Haemonetics
Senior Product Security Engineer (Hybrid Boston)
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Haemonetics
Haemonetics Corporation is a global leader in automated blood processing and hematology solutions, founded in 1971 and headquartered in Boston, Massachusetts. The company develops and manufactures innovative devices, software, and services aimed at enhancing blood collection, processing, management, and transfusion. Haemonetics serves hospitals, blood centers, plasma collection centers, and surgical environments worldwide, focusing on improving patient outcomes, donor safety, and operational efficiency. The company offers a range of products segmented into Plasma, Blood Center, and Hospital solutions. Their Plasma segment includes automated plasma collection systems and donor management software. The Blood Center segment features apheresis and component separation tools, while the Hospital segment provides surgical blood salvage systems and hemostasis diagnostics. Haemonetics also delivers comprehensive blood management services, including equipment sales and software for donor and hospital management, supporting a variety of customers globally.
Security at Haemonetics
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
“Haemonetics' application security philosophy is centered on a formal commitment to cybersecurity managed by a full-time CISO. Their risk management approach is explicitly aligned with the NIST Cybersecurity Framework and the ISO 27001 global standard. Operational priorities include annual cybersecurity awareness training for employees and the maintenance of a standardized incident response program. There is no publicly available information regarding their specific stance on developer enablement versus gatekeeping.”
Security Team
The cybersecurity function is led by a full-time Chief Information Security Officer (CISO) who reports directly to the Chief Information Officer (CIO). The company is currently hiring for a 'Manager of Product Cybersecurity' described as a 'player-coach role'. Specific names of AppSec leaders and the total team size are not publicly available.
Key Initiatives
Active initiatives at Haemonetics include a product vulnerability management program featuring coordinated disclosure and remediation. The team performs threat modeling, attack surface analysis, and monthly security testing. They also manage third-party penetration testing and utilize SBOM-driven analysis for product security. There is no public evidence of a Security Champions program or specific 'Shift Left' practices in CI/CD.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.