We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Product Security Engineer II

Terumo BCT, Inc.
life insurance, sick time, 401(k)
United States, Colorado, Lakewood
Feb 03, 2026

Requisition ID: 34620

At Terumo Blood and Cell Technologies, our 8,000+ global associates proud to come to work each day, knowing that what we do impacts the lives of patients around the world. For Terumo, for Everyone, Everywhere.

We make medical devices and related products that are used to collect, separate, manufacture and process various components of blood and cells. With our innovative technologies and service offerings, we touch a patient's life every second of every day and are committed to continuing to increase the number of patients we serve. Advancing healthcare with heart.

With some of the best and brightest minds in the industry, an unmatched global footprint, comprehensive benefits and a distinct culture, Terumo Blood and Cell Technologies is a great place to work, grow and be part of a team that is focused on making a difference. Join us and help shape wherever we go next. You create your future and ours.

Product Security Engineer II

JOB SUMMARY

Terumo Blood and Cell Technologies (TBCT) designs, engineers, and builds medical technology that helps save lives. TBCT integrates cybersecurity throughout the total product lifecycle to ensure our products are safe, secure, and effective.

The Product Security Engineer partners with R&D, Quality, Regulatory, and other cross-functional stakeholders to define, implement, and support cybersecurity activities from initial concept through decommissioning. This role drives secure-by-design practices, facilitates product security risk management, and ensures compliance with TBCT's Product Security Lifecycle Procedure and all associated procedures and work instructions.

ESSENTIAL DUTIES



  • Define, maintain, and evolve objective, testable, technology-agnostic product security requirements, ensuring traceability to product security needs, risks, and regulatory expectations.
  • Analyze complex technical issues, document findings, and partner with engineering and product teams to drive implementation of risk-based, secure-by-design solutions.
  • Lead the development and ongoing maintenance of Product Security Plans, Threat Models, Product Security Reports, and related lifecycle deliverables, ensuring accuracy and alignment throughout the product lifecycle.
  • Guide engineering teams in vulnerability identification and analysis, assess post-market risk, and lead post-market activities, including threat intelligence integration, vulnerability management, coordinated disclosure, patch planning, and product incident response.
  • Lead assessment of third-party components and suppliers, oversee SBOM creation and maintenance, monitor component lifecycle risk, and proactively identify vulnerabilities or end-of-support concerns.
  • Lead contributions to customer-facing and regulatory documentation, including labeling content and cybersecurity documentation for submissions, clearly communicating complex technical findings verbally and in writing.
  • Drive updates and continuous improvement of product security procedures, work instructions, and technical guidance documents, ensuring alignment with evolving regulatory and industry standards.
  • Provide technical leadership and mentorship to engineering teams, and collaborate closely with R&D architects, Quality, Safety, and Regulatory partners to ensure a cohesive and consistent security posture across the product portfolio.



OTHER DUTIES AND RESPONSIBILITIES



  • Develop, maintain, and enhance the product security test lab environment.
  • Actively participate in and influence regulatory, safety, and design reviews.
  • Conduct penetration testing directly or manage and oversee third-party penetration testing vendors, including scoping, execution, and review of findings.
  • Play a key role in product incident response activities.
  • Represent Product Security in customer, auditor, and regulatory discussions as a subject matter expert.



PREFERRED / NICE-TO-HAVE EXPERIENCE & SKILLS



  • Experience with PKI and certificate management for medical devices, including provisioning, rotation, secure storage, and certificate-based authentication.
  • Familiarity with Azure Cloud Services, including identity and access management, secure architecture patterns, and application/service hardening in cloud-hosted environments.
  • Hands-on experience supporting or maintaining a Product Security Lab environment.
  • Practical experience with embedded device security, secure boot, cryptographic services, firmware integrity, or hardware security features.
  • Understanding of medical device cybersecurity standards such as FDA Premarket Guidance, post market expectations, IMDRF, AAMI TIR57/TIR97, ISO/IEC 81001-5-1, and SBOM-related standards (SPDX, CycloneDX).
  • Familiarity with DevOps or DevSecOps pipelines, including CI/CD security tooling and automation.
  • Experience developing or maintaining secure communication protocols (TLS, mutual authentication, key exchange mechanisms).


