Jobs
>
San Diego

    Director Cybersecurity Engineering - San Diego, United States - Dexcom

    Default job background
    Description
    About DexcomFounded in 1999, Dexcom, Inc

    (NASDAQ:

    DXCM), develops and markets Continuous Glucose Monitoring (CGM) systems for ambulatory use by people with diabetes and by healthcare providers for the treatment of people with diabetes.

    The company is the leader in transforming diabetes care and management by providing CGM technology to help patients and healthcare professionals better manage diabetes.

    Since the company's inception, Dexcom has focused on better outcomes for patients, caregivers, and clinicians by delivering solutions that are best in class - while empowering the community to take control of diabetes.

    Dexcom reported full-year 2022 revenues of $2.9B, a growth of 18% over 2021.

    Headquartered in San Diego, California, with additional offices in the Americas, Europe, and Asia Pacific, the company employs over 8,000 people worldwide.


    Meet the team:
    Dexcom is seeking a Director of Product Security Engineering, reporting to the Chief Product Security Officer.

    The role will serve as a key member of the product security leadership team, and as an expert advisor to the VP of Product Security Engineering.

    This is a technical leadership role that covers the security spectrum from building to breaking in order to ensure that our products and operating environments are secure from the start and remain resilient to an ever-evolving threat.

    Your team is globally responsible for product security operations, infrastructure security, DevSecOps security testing, security automation, penetration testing, security research, and security training.

    The Director of Product Security Engineering will play a lead role in overseeing the Dexcom Secure Development Lifecycle which ensures that Dexcom products are secure by design.


    Where you come in:
    Mature our Secure Software Development Lifecycle and educate and onboard product teams for consistent adoption.

    Experience leading a team that proactively assesses security risk through technical deep dives, , requirements, design, and implementation reviewsBe a security advocate and subject matter expert within the organization and be able to effectively communicate security risk and concepts to both technical and non-technical audiencesHelp improve security tooling, automation, processes and how product teams approach security in their day to day workCollaborate closely with the Security, Legal, Privacy, IT, QA, RA and R&D/Engineering teams to to ensure the security of Dexcom ProductsMonitor our DevSecOps security testing efforts and custom monitoring tools for security quality defects and help triage and prioritize and oversee and enforce remediationEvolve policy around our SDLC to ensure security practices are embedded in all aspects of product design and development.

    Providing role-based training and guidance for software, cloud and hardware securityWork closely with Product Management to develop security requirements and acceptance criteria that clearly describe customer requested security features, capabilities and opportunities for growth initiativesHave responsibility for ensuring product security related adherence to evolving regulatory landscape.

    Comprehensive experience in selecting, operating, and rationalizing security tooling for common security processesProficiency in web and application security frameworks and best practices (OWASP, BSIMM).


    What makes you successful:


    7 or more years cyber security management experiencePartnering with our Education, Awareness, and Training function to provide ongoing training and support of development teams in the areas of tools, responsiveness, and processesExperience with product security and medical regulations since the medical industry is highly regulated.

    In depth knowledge of firmware, IoT, and hardware security as well as cloud security.

    Container & VM Security ExperienceAI Tool / Prompt Engineering Experience with Gemini, OpenAI ChatGPT and/or othersExperience in supply chain securityDemonstrated knowledge of identity and access managementSystem design and programming & Threat modeling, secure code review experienceHands on Security automation experience deploying and managing DAST, SAST, IAST, Fuzzing and other DevSecOps controls in CI/CD PipelinesDeep technical expertise and thought leadership to implement and accelerate the adoption of the very best cyber engineering practicesHands-on penetration testing experience and experience managing penetration testersExperience managing DevSecOps and Security Operations/SOC teamsExperience in the medical industry is preferred but not requiredYou understand software/firmware/application testing concepts such as:Low-level hardware attacks including fault-injection & side-channel attacksHigh-Level hardware attacks such as identification & analysis of serial communicationsBare-metal firmware reverse engineeringYou have 3 or more years of experience with Cloud Infrastructure Penetration Testing and IOT & Firmware Device Penetration Testing experienceWhat you'll get:A front row seat to life changing CGM technology.

    Learn about our brave #dexcomwarriors community.
    A full and comprehensive benefits program.
    Growth opportunities on a global scale.
    Access to career development through in-house learning programs and/or qualified tuition reimbursement.
    An exciting and innovative, industry-leading organization committed to our employees, customers, and the communities we serve.


