Privacy & Security Representative

3 weeks ago


Bengaluru, India GE Healthcare Full time

**Job Description Summary**: As part of the Imaging System Software platform team at GE Healthcare, PSR -Privacy & Security Representative is the cybersecurity focal point for secure product development and maintenance of released product. The PSR is an experienced member of the product engineering team with influence to drive product privacy and cybersecurity features and enhancements. The PSR must have deep product knowledge to ensure the clinical functionality, expected operating environment, and interoperability to accurately determine a product’s privacy and security risks.

GE Healthcare is a leading global medical technology and digital solutions innovator. Our mission is to improve lives in the moments that matter. Unlock your ambition, turn ideas into world-changing realities, and join an organization where every voice makes a difference, and every difference builds a healthier world.

**Roles and Responsibilities**

In this role, you will:

- Provide privacy and security technical expertise in support of the product team throughout product development, design change, and life-cycle management.
- Work with the Product Security Leader (PSL) to support the product team with process expertise for the GE Healthcare (GEHC) Product Cybersecurity Standard and life-cycle management.
- Product cybersecurity development responsibilities:

- Assess the privacy and cybersecurity state of the product and define product roadmap features/enhancements with stakeholder approval.
- Responsible for security architecture and coordination of product development for cybersecurity features and enhancements.
- Assess product components and SBoM integrated into the product.
- Perform defect management for cybersecurity issues.
- Identify operational responsibilities and adherence to cloud standards for cloud
- based products.
- Responsible for Product and Security Manual and MDS2 documentation.
- In coordination with the PSL, own and deliver GE Healthcare Product Cybersecurity Standard artifacts, which includes:

- Design input activities to identify, evaluate, roadmap, and drive cybersecurity and privacy features and enhancements within product development programs.
- Create Design Engineering Privacy and Security (DEPS) artifacts for privacy and security risk assessments to engage in domain-specific product threat modeling, attack surface analysis, risk management and reduction.
- Coordinates with the PSL to support the product team in scheduling and performing vulnerability scans and cybersecurity assessments.
- Lead product Security Technical Design Reviews.
- Along with the product LSD, responsible for the GE Healthcare Product Cybersecurity Standard compliance and other pertinent standards and process.
- Stay current on healthcare privacy trends and regulatory environment (i.e. FDA, HIPAA, GDPR, etc ) to effectively communicate privacy awareness with the product team.
- Works with the GEHC Product Security team and QARA -Quality Assurance & Regulatory Assurance on released product life-cycle, including:

- Participate in post-market product vulnerability monitoring.
- Participate as an Subject Matter Expert to determine product vulnerability impact, investigation, and risk assessment
- Responsible for product vulnerability mitigation and design change.
- Responsible for GEHC vulnerability tool update to ensure accurate customer communication.
- Address customer and Sales RFP privacy and security feedback/questions.
- Provide technical expertise on customer concerns, complaints, and CSO escalations.
- Create/Maintain responsible product records within GEHC product cybersecurity tools.

**Education Qualification**:

- Bachelor's Degree in Computer Science or “STEM” Majors (Science, Technology, Engineering and Maths)

**Required Skills**:

- A minimum of 10+ years of professional experience in software development.
- Sound understanding of security technologies/techniques like Cryptography, Algorithms, Public key Infrastructure (PKI) Certificate Authority (CA), Hardware/embedded authentication, OAuth, 2-factor authentication, ehite-box code analysis
- Experience with Security Development Lifecycle processes such as Threat Modeling.
- Experience with a range of security tools: Nessus, Kali, Microsoft Threat Modeling Tool, etc.
- Experience with NIST 800-53 and/or ISO/IEC 27000 series of security standards.
- Experience with OWASP, CVSS, FIPS 140-2 and 140-3, and DoD RMF.

**Good To Have Skills**:

- Certification in cybersecurity.
- Experience in Agile development practices: Test Driven Development (TDD), Behavior Driven Development (BDD) and Scrum.
- Experience in MicroServices using RESTful frameworks.