  • Experience using risk analysis and mitigation methodologies.
  • Quality and continuous improvement mindset.
  • Demonstrated ability to communicate effectively both verbally and in writing.



MINIMUM QUALIFICATION REQUIREMENTS

Education

Bachelor's degree in computer science or equivalent education and experience sufficient to perform the essential functions of the job.

Experience



  • Minimum 5+ years of relevant experience.
  • Demonstrated experience conducting product and/or cybersecurity practices in a regulated industry or environment.
  • Strong working knowledge of global standards and frameworks (ISO 81001-5-1, AAMI TIR57/TIR97, NIST CSF, FDA pre-/post-market guidance).
  • Professional cybersecurity certification (e.g., CISSP, CEH, or similar) strongly preferred.



-Or-

An equivalent competency level acquired through a variation of these qualifications may be considered.

PHYSICAL REQUIREMENTS

Typical Office Environment requirements include reading, speaking, hearing, close vision, walking, bending, sitting, and occasional lifting up to 20 pounds.

The physical demands described here are representative of those that must be met by an associate to successfully perform the essential duties of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential duties.

Target Pay Range:$135,800.00to$169,700.00 -Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, and alignment with market data
Target Bonus on Base:7.0%

At Terumo Blood and Cell Technologies, we provide competitive total reward offerings that consist of compensation, benefits, recognition, along with a wealth of other well-being, work-life and recognition programs which support in unlocking the potential for you and your family.Included in our expansive list of benefits offerings are multiple group medical, dental and vision plans, a robust wellness program, life insurance and disability coverages, also a variety of voluntary programs such as group accident, hospital indemnity, critical illness, pet insurance and much more.To help you save for retirement, we offer a 401(k) plan with a matching contribution and for work-life balance we have vacation and sick time programs for associates.For us, it's about protecting the personal welfare of our associates and their families, helping to achieve personal goals and offering those extra touches for convenience, security and overall peace of mind.




  • Terumo Blood and Cell Technologies is part of Terumo Group, founded in 1921 and headquartered in Tokyo, Japan.
  • In 2024, Terumo Blood and Cell Technologies reached $1.5 billion in revenue.
  • We employ nearly 8,000 associates globally, with global headquarters in Lakewood, CO, U.S., and regional headquarters in Brussels, Buenos Aires, Singapore and Tokyo.
  • We manufacture devices, disposable sets and solutions at our facilities in Belgium, India, Japan, Northern Ireland, the U.S. and Vietnam. Our global presence enables us to serve customers in more than 130 countries.
  • Our core values help set our direction, guide our actions and keep us true to our corporate mission of contributing to society through healthcare.

    • Respect - Appreciative of others
    • Integrity - Guided by our mission
    • Care - Empathetic to patients
    • Quality - Committed to excellence
    • Creativity - Striving for innovation


  • We contribute to the Leukemia and Lymphoma Society (LLS), raising $2.4 million USD since 2025.



We are proud to be an Equal Opportunity Affirmative Action Employer. All applicants will be afforded equal opportunity without discrimination because of race, color, religion, sex, gender identity or expression, sexual orientation, marital status, order of protection status, national origin or ancestry, citizenship status, age, physical or mental disability unrelated to ability, military status or an unfavorable discharge from military service.

Terumo Blood and Cell Technologies is committed to providing a safe, healthy and secure working environment.Our Colorado campus locations are tobacco-free workplaces, and we maintain a drug-free workplace and perform pre-employment substance abuse testing and detailed background verification.


Applied = 0

(web-54bd5f4dd9-cz9jf)