Cybersecurity/DevOps Engineer I (Intern) at HISTOSONICS INC
Ann Arbor, Michigan, United States -
Full Time


Start Date

Immediate

Expiry Date

14 Jan, 26

Salary

0.0

Posted On

16 Oct, 25

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Cybersecurity, DevOps, Documentation, Monitoring, Compliance, Software Development, Penetration Testing, Project Setup, Pipeline Creation, Dashboard Creation, Audit Support, Access Control, Asset Management, Digital Signing, Vulnerability Management, Reporting

Industry

Medical Equipment Manufacturing

Description
HistoSonics is a medical device company, founded in 2009, that has developed a non-invasive, sonic beam therapy platform that uses histotripsy, which is capable of destroying targeted liver tumors. Our mission and passion are to advance the novel science of histotripsy and its powerful benefits, bringing meaningful and transformational change to physicians and their patients. Location: Ann Arbor, MI - Onsite Position Summary: This role with work with Cybersecurity and DevOps Teams on ongoing day-to-day activities that ensure compliance of HistoSonics’ products with applicable regulations and streamline software development processes.  Key Responsibilities: Cybersecurity: * Edison 3.2.1 cybersecurity documentation * Continued monitoring and cleanup of Black Duck projects components and vulnerabilities (Edison, BESRA) * (Potential future task) Migrate to CVSS 4.0 * SBOM reports – add references to relevant SOUP documents * Investigate additional Klocwork taxonomies/rulesets * Digital signing topics investigation (ensure efficacy as a security control, etc.) * Update cybersecurity metrics that are not automatically generated * Clean up compliance reports * Continue investigation into HIDS/HIPS candidates and incorporating into Edison system * Internal penetration testing DevOps: * Monitoring our build and test pipelines * Establishing a template or automated procedure for Project Setup * Branch or repo creation * Branch policy * Iteration and area paths * Pipelines creation * Dashboard creation, including the queries * For backlog items * Test cases * Open bugs, etc. * Supporting the ISMS internal audit * By completing the inventory of our software assets * By identifying unused assets, including sharepoint sites. * Uploading our artifacts to our Artifactory * Establishing Azure DevOps group rules to manage access control * Catalog our tools and utilities * Document, for each repo, their purpose, ownership, policies, and output. Qualifications and Skills: * Related research, project, internship or work experience preferred Minimum Qualifications: * Currently enrolled or recently graduated from a University/College with a related degree We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. #LI-Onsite
Responsibilities
The intern will work with Cybersecurity and DevOps Teams on day-to-day activities ensuring compliance of products with regulations and streamlining software development processes. Responsibilities include monitoring cybersecurity documentation, managing build and test pipelines, and supporting internal audits.
Loading...