    Travel Required:
    15-25%Experience and

    Education Requirements:

    Typically requires a Bachelor's degree with 15+ years of industry experienceRequires a degree in a technical discipline9+ years of successful management experience in relevant industry7+ years cybersecurity management experience including experience managing Security Operations, DevSecOps and penetration testing teams as well as 3+ years product security experienceProfessional Security Certifications such as CISSP, SANS GIAC, CISM, OSCP, CEHCloud Computing certifications i.e.

    CCSK, and Certs for GCPExperience with threat modeling and hazard-analysis frameworks such as STAMP, STRIDE, etc.
    Experience with Security Standards and Frameworks including NIST 800-53, HIPAA, NIST CSF, CMMC, ISO 27001, CSA CCMUnderstanding of DevSecOps concepts, tools and processesExperienced in Security Training & Awareness & Incident Response planning and execution

    Remote Workplace:

    Your location will be a home office; you are not required to live within commuting distance of your assigned Dexcom site (typically 75 miles/120km).


    If you reside within commuting distance of a Dexcom site (typically 75 miles/120km) a hybrid working environment may be available.

    Ask about our Flex workplace option.


    Please note:

    The information contained herein is not intended to be an all-inclusive list of the duties and responsibilities of the job, nor are they intended to be an all-inclusive list of the skills and abilities required to do the job.

    Management may, at its discretion, assign or reassign duties and responsibilities to this job at any time.

    The duties and responsibilities in this job description may be subject to change at any time due to reasonable accommodation or other reasons.

    Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.
    An Equal Opportunity Employer.

    All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

    Dexcom's AAP may be viewed upon request by contacting Talent Acquisition at you are an individual with a disability and would like to request a reasonable accommodation as part of the employment selection process, please contact Dexcom Talent Acquisition at the OFCCP's Pay Transparency Non Discrimination Provision at this link.

    Meritain, an Aetna Company, creates and publishes the Machine-Readable Files on behalf of Dexcom.

    To link to the Machine-Readable Files, please click on the URL provided:

    all Staffing and

    Recruiting Agencies:
    Our Careers Site is only for individuals seeking a job at Dexcom.

    Only authorized staffing and recruiting agencies may use this site or to submit profiles, applications or resumes on specific requisitions.

    Dexcom does not accept unsolicited resumes or applications from agencies. Please do not forward resumes to the Talent Acquisition team, Dexcom employees or any other company location. Dexcom is not responsible for any fees related to unsolicited resumes/applications.


    Salary:
    $190, $316,800.00

    #J-18808-Ljbffr


  • Highbury Defense Group, an Accelint company San Diego, United States

    HDG is currently on the lookout for Cybersecurity Engineers. The chosen candidates will undertake a range of responsibilities, including delivering top-notch engineering support services, software engineering, and cybersecurity engineering. This position entails being a key membe ...


  • Client Server Software Solutions San Diego, United States

    Job Description · Job DescriptionJob Description and Tasks: · The Cybersecurity Engineer to focus on advancing the current technology for cyber situational awareness, vulnerability remediation and asset management to include, but not limited to: · Use Agile Development Operation ...


  • SAIC San Diego, United States

    SAIC is seeking cleared (Secret) Cybersecurity Engineers to support Project Overmatch · . Candidates will be responsible for providing high quality engineering support services, software engineering and cybersecurity engineering. In this role, the Cybersecurity Engineer will be ...


  • Highbury Defense Group San Diego, United States

    Job Description · Job DescriptionDescription:The WAM Senior Cyber Security Engineer is responsible for cyber security engineering support to the PMW/A 170 WAMS program with duties including: · Attend all technical reviews for WAMS and provide expert input and recommendations on s ...


  • Imagine One Technology & Management Ltd San Diego, United States

    Job Description · Job DescriptionImagine One Technology & Management is currently seeking several Cybersecurity Engineers "contingent" on award of the associated work to the Imagine One Team. These engineers support the U.S. Navy in San Diego, California. · Experience Requirement ...


  • Booz Allen Hamilton San Diego, United States Full time

    Job Number: R0194687 · Cybersecurity Engineer, SeniorThe Opportunity: · Are you looking for an opportunity to share your experience in cybersecurity to safeguard our nation? As a systems security and network security engineer, you can identify the tools and applications needed t ...


