Job ID R-506498 Date posted January 13, 2025

Be part of something bigger at BD. Here, you’ll join a driven, agile engineering team working in a startup-like environment that has the backing and resources of a Fortune 500 company. In engineering, you could be involved in everything from operations, production and construction to information technology and maintenance environments, all while analyzing and developing solutions to further our engineering capabilities. You’ll use your talent and track record of solving complex problems to achieve one singular goal: advancing the world of health™. At BD, you can make a true difference of one.

  • Job Type:
    Full-Time
  • Job Level:
    Entry to Senior
  • Travel:
    Varies
  • Salary:
    Competitive
  • Glassdoor Reviews and Company Rating

Responsibilities

Job Description Summary

We are seeking a talented Product Security and Threat Analyst Engineer to join our Post-Market Vulnerability Team. You will be at the forefront of our product security cybersecurity defense. This role will focus on identifying, analyzing, and mitigating cyber threats and vulnerabilities affecting BD’s medical products. The successful candidate will collaborate with cross-functional teams to ensure products meet the highest standards of security and regulatory compliance, while proactively improving threat detection and response capabilities. You will play a crucial role in securing our extensive range of medical devices and systems against cyber threats. You will be responsible for monitoring, analyzing, and responding to incoming security threats, conducting in-depth research on emerging cyber threats, vulnerabilities, and attack vectors. You will evaluate product impact and reassess threats based on product security factors. You will be required to use your deep understanding of threat research to document possible threats and their impact to BD products.

The primary work will involve vulnerability assessments, which includes threat research and analysis, potential impact, exploitability. Assessments will involve product and code analysis to determine the exploitability of vulnerability, as well as assessing safety risk, severity and likelihood.

Job Description

Responsibilities:

  • Develop and implement strategies to identify, analyze, and mitigate cyber threats targeting BD products.
  • Enhance threat hunting activities to detect and respond proactively to potential security risks.
  • Conduct in-depth threat research on vulnerabilities, attack vectors, and possible impacts.
  • Develop and maintain artefacts required for ATO submissions, including vulnerability scans, System Security Plans (SSPs), and Risk Assessment Reports
  • Determine and document likelihood of exploitability and potential safety risks for potentially impacted products.
  • Calculate residual risk for vulnerabilities by considering compensating controls, mitigations, and operational environments.
  • Document all threat research and vulnerability assessments in clear, concise, and actionable reports.
  • Work with BD public relations teams, providing accurate and timely information on threat status, impact, and analysis for product leadership and customers.
  • Partner with product security officers and cross-functional teams to define threat impacts, implement mitigations, and coordinate responses.
  • Support the preparation of regular threat intelligence reports and briefings to senior management and stakeholders.
  • Continuously enhance threat intelligence processes, tools, and technologies.
  • Stay up to date with the latest cybersecurity trends, vulnerabilities, and emerging threats.
  • May perform other duties as required.

Qualifications:

  • At least 5 years of experience in cybersecurity, with expertise in threat hunting and vulnerability analysis.
  • Strong knowledge of cybersecurity threats, vulnerabilities, attack vectors, and controls (e.g., authentication, cryptography, secure coding).
  • Familiarity with DevSecOps practices and tools for SCA, SAST, DAST, and vulnerability scanning.
  • Experience with security frameworks such as NIST 800-53, ISO 27001, GDPR, or IEC 81001-5.
  • Knowledge and experience with various programming languages such as C/C++, C#, Python, JavaScript, Ruby, PHP, Go, Swift  a plus
  • Strong understanding of MS Windows and Linux operating systems (past and current) and the .NET framework.
  • Experience with threat intelligence platforms, threat hunting tools, and cybersecurity frameworks.
  • Experience implementing and demonstrating compliance to security frameworks such as NIST 800-53, IEC 81001-5, HITRUST, HIPAA, GDPR, ISO 27001, SOC 2
  • Ability to work in a fast-paced, dynamic environment and manage multiple priorities.
  • Strong analytical and problem-solving abilities.
  • Strong written and verbal communication skills.
  • Strong technical acumen.
  • Relevant certifications such as Security+, CEH, or GIAC are a plus.

Required Skills

Optional Skills

.

Primary Work Location

IND Bengaluru - Technology Campus

Additional Locations

Work Shift

Apply

Success Profile

What makes a successful Engineer Professional at BD? Check out the top traits we’re looking for and see if you have the right mix.

  • Collaborative
  • Conceptual
  • Creative
  • Imaginative
  • Problem-solver
  • Team player

Advancing the world of health™

BD is one of the largest global medical technology companies in the world and is advancing the world of health™ by improving medical discovery, diagnostics and the delivery of care. BD helps customers enhance outcomes, lower costs, increase efficiencies, improve safety and expand access to health care.

As a new employee what I like most about BD are the many learning and professional developmental opportunities for growth offered. It is good to know that there are so many resources to choose from.


Zakiyyah Walker
Staff Engineer

Since joining BD, I really have liked the people I work with on a daily basis and the collaboration towards common goals.


Michael Carrano
Senior Program Manager

BD is full of passionate, loyal, and driven people that have a common goal of advancing healthcare without sacrificing quality or service.


Justyna Zielinska
Project Manager

BENEFITS

Healthcare

Healthcare FSA

Employer Matching

Tuition Reimbursement

Professional Development

Maternity and Paternity Leave

Paid Time Off

Competitive Compensation

Awards &
Recognition

Working in

Bengaluru

Take a look at the map to see what's nearby.

Don’t Miss Out

Receive customized job alerts based on your function and/or location search criteria.

Interested in

Join Our Talent Pool

Join our talent pool

Upload your resume to help our recruiters match you to the right job. They'll be in touch if they find a good fit.

BD Fraud Notice

Please be aware of potentially fraudulent job postings on other websites or suspicious recruiting email or text messages that attempt to collect your confidential information. If you are concerned that an offer of employment with BD, CareFusion or C.R. Bard might be a scam, please verify by searching for the posting on the careers page or contact us at ASC.Americas@bd.com. For more information click here.