Medtronic · 4 days ago
Sr. Product Security Engineer
Maximize your interview chances
Artificial Intelligence (AI)Biotechnology
H1B Sponsor Likely
Insider Connection @Medtronic
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Participate in ongoing professional development to stay current with emerging cybersecurity trends and threats related to medical devices and health software products.
Contribute to the development and refinement of product security strategies within the Operating Unit (OU), ensuring alignment with established industry best practices and regulatory requirements.
Collaborate with senior team members to implement security measures and continuously improve product security processes.
Support and lead integration of security into the product development lifecycle, ensuring that security considerations are incorporated from design to deployment.
Assist in implementing security measures across medical devices, OT, ICS, IoT, and enterprise security processes/standards.
Work closely with cross-functional teams to ensure security is a core part of the product design and development process.
Conduct threat modeling, security risk evaluations, and vulnerability assessments to identify and mitigate potential security risks throughout the product lifecycle.
Work under limited supervision to address security threats and provide recommendations for risk mitigation.
Collaborate with cross-functional teams to ensure risks are evaluated and managed in alignment with security best practices and regulatory requirements.
Contribute to the design and deployment of secure medical device architectures and product designs.
Assist in the implementation of key security features such as secure boot, secure communications, data protection, secure updates, secure integration, and access controls.
Collaborate with senior engineers to ensure that security architecture aligns with product security requirements and best practices.
Provide input on security design decisions and work to ensure effective implementation throughout the product lifecycle.
Assist in maintaining and implementing security standards, policies, and procedures for medical device systems and product development.
Contribute to security testing activities, including vulnerability scanning, penetration testing, and code reviews.
Collaborate with cross-functional teams to ensure adherence to security standards and participate in evaluating testing results to identify and address security vulnerabilities.
Provide guidance on testing procedures and contribute to continuous improvement of security practices.
Contribute to promoting security awareness and assist in delivering training across cross-functional product development teams.
Help foster a security-conscious culture by sharing best practices and providing support on security-related topics.
Collaborate with engineers to ensure that teams understand the importance of security in product development and work towards embedding security into everyday practices.
Ensure compliance with industry standards and regulations related to medical device and health software product security, such as NIST, IEC 60601-4-5, IEC 81001-5-1, and others.
Evaluate third-party vendors and suppliers for their security practices and ensure they meet our security requirements.
Lead and support the effective response to security incidents, ensuring swift resolution, proper mitigation, and clear communication to stakeholders, including customers when needed.
Maintain detailed documentation of security best practices, guidance, configurations, design patterns, shared service designs, inventories, incident response plans, security architectures, and reports.
Provides product security engineering recommendations and resolves integration and testing issues.
Builds a standardized set of security product requirements and produces metrics to report performance against those requirements.
Detects and mitigates security risks, responds to product security incidents, and works with customers regarding product security related issues.
Leads or participates in security architecture and design review meetings.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Bachelor’s degree or higher (completed and verified prior to start)
Minimum 4 years of relevant experience or advanced degree with a minimum of 2 years of relevant experience.
Minimum 2 years of embedded device product security experience in a regulated industry
Preferred
Bachelor’s degree in related engineering or cybersecurity from an accredited institution.
Ability to adapt to the rapidly evolving cybersecurity landscape and contribute to proactive security strategies.
Demonstrated ability to identify challenges and propose effective solutions.
Experience working with junior engineers and willingness to provide guidance and mentorship.
Familiarity with evolving regulations in the medical device sector and staying updated with relevant security standards.
Proficiency in secure coding practices and methodologies is highly desirable.
Benefits
Flexible Benefits Package
Short-term incentive called the Medtronic Incentive Plan (MIP)
Company
Medtronic
Medtronic is a healthcare technology company that designs and develops AI-based products and solutions for the medical industry.
H1B Sponsorship
Medtronic has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (185)
2022 (337)
2021 (383)
2020 (274)
Funding
Current Stage
Public CompanyTotal Funding
$9.11BKey Investors
NHS EnglandBlackstone Life SciencesTrade Capital Funding
2024-05-29Post Ipo Debt· $3.24B
2023-03-23Post Ipo Debt· $2B
2023-03-03Grant· $2.95M
Leadership Team
Recent News
Company data provided by crunchbase