  • Highbury Defense Group San Diego, United States

    Job Description · Job DescriptionDescription:HDG is currently on the lookout for Cybersecurity Engineers. The chosen candidates will undertake a range of responsibilities, including delivering top-notch engineering support services, software engineering, and cybersecurity enginee ...


  • SAIC San Diego, United States

    · SAIC is looking for a Cybersecurity Systems Engineer in San Diego, CA · SAIC is looking for TS/SCI cleared Cybersecurity Systems Engineering candidates who are experienced in Information Assurance (IA) and Cybersecurity to support an Intelligence, Reconnaissance and Surveilla ...


  • Oneida Technical Solutions San Diego, United States

    Job Description · Job DescriptionOneida Technical Solutions, LLC (OTS), was founded in 2014 and quickly established itself as a reliable partner capable of providing a variety of information technology and cyber solutions across highly complex, highly regulated and highly secure ...


  • SAIC San Diego, United States

    · SAIC is seeking cleared (Secret) Cybersecurity Engineers to support Project Overmatch. Candidates will be responsible for providing high quality engineering support services, software engineering and cybersecurity engineering. In this role, the Cybersecurity Engineer will be a ...


  • Imagine One San Diego, United States

    Job Title: Cybersecurity Analyst · Job Location: San Diego, California · Job Code: · Imagine One Technology & Management is currently seeking several Cybersecurity Engineers "contingent" on award of the associated work to the Imagine One Team. These engineers support the U. ...


  • Booz Allen Hamilton San Diego, United States

    Job Number: R0198230 · Cybersecurity Engineer The Opportunity: · As a cybersecurity engineer, you understand the value of hunt-forward operations, and you know that battles are won in the grey. At Booz Allen, you can use your cyberspace operations experience to create solutions ...


  • Client Server Software Solutions San Diego, United States

    Job Description · Job Description · Job Description and Tasks: · The Cybersecurity Engineer to focus on advancing the current technology for cyber situational awareness, vulnerability remediation and asset management to include, but not limited to: · Use Agile Development Opera ...


  • Qualcomm San Diego, United States

    · Company: · Qualcomm Incorporated Job Area: · Information Technology Group, Information Technology Group > Cyber Security Engineering General Summary: · What's Qualcomm all about: As the world's leading wireless tech innovator, we push the boundaries of what's possible to en ...


  • Chugach Alaska San Diego, United States

    About Us · When you work at Chugach Government Solutions (CGS), you join a proud legacy of supporting missions while sustaining culture. · The federal division of Chugach Alaska Corporation, CGS has been supporting critical missions as a government contractor for over 25 years. ...


  • Sellers & Associates, LLC San Diego, United States

    Share this job as a link in your status update to LinkedIn. · Job Title / Labor Category Title · Cybersecurity Engineer II · Location · Security Clearance Requirements · TS/SCI · Job Description · Sellers & Associates, LLC (S&A) is a Veteran Owned Small Business (VOSB) that provi ...


  • SAIC San Diego, United States

    Description · SAIC is looking for a Senior Cybersecurity Systems Engineer in San Diego, CA · SAIC is looking for TS/SCI cleared Cybersecurity Systems Engineering candidates who are experienced in Cybersecurity to support multiple programs for our DoD customer within Program Execu ...


  • Dark Wolf Solutions, LLC San Diego, United States

    Dark Wolf Solutions · is looking for a · Cybersecurity Systems Engineer. · The IT Security Engineer will be responsible for designing, implementing, and managing security measures to protect information systems from unauthorized breaches and cyber threats. They will ensure the ...


  • Hyundai AutoEver America San Diego, United States

    10745 SR. NETWORK/CYBERSECURITY ENGINEER, San Diego, CA (On-site, 5-days) · Hyundai AutoEver America (HAEA) is a subsidiary of Hyundai and Kia Motor companies specializing in IT services. HAEA (formerly HISNA) was formed 9 years ago and is committed to providing world-class tech ...


  • Hyundai Autoever America San Diego, United States

    Job Description · Job Description10745 – SR. NETWORK/CYBERSECURITY ENGINEER, San Diego, CA (On-site, 5-days) · Hyundai AutoEver America (HAEA) is a subsidiary of Hyundai and Kia Motor companies specializing in IT services. HAEA (formerly HISNA) was formed 9 years ago and is commi ...