Jobs
>
Los Angeles

    Senior Principal Product Security Engineer - Los Angeles, United States - Medtronic

    Default job background
    Description
    Careers that Change Lives

    In this role, you will join the Information Security and Privacy technology group within the Medtronic Diabetes Operating Unit (OU).

    This is a new, powerful operating unit securing the people and product portfolio of Diabetes.

    With the Medtronic Mission as our North Star, we will build and innovate for the benefit of the customers and patients we serve.

    A Day in the Life
    The Senior Principal Product Security Engineer is instrumental in ensuring the privacy and security of our Diabetes operating unit.

    Reporting directly to the Director of Privacy and Information Security, this role spearheads the integration of privacy by design and state-of-the-art security measures, identifies potential vulnerabilities and remediation, and champions initiatives to bolster privacy and cyber-resiliency throughout the business.

    A deep understanding of privacy regulation and corresponding security controls, environments that underpin client-facing medical device solutions, and developing driving adoption of privacy and security frameworks is essential

    #MDTDiabetesReferralCampaign

    Key Responsibilities:
    Responsibilities may include the following and other duties may be assigned.


    Product Security Strategy & Continuous Learning-Engage in continuous professional development to stay updated with the latest cybersecurity trends and threats specific to medical devices and health software products.

    Contribute to OU and enterprise product security strategy that aligns with industry best practices and regulatory requirements.

    Pr

    iv

    acy by Design:

    collaborate with legal and technical stakeholders to conduct privacy impact assessments, data minimization requirements and automations, and user-centric and secure designs.

    To foster a privacy-conscious culture.


    Product Security-Lead efforts to embed security into the product development lifecycle, ensuring that security considerations are integrated from design through deployment.

    This includes in-house developed technology, licensed technology, consumer devices, and enterprise security processes / standards.


    Risk Assessment -Systematically perform threat modeling, security risk evaluations, and vulnerability assessments to highlight and mitigate potential security threats throughout the product lifecycle.

    Privacy & Security Architecture- Aid in devising and deploying secure product architecturesand designs, considering factors such as secure boot, secure communications, data protection, secure updates, secure integration, and access controls

    Standards & Testing- Maintain and enforce security standards, policies, and procedures for medical device systems and product development. Oversee security testing activities, including penetration testing, vulnerability scanning, and code reviews

    Security Awareness- Drive and promote security awareness and training across cross-functional product development teams to foster a security-conscious culture

    Compliance- Ensure compliance with industry standards and regulations related to covered entitiessuch as NIST 801 and HIPAA

    Documentation- Maintain detailed documentation of security best practices, guidance, configurations, design patterns, shared service designs, inventories, incident response plans, security architectures, and reports


    Must Have:
    Minimum Requirements

    Bachelors degree required

    Requires a University Degree and minimum of 10 years of relevant experience, or advanced degree with a minimum of 8 years of relevant experience

    Nice to Have
    5 years of Privacy or Security engineering experience in a regulated industry

    Degree in related engineering or cybersecurity from an accredited institution

    Ability to adapt to the fast-evolving cybersecurity landscape and implement proactive strategies.

    Demonstrated aptitude in identifying challenges and providing innovative solutions.

    Experience in mentoring and leading junior security engineers, fostering growth within the team.

    Demonstrated experience in staying updated with evolving regulations in the medical device sector.

    Industry-recognized certifications such as [CISSP, CSSLP, CISM] are highly desirable

    Proficiency in secure coding methodologies and standards

    About Medtronic
    Together, we can change healthcare worldwide.

    At Medtronic, we push the limits of what technology, therapies and services can do to help alleviate pain, restore health, and extend life.

    We challenge ourselves and each other to make tomorrow better than yesterday. It is what makes this an exciting and rewarding place to be.

    We want to accelerate and advance our ability to create meaningful innovations - but we will only succeed with the right people on our team.

    Let's work together to address universal healthcare needs and improve patients' lives. Help us shape the future.
    Physical Job Requirements

    The physical demands described within the Responsibilities section of this job description are representative of those that must be met by an employee to successfully perform the essential functions of this job.

    Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.


    For Office Roles:
    While performing the duties of this job, the employee is regularly required to be independently mobile. The employee is also required to interact with a computer, and communicate with peers and co-workers.

    Contact your manager or local HR to understand the Work Conditions and Physical requirements that may be specific to each role.

    (ADA-United States of America)
    A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create.

    We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage.

    Learn more about our benefits at
    This position is eligible for a short-term incentive plan. Learn more about Medtronic Incentive Plan (MIP) on page 6 here .

    The provided base salary range is used nationally (except in certain CA locations).The rate offered is compliant with federal/local regulations and may vary by experience,certification/education, market conditions, location, etc.

    Min Salary

    Max Salary

    It is the policy of Medtronic to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law.

    In addition, Medtronic will provide reasonable accommodations for qualified individuals with disabilities.

    #J-18808-Ljbffr

  • Bold Business

    Security Engineer

    3 weeks ago


    Bold Business Los Angeles, United States

    Job Description · Job DescriptionSummary: · We are looking for a Security Engineer who will be responsible for designing, implementing, and maintaining security solutions to protect our organization's systems, networks, and data from cyber threats. The ideal candidate will have a ...

  • Bold Business

    Security Engineer

    3 weeks ago


    Bold Business Los Angeles, United States

    Job Description · Job DescriptionSummary: · We are looking for a Security Engineer who will be responsible for designing, implementing, and maintaining security solutions to protect our organization's systems, networks, and data from cyber threats. The ideal candidate will have a ...


