Requisition ID 10306 - Posted 07/29/2026
Python, Cybersecurity- SBOM & Vulnerability, Medical
Job Description – Senior Software Engineer – Python | Cybersecurity (SBOM & Vulnerability Management) | Medical Devices
Position: Senior Software Engineer – Python (Cybersecurity & Medical Devices)
Experience: 4–10 Years
Location: Pune
Domain: Medical Devices
Job Summary
We are looking for a highly skilled Senior Software Engineer with expertise in Python, Medical Device Cybersecurity, SBOM (Software Bill of Materials), and Vulnerability Management. The ideal candidate will play a key role in developing secure medical device software, managing third-party software components, performing cybersecurity risk assessments, and ensuring compliance with global medical device cybersecurity standards.
The candidate will work closely with Software Development, Product Security, Systems Engineering, Quality, and Regulatory teams to design, implement, and maintain secure software solutions throughout the product lifecycle.
Key Responsibilities
- Design, develop, and maintain software applications, automation tools, and utilities using Python.
- Develop secure software solutions following Secure Software Development Lifecycle (SSDLC) practices.
- Generate, maintain, and manage Software Bill of Materials (SBOM) for medical device software products.
- Perform software composition analysis (SCA) to identify vulnerabilities in open-source and third-party software components.
- Monitor, analyse, and remediate software vulnerabilities (CVEs) throughout the product lifecycle.
- Conduct cybersecurity risk assessments and support threat modelling activities.
- Collaborate with Product Security teams to evaluate software dependencies and mitigate cybersecurity risks.
- Develop automation scripts for vulnerability scanning, reporting,
and compliance tracking.
- Integrate cybersecurity tools into CI/CD pipelines to automate security testing and compliance checks.
- Perform software verification, validation, and regression testing for security-related features.
- Participate in architecture reviews, design reviews, code reviews, and cybersecurity assessments.
- Support regulatory documentation related to cybersecurity, SBOM, and software risk management.
- Work closely with cross-functional teams, including Systems Engineering, Quality Assurance, Regulatory Affairs, and Clinical Engineering.
Required Technical Skills
Programming
- Python (Mandatory)
- Object-Oriented Programming (OOP)
- Python Scripting and Automation
- REST APIs
Cybersecurity
- Secure Software Development Lifecycle (SSDLC)
- Threat Modelling
- Vulnerability Assessment & Remediation
- CVE Analysis
- Secure Coding Practices
- Authentication & Authorization
- Encryption (TLS/SSL, AES)
- OWASP Secure Coding Principles
SBOM & Vulnerability Management
- Software Bill of Materials (SBOM)
- Software Composition Analysis (SCA)
- Open-Source Software Governance
- Third-Party Component Risk Assessment
- Dependency Management
- CVE Tracking and Remediation
- Vulnerability Prioritisation
- License Compliance
Development Tools
- Git
- Jenkins
- Docker
- SonarQube
- Black Duck
- Snyk
- Mend (WhiteSource)
- Trivy
- Dependency-Track
Operating Systems
- Linux
- Windows
Medical Device Experience
- Experience developing software for regulated medical devices.
- Understanding of medical device software lifecycle processes.
- Knowledge of software verification and validation (V&V;).
- Experience working with cybersecurity requirements for connected medical devices.
- Familiarity with risk management and secure software development in healthcare environments.
📌 Engineer (Pune)
🏢 Agiliad
📍 Pune