**Inclusion and Diversity**

GE Healthcare is an Equal Opportunity Employer where inclusion matters. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other character


  • Data Privacy Security

    2 months ago


    Bengaluru, India Black & White Business Solutions Full time

    **Job Information**: Industry **IT Services** *** Province **Karnataka** *** City **Bangalore North** *** Postal Code **560001** *** Country **India** We have opening for DATA PRIVACY SECURITY with one of our client, pls find the details below. - Must have skills : CISSP Certified, Data Privacy and Security, Experience in privacy by design, Risk...


  • Bengaluru, Karnataka, India Black & White Business Solutions Full time

    Job Information:IndustryIT Services***ProvinceKarnataka***CityBangalore North***Postal Code560001***CountryIndiaWe have opening for DATA PRIVACY SECURITY with one of our client, pls find the details below. Must have skills : CISSP Certified, Data Privacy and Security, Experience in privacy by design, Risk Assessor, Data Privacy Laws (GDPR, CCPA etc) Nice to...


  • Bengaluru, Karnataka, India Grownex HR Solution Full time

    Title:Information Security / Data Privacy ConsultantCompany:A prestigious company based in Bengaluru is looking for an experienced Information Security / Data Privacy Consultant to join their team.Experience:8-10 YearsKey Requirement:The ideal candidate should be open to traveling to the Middle East for project assignments.Role Overview:The consultant will...


  • Bengaluru, India Allime Tech Solutions Full time

    Job Summary :Privacy Compliance Analyst with experience in data security technologies such as Classification, DLP, DRM along with exposure to implementation of data privacy and security frameworks.A continuous learner who is self-driven, team player and zeal to bring security transformation by reducing the exposure surface.Key Responsibilities :- Lead the...


  • Bengaluru, India Allime Tech Solutions Full time

    Job Summary :Privacy Compliance Analyst with experience in data security technologies such as Classification, DLP, DRM along with exposure to implementation of data privacy and security frameworks.A continuous learner who is self-driven, team player and zeal to bring security transformation by reducing the exposure surface.Key Responsibilities :- Lead the...

  • Manager/Senior Manager

    2 months ago


    Bengaluru, India HuQuo Full time

    Job Summary :Data Privacy & Security Lead will be responsible to assess, build and support solutions to ensure data privacy and security across the enterprise.Responsibilities :- Provide Privacy/Security expertise support to clients on different data management, strategy and regulatory compliance problems- Support in assessing the privacy and security...


  • Bengaluru, India HuQuo Full time

    Job Summary :Data Privacy & Security Lead will be responsible to assess, build and support solutions to ensure data privacy and security across the enterprise.Responsibilities :- Provide Privacy/Security expertise support to clients on different data management, strategy and regulatory compliance problems- Support in assessing the privacy and security...

  • Apac Privacy Counsel

    2 weeks ago


    Bengaluru, Karnataka, India Autodesk Full time

    Job Requisition ID # - 24WD75768 Position Overview APAC data protection compliance has become an increasingly important topic for global companies, as new and amended legal requirements continue to evolve in the region. The APAC Privacy Counsel will develop strategies and initiatives to engage with key stakeholders and raise awareness of data privacy...


  • Bengaluru, Karnataka, India Allime Tech Solutions Full time

    Job Title: Privacy Compliance AnalystCompany: Security Solutions Ltd.About the Role: Are you a Privacy Compliance Analyst with a passion for data security technologies? We are looking for someone experienced in Classification, DLP, DRM, and familiar with implementing data privacy and security frameworks. We need a continuous learner who is self-driven, a...

  • APAC Privacy Counsel

    2 months ago


    Bengaluru, India Autodesk Full time

    Position Overview APAC data protection compliance has become an increasingly important topic for global companies, as new and amended legal requirements continue to evolve in the region. The APAC Privacy Counsel will ensure coordination across the APAC region for privacy issues and serve as the subject matter expert on APAC privacy laws and...