  • SourcePro Search Los Angeles, United States

    SourcePro Search has a fantastic opportunity for an experienced Senior Security Engineer in our global law firm client's Los Angeles office. · The Senior Security Engineer is a hands-on role that requires a high level of technical expertise and will be responsible for a broad ra ...


  • Cornerstone Consutling & Technology Los Angeles, United States

    Security Engineer for ITS Security - LA METRO · Share this job as a link in your status update to LinkedIn. · Job Title · Security Engineer for ITS Security - LA METRO · Location · Category · Information Technology · Job Type · Full-time · Experienced (Non-Manager) · Education · ...


  • Cornerstone Transportation Consulting Los Angeles, United States

    Job Description · Job DescriptionProject Description: · This project entails providing cybersecurity staff augmentation services to Metro's Information Security Department for two years. The assigned resource will support various core functions within the department, focusing on ...


  • Venstar Inc. Los Angeles, United States

    Senior Software Security Engineer · This position requires an experienced software security engineer who specializes in IoT devices and AWS Cloud technologies to join the Venstar Cloud Engineering Team. You will be responsible of the efforts to develop and enhance the connect sof ...


  • Verkada Los Angeles, United States

    Who We Are · Below covers everything you need to know about what this opportunity entails, as well as what is expected from applicants. · Verkada is the largest cloud-based B2B physical security platform company in the world. Only Verkada offers six product lines — video securi ...


  • SummitHR Los Angeles, United States

    Job Description · Job DescriptionResponsibilities · As a Cyber Security Engineer, you will have the opportunity to jump-start and lead the application security team as part of our engineering group. We are looking for highly skilled security experts who can handle the end to end ...

  • JBA International

    Security Engineer II

    3 weeks ago


    JBA International Los Angeles, United States

    Duties and Responsibilities · Assist in implementing Security Information and Event Management (SIEM), which includes but is not limited to; identifying deployment solutions, maintaining logs, assisting in developing company best practices for security alert correlations, perfor ...


  • Circle Los Angeles, United States

    Circle is a financial technology company at the epicenter of the emerging internet of money, where value can finally travel like other digital data — globally, nearly instantly and less expensively than legacy settlement systems. This ground-breaking new internet layer opens up p ...


  • Viant, Inc. Los Angeles, United States

    WHAT YOU'LL DO · Viant is seeking a qualified Security Engineer who will ensure our internal applications and cloud platforms are designed with the highest security standards in mind. The Security Engineer will be tasked with improving security of the companys infrastructure, p ...

  • Wise Men Consultants

    ICS Security Engineer

    16 hours ago


    Wise Men Consultants Los Angeles, United States

    Job Title: ICS Security Engineer · Location: Cameron, LA (Onsite) · Position Timeframe: Long Term Contract · Education and Certifications : Bachelor degree in Electrical Engineering or Computer Engineering preferred. Computer Science or Information Systems or DoD background may b ...


  • FASTENER DISTRIBUTION HOLDINGS LLC. Los Angeles, United States

    Job Description · Job DescriptionFDH Aero is a trusted global supply chain partner for aerospace and defense companies. With more than 55 years of experience, it specializes in c-class components that include hardware, electrical, chemical, and consumable products and services fo ...


  • Averity Los Angeles, United States

    Security and Risk Program Manager (PMO) · The Cybersecurity and Risk Program Manager will lead the Identity Access and Lifecycle Management (IAM, ILM) program and oversee the IT General Controls (ITGC) program. This role involves close collaboration with Cybersecurity, Risk lead ...

  • Insight Global

    Security Engineer

    6 days ago


    Insight Global Los Angeles, United States

    Role: Security Engineer · PR: $50 -70/hr · Location: hybrid phx az · Contract: 12 month contract (possible extensions) · * 2-4 Years of professional experience as a Security Engineer or equivalent position. · * Professional experience utilizing Palo Alto. · * Professional Experi ...

  • Bold Business

    Security Engineer

    2 weeks ago


    Bold Business Los Angeles, United States

    Summary: · We are looking for a Security Engineer who will be responsible for designing, implementing, and maintaining security solutions to protect our organization's systems, networks, and data from cyber threats. The ideal candidate will have a strong background in informatio ...

  • StubHub

    Security Engineer

    3 weeks ago


    StubHub Los Angeles, United States

    StubHub is on a mission to redefine the live event experience on a global scale. Whether someone is looking to attend their first event or their hundredth, we're here to delight them all the way from the moment they start looking for a ticket until they step through the gate. The ...


  • Howard Technology Solutions Los Angeles, United States

    *This position requires you to be located and frequently travel to customer sites around the Louisiana territory. Candidates must live in Louisiana. · ABOUT HOWARD TECHNOLOGY SOLUTIONS · Howard Technology Solutions is a premier retailer of brand name computers, consumer electron ...

  • Dropbox

    Security Engineer

    3 weeks ago


    Dropbox Los Angeles, United States

    Company Description · Dropbox is a special place where we are all seeking to fulfill our mission to design a more enlightened way of working. We're looking for innovative talent to join us on our journey. The words shared by our founders at the start of Dropbox still ring true t ...

  • Pyramid Technology Solutions

    Security Engineer

    1 week ago


    Pyramid Technology Solutions Alhambra, United States

    Job Role: Cyber Incident Response Engineer · Location: Alhambra, CA · Duration: 12 Months Contract · Interview Mode: In-Person · Position Description: · A Security Engineer serves as the security engineer of complex technology implementations in a product-centric environment; is ...