Staff Product Security Engineer

Haryana, Gurugram International Techpark, Block I Phase 1 Floors G, 3, 4, 5 · Hybrid

About this role

Work Flexibility: Hybrid or Onsite

Who we want:
We seek Product Security engineers who can help us design cyber secure medical devices and applications.

What you will do:

As a Product Cybersecurity Engineer, you will participate in project planning, product cybersecurity risk analysis, and risk mitigation strategies. You will lead various product cybersecurity tasks and activities established by product design controls and SDLC procedures. You will be involved in all facets of the robotics and enabling technology product development life cycle.


Technical Responsibilities:

  • You will perform cybersecurity risk analysis and threat modeling and develop mitigation strategies.

  • You will work closely with cross-functional teams, including Quality, Regulatory, and Marketing, in driving alignment around product Cybersecurity and HIPAA compliance.

  • You will provide input to project management on scheduling, milestone achievement, and project challenges.

  • You will participate in all product hardware and software security facets, including systems hardening, automated and manual penetration testing, automated vulnerability scanning for compliance, and issue remediation.

  • To identify security flaws, you will perform manual and automated code reviews for complex embedded and clinical application software.

  • You will develop and implement security policies and procedures to ensure compliance with industry standards.

  • You will integrate automated security testing into all phases of SDLC.

  • You will automate routine tasks and extract valuable data using various scripting languages like PowerShell, Ruby, or Python.

  • You will research and implement best practices in the product cybersecurity architecture around security systems, including improper access control, code injection, information exposure, firewalls, and multi-factor authentication.

  • You will support cybersecurity documentation requests from legal and sales teams as needed.

  • You will participate in incident response, V&E assessments and manage the resolution of security incidents.

Minimum Qualifications (Required):
Bachelor's degree in Software Engineering/ Computer Science or related discipline & 6+ years of work experience

Preferred Qualifications (Strongly desired):

  • Experience with security requirements, data security, malware analysis, vulnerability assessment, and penetration testing using off-the-shelf tools and techniques is preferred.

  • Understanding one or more security standards/frameworks like NIST 800-53, IEC80001-2-8, IEC 27002, ISO 27799, IEC 15408-2, and IEC 62443-3-3.

  • Solid understanding of Linux operating systems.

  • Experience in securing medical devices or embedded devices.

  • Understanding of networking concepts.

  • Understanding quality standards like IEC 62304, IEC 60601, and 21CRF 820.

  • Experience with threat modeling and risk assessment.

  • Security certifications such as CISSP, CSSLP, or CISM are a plus.

Travel Percentage: 10%

Company at a glance

Stryker is a global leader in medical technologies and, together with our customers, we are driven to make healthcare better. We offer innovative products and services in MedSurg, Neurotechnology and Orthopaedics that help improve patient and healthcare outcomes. Alongside its customers around the world, Stryker impacts more than 150 million patients annually. More information is available at stryker.com and careers.stryker.com.

Facts

● 2025 Sales: $25.1 billion
● Industry: Medical Instruments & Supplies
● Employees: 56,000 worldwide
● 44+ Manufacturing and R&D Locations Worldwide
● $1.6 billion spent on research and development in 2025
● ~14,600 patents owned globally in 2025
● Products sold in ~61 countries
● Fortune 500 Company
● 9 consecutive years as one a World's Best Workplace

Stryker’s social media community guidelines: https://www.stryker.com/content/m/legal/social-media-community-guidelines/en/index.html

Notice Regarding Employee Conduct on Facebook/LinkedIn
Meta/LinkedIn does not permit employers to verify or validate “employees” in the (META: “Works at” LinkedIn: “Experience”) section of users’ profiles. Please be aware that the views expressed by individuals on their personal accounts and do not necessarily represent the views of our company. If you encounter any issues with a person claiming to be our employee, we recommend using the “Report Profile” feature. If you’d like to report concerns to our Ethics Hotline, you may do so at: https://app.convercent.com/en-us/LandingPage/b6bb4e84-9fcb-ea11-a974-000d3ab9f296

Founded2004
Team Size10,001+ employees
WorkspaceHybrid
IndustryMedical Equipment Manufacturing
Location
Gurugram, Haryana, India
LinkedInLinkedIn

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?