🌎
此职位未使用所有网站语言进行发布

Senior Principal Product Security Engineer

📁
Engineering
📅
240002H0 招聘登记表编号
Careers that Change Lives
In this role, you will join the Information Security and Privacy technology group within the Medtronic Diabetes Operating Unit (OU). This is a new, powerful operating unit securing the people and product portfolio of Diabetes. With the Medtronic Mission as our North Star, we will build and innovate for the benefit of the customers and patients we serve.  

A Day in the Life

The Senior Principal Product Security Engineer is instrumental in ensuring the privacy and security of our Diabetes operating unit. Reporting directly to the Director of Privacy and Information Security, this role spearheads the integration of privacy by design and state-of-the-art security measures, identifies potential vulnerabilities and remediation, and champions initiatives to bolster privacy and cyber-resiliency throughout the business. A deep understanding of privacy regulation and corresponding security controls, environments that underpin client-facing medical device solutions, and developing driving adoption of privacy and security frameworks is essential #MDTDiabetesReferralCampaign

  • Key Responsibilities:

    Responsibilities may include the following and other duties may be assigned.

    • Product Security Strategy & Continuous Learning - Engage in continuous professional development to stay updated with the latest cybersecurity trends and threats specific to medical devices and health software products. Contribute to OU and enterprise product security strategy that aligns with industry best practices and regulatory requirements.
    • Privacy by Design: collaborate with legal and technical stakeholders to conduct privacy impact assessments, data minimization requirements and automations, and user-centric and secure designs. To foster a privacy-conscious culture.
    • Product Security - Lead efforts to embed security into the product development lifecycle, ensuring that security considerations are integrated from design through deployment. This includes in-house developed technology, licensed technology, consumer devices, and enterprise security processes / standards. 
    • Risk Assessment - Systematically perform threat modeling, security risk evaluations, and vulnerability assessments to highlight and mitigate potential security threats throughout the product lifecycle. 
    • Privacy & Security Architecture - Aid in devising and deploying secure product architectures and  designs, considering factors such as secure boot, secure communications, data protection, secure updates, secure integration, and access controls 
    • Standards & Testing - Maintain and enforce security standards, policies, and procedures for medical device systems and product development. Oversee security testing activities, including penetration testing, vulnerability scanning, and code reviews 
    • Security Awareness - Drive and promote security awareness and training across cross-functional product development teams to foster a security-conscious culture 
    • Compliance - Ensure compliance with industry standards and regulations related to covered entities such as NIST 801 and HIPAA 
    • Documentation - Maintain detailed documentation of security best practices, guidance, configurations, design patterns, shared service designs, inventories, incident response plans, security architectures, and reports 
Must Have: Minimum Requirements

  • Bachelors degree required
  • Requires a University Degree and minimum of 10 years of relevant experience, or advanced degree with a minimum of 8 years of relevant experience

Nice to Have
  • 5 years of Privacy or Security engineering experience in a regulated industry
  • Degree in related engineering or cybersecurity from an accredited institution
  • Ability to adapt to the fast-evolving cybersecurity landscape and implement proactive strategies.
  • Demonstrated aptitude in identifying challenges and providing innovative solutions.
  • Experience in mentoring and leading junior security engineers, fostering growth within the team. 
  • Demonstrated experience in staying updated with evolving regulations in the medical device sector.
  • Industry-recognized certifications such as [CISSP, CSSLP, CISM] are highly desirable
  • Proficiency in secure coding methodologies and standards

About Medtronic

Together, we can change healthcare worldwide. At Medtronic, we push the limits of what technology, therapies and services can do to help alleviate pain, restore health, and extend life.  We challenge ourselves and each other to make tomorrow better than yesterday. It is what makes this an exciting and rewarding place to be.

We want to accelerate and advance our ability to create meaningful innovations - but we will only succeed with the right people on our team. Let’s work together to address universal healthcare needs and improve patients’ lives. Help us shape the future.

Physical Job Requirements

The physical demands described within the Responsibilities section of this job description are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. For Office Roles: While performing the duties of this job, the employee is regularly required to be independently mobile. The employee is also required to interact with a computer, and communicate with peers and co-workers. Contact your manager or local HR to understand the Work Conditions and Physical requirements that may be specific to each role. (ADA-United States of America)

 

A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create.  We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage. Learn more about our benefits at http://benefits.medtronic.com

This position is eligible for a short-term incentive plan.  Learn more about Medtronic Incentive Plan (MIP) on page 6 here.

The provided base salary range is used nationally (except in certain CA locations). The rate offered is compliant with federal/local regulations and may vary by experience, certification/education, market conditions, location, etc.  

我的概要信息

创建并管理未来工作机会的概要信息。

转至概要信息

我的提交

追踪您的工作机会。

我的提交

类似的列表

Northridge, California, United States

📁 Engineering

招聘登记表编号: 23000APS

Northridge, California, United States

📁 Engineering

招聘登记表编号: 240004FH

Northridge, California, United States

📁 Engineering

招聘登记表编号: 2400052Y

改变从你开始

我们寻找大胆的想法以及全新的观点,这将引领我们走向创新之路。来与我们一同引领医疗行业的未来。

工程部门

进行发明创造的机会。加入领导团队的益处。提高生活水平的能力。除此之外,在这里你还将有更多发现。

了解更多

销售

为有需求的人们提供改变他们生活的解决方案。从工作中取得应有的回报。

了解更多

监管

接受我们的挑战,让全球医疗服务的价格更加廉宜,让更多的人能够享受医疗服务。你的洞察力和观点将帮助我们创造出能够改变世界的解决方案。

了解更多

了解 MEDTRONIC 的使命。

我们的使命是 “减轻病痛、恢复健康及延长寿命” 这不仅仅是一句口号。这是我们的员工每天赖以生存的信仰。

了解更多

员工故事:
工程部门

Alyse是神经调控部门的工程项目经理,工作地点在明尼苏达州明尼亚波利斯市。

了解更多

想要了解在 MEDTRONIC 的工作是如何的吗?

我们的员工有着不同的背景却有着相同的信念-改变生命。

了解更多

我们重视你所拥有的独一无二 的品质。

欢迎加入我们,将你独到的观点带入到我们共同协作和创新的文化中。

了解更多
我们努力工作,致力于在全球范围内扩大医疗服务的受众群体,对此我们感到十分骄傲。出色的员工、愉悦的氛围、有竞争力的薪资。首席执行官是一位伟大的人物-他明确地践行着这一使命,并且全身心地投入到他的生活和工作中,只为实现这一目标。
聪明又承担义务的同事。使命驱动力。良好的福利。良好的长期职业机会。你始终可以在公司里发现有趣的项目并投身其中。
这里是一个非常好的工作场所,因为你知道自己每天所做的工作都将挽救人们的生命。在精益实践、质量和其他方面的培训。出色的同事。

MEDTRONIC 工作

成为全球领先的医疗技术和解决方案公司的一员。