Ambit Iberia logo

Senior Product Security Engineer

Ambit Iberia
Remote
Remote· about 4 hours ago

Straight from Ambit Iberia’s careers page. Apply on the company site — no recruiter, no middleman.

Explore more remote Security Engineer jobs — salaries, top companies, and the latest openings.See all →

We are looking for a Senior Product Security Engineer to contribute to the security of products, medical devices, and healthcare solutions throughout their entire lifecycle within an international and highly regulated environment.

In this role, you will have a strong hands-on technical focus, working directly on product security posture, threat modeling, cybersecurity risk assessments, vulnerability management, and security testing. You will collaborate closely with Software Development, Cloud, Product Security, and Incident Response teams to identify security risks, define appropriate controls and mitigations, and continuously improve the security of products and platforms.

TASKS & RESPONSIBILITIES 🚀:

  • Define technical security and privacy requirements for products, medical devices, and healthcare solutions.

  • Conduct Threat Modeling and Cybersecurity Risk Assessments to identify threats, vulnerabilities, and potential impacts.

  • Analyze product security posture and define appropriate risk mitigation measures.

  • Design and maintain security and privacy controls throughout the product lifecycle.

  • Manage and assess vulnerabilities during pre-market and post-market activities.

  • Assess vulnerabilities identified through SCA, SAST, DAST, IaC, Penetration Testing, and other security testing activities.

  • Provide technical input into remediation plans and follow up on remediation activities.

  • Investigate complex security issues and provide technical recommendations.

  • Support Security Incident Response and forensic activities together with specialized security teams.

  • Technically coordinate external security testing activities, including penetration testing, validation of findings, and remediation follow-up.

  • Develop and maintain technical documentation, processes, playbooks, and Product Security tools.

  • Stay up to date with emerging security threats, technologies, and best practices.

  • Act as a technical reference for Product Security, sharing knowledge and supporting less experienced security professionals.

SKILLS 🤹:
  • Bachelor’s degree in Engineering, Computer Science, or a related field.

  • 7+ years of experience in Security Engineering, Product Security, Application Security, Vulnerability Management, or related areas.

  • Hands-on experience working with software development teams and Cloud platforms.

  • Strong experience in Threat Modeling and Cybersecurity Risk Assessment.

  • Solid experience in vulnerability analysis and remediation strategies.

  • Practical experience with SCA, SAST, DAST, IaC, and/or Penetration Testing.

  • Good understanding of Application Security and security throughout the Software Development Lifecycle.

  • Experience working in Healthcare, Medical Devices, or other regulated industries.

  • Strong knowledge of standards and regulations such as ISO 27000, FDA Guidance, MDGC, HITRUST, and GDPR.

  • Strong analytical and problem-solving skills, with the ability to assess complex technical security issues.

  • Excellent communication skills and ability to collaborate with international technical teams.

  • Fluent English, both written and spoken.

 

NICE TO HAVE:
  • Experience with Security Incident Response and forensic activities.

  • Certifications such as CISSP, CISM, CISA, CEH, GIAC, or ISO 27001 Lead Auditor.

  • Experience in Medical Device or Digital Health security.

  • Knowledge of privacy requirements and international privacy regulations.

  • Experience developing Security Champion or Security Awareness initiatives.

  • Experience acting as a technical mentor or subject matter expert.

  • Willingness to travel up to 20%.

SCHEDULE 🕘:
  • 08h-17h from Monday to Friday (flexible)

  • 100% remote from Spain or Portugal

CONDITIONS 🌱:
  • Salary package based on your profile. We will discuss it on our first call.

  • Permanent contract

  • Learning & Development

  • Friend Referral Program

 

Our goal is that you are well in every way!

Zscaler logo

Zscaler

Security Compliance Program Manager (Remote)

Remote
$140k–$175k
✓ From careers page· about 2 hours ago
ICF logo

ICF

Enterprise Data & AI Lead (Remote)

Remote
Reston, VA$90k–$152k
✓ From careers page· about 4 hours ago
McKesson logo

McKesson

Senior Data Quality Analyst

Remote
Columbus, OH$105k–$174k
✓ From careers page· about 10 hours ago
Cape logo

Cape

GRC Engineer

Remote
Arlington, VA$155k–$185k
✓ From careers page· about 11 hours ago

Discover More than 100,000 Hidden Remote Jobs Before Everyone Else

Unlock All Remote Jobs Today

Simple pricing. Big savings on Quarterly and Yearly.

Monthly Access

$19/month
  • Instant access to fresh remote jobs from 500+ companies
  • New opportunities added hourly, often 3-7 days before anywhere else
  • Advanced filtering by role type, stack, pay, and location
  • Priority customer support
Start 7-day trial — $2.95
Most Popular

Yearly Access

$59/year
  • Everything in Monthly
  • Save $169 (~74%) vs paying monthly
  • Average job search takes ~6 months - get covered for the whole journey
  • Less than the cost of one lunch per month for competitive advantage
  • Equivalent to just ~$4.92/month
Start 7-day trial — $2.95