  • APAC Privacy Counsel

    3 weeks ago


    Bengaluru, India Autodesk Full time

    Position Overview APAC data protection compliance has become an increasingly important topic for global companies, as new and amended legal requirements continue to evolve in the region. The APAC Privacy Counsel will ensure coordination across the APAC region for privacy issues and serve as the subject matter expert on APAC privacy laws and...


  • Bengaluru, India Expedia Group Full time

    Data Privacy Analyst III - Privacy Enablement Our worldview at Expedia Group is “Travel is a force for good”; we believe travel is a force for good in the world. You don’t have to look too closely to realize right now that the world needs all the goodness it can get – it needs more travel. And with that as our worldview, the work we do at Expedia...


  • Bengaluru, India INTEL Full time

    **Qualifications**:** Job Qualifications** You must possess the below minimum qualifications to be initially considered for this position: - Bachelor of Science (or equivalent degree) in Cyber Security, Computer Science, Information Security, Management Information Systems or related fields - 6+ years of relevant industry experience in Information...

  • Privacy Advisor

    1 week ago


    Bengaluru, Karnataka, India DeleteMe Full time

    About DeleteMe, The Online Privacy Company DeleteMe is the online privacy company that makes easy-to-use tools for consumers and businesses to control what personal information companies, third parties, and what other people see about them online.DeleteMe is a rapidly growing SaaS privacy business operating globally and remotely / WFH - we are the emerging...


  • Bengaluru, Karnataka, India INTEL Full time

    Qualifications: Job QualificationsYou must possess the below minimum qualifications to be initially considered for this position:Bachelor of Science (or equivalent degree) in Cyber Security, Computer Science, Information Security, Management Information Systems or related fields 6+ years of relevant industry experience in Information Security, Privacy,...

  • Data Privacy

    2 weeks ago


    Bengaluru, India AMBC Technologies Full time

    **Job **description - Data Privacy** **Location** - Bangalore / Chennai **Roles and responsibilities**: - To create privacy framework based on compliance requirements like GDPR, IDPR, CCPA, ADHICS, CCPA, etc. - To map regulatory requirements as per the requirements of “data controller” and “data processor” - To conduct Privacy Impact Assessment...

  • Privacy Specialist

    1 week ago


    Bengaluru, Karnataka, India Games24x7 Full time

    Company Overview:Games24x7 is India's leading and most valuable multi-gaming unicorn. We're a full-stack gaming company, offering awesome game-playing experiences to over 100 million players through our products - Rummy Circle, India's first and largest online rummy platform, My11Circle, the country's fastest-growing fantasy sports platform.A pioneer in the...

  • Privacy Advisor

    3 weeks ago


    Bengaluru, Karnataka, India DeleteMe Full time

    About DeleteMe, The Online Privacy Company DeleteMe is the online privacy company that makes easy-to-use tools for consumers and businesses to control what personal information companies, third parties, and what other people see about them online. DeleteMe is a rapidly growing SaaS privacy business operating globally and remotely / WFH - we are the emerging...

  • Privacy Specialist

    2 months ago


    Bengaluru, India Games24x7 Full time

    Company Overview:Games24x7 is India’s leading and most valuable multi-gaming unicorn. We’re a full-stack gaming company, offering awesome game-playing experiences to over 100 million players through our products - Rummy Circle, India’s first and largest online rummy platform, My11Circle, the country’s fastest-growing fantasy sports platform.A pioneer...

  • Privacy Specialist

    3 weeks ago


    Bengaluru, India Games24x7 Full time

    Company Overview: Games24x7 is India’s leading and most valuable multi-gaming unicorn. We’re a full-stack gaming company, offering awesome game-playing experiences to over 100 million players through our products - Rummy Circle, India’s first and largest online rummy platform, My11Circle, the country’s fastest-growing fantasy sports platform. A...