure Engineer

TailscaleVancouver, Metro Vancouver Regional District, Canada
Full-time

Tailscale is building the new Internet by delivering software that makes it easy to securely interconnect people and their devices, no matter where they are.From hobbyists to multinational corporat... Show more

 • Promoted

Senior Security Engineer & Identity Engineer - $145,000 - $175,000 A Year

LaterVancouver, Canada
Permanent

Senior Security Engineer & Identity Engineer Later is the world's most intelligent influencer marketing company, built to give brands the confidence to create unforgettable campaigns.By com... Show more

 • Promoted

Cyber Security Architect

Intuitive.aiVancouver, Metro Vancouver Regional District, Canada
Full-time

Talent Acquisition Leader | Hiring Cloud Professionals Globally.Cloud is one of the fastest-growing (INC 5000, CRN) Cloud & SDx solution and services companies supporting enterprise customers on a ... Show more

 • Promoted

Security Engineer: Build Threat-Detecting Cloud Tools

RenderVancouver, Metro Vancouver Regional District, Canada
Full-time

A leading cloud platform company is seeking a talented individual for a full-stack security role.In this position, you will own the security lifecycle, implement monitoring systems, and directly im... Show more

 • Promoted

Security Engineer I (Application Security Engineer) - C$41.6 - C$52.4 An Hour

WorkSafeBCRichmond, Canada
Full-time

Want to use your expertise to connect to an IT career with a difference? Join our team as a Security Engineer I and help shape the future of secure applications that protect millions of British Col... Show more

 • Promoted

Senior Security Engineer - Vancouver

Tigera, Inc.Vancouver, British Columbia, Canada
Full-time

Join Tigera as a Senior Security Engineer focused on cloud security and vulnerability management in a hybrid work environment from Vancouver.This role combines technical expertise with a commitment... Show more

 • Promoted

Senior Cyber Security Engineer – Architecture & Strategy - $148,000 - $194,300 A Year

Performance Apparel CompanyVancouver, Canada
Full-time

A leading performance apparel company in Vancouver seeks an experienced Cyber Security Engineer to enhance and protect their digital ecosystem.Responsibilities include implementing security solutio... Show more

 • Promoted

Client-Facing Cyber Security Engineer & Onboarding Lead - $80,000 - $100,000 A Year

Cybersecurity CompanyVancouver, Canada
Full-time

A fast-growing cybersecurity company based in Vancouver seeks a Customer Support Cyber Security Engineer.This role requires technical expertise to assist clients with onboarding and ongoing support... Show more

 • Promoted

Remote Presales Engineer for Global Network Security

StealthWatchVancouver, Metro Vancouver Regional District, CA
Remote
Full-time

A leading technology firm is seeking a Presales Engineer to join their team.This role offers the chance to work remotely from anywhere in Canada and requires expertise in network and security techn... Show more

 • Promoted

Cyber Security Engineer - C$110,000 - C$125,000 A Year

Pan American SilverWest End, Canada
Full-time

Designs, implements, and improves technical security controls to protect information systems, networks, and data.Focuses on engineering scalable, resilient, and automated security solutions. Show more

 • Promoted

Cyber Security - Systems Security Engineer

49NorthVancouver, Canada
Full-time

North is seeking a talented Systems Security Engineer in Ottawa or Richmond, BC.Focus on improving security architectures by addressing vulnerabilities and enhancing system resilience.In this posit... Show more