At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity for all. You’ll lead with purpose, breaking down barriers to innovation in a more connected, compassionate world. A Day in the Life The Principal Product Security Engineer acts as the product security lead for the AC&M R&D organization to ensure compliance with pre and post-market cybersecurity expectations, help deliver secure, robust products to the marketplace and keep them secure through their entire lifecycle. They are responsible for leading cybersecurity activities on projects and ensuring that R&D teams have the cybersecurity-focused tools and knowledge needed to do their jobs effectively. POSITION RESPONSIBILITIES MAY INCLUDE THE FOLLOWING AND OTHER DUTIES MAY BE ASSIGNED: Act as point person for the AC&M organization on product security, taking accountability for the organization’s security posture Answer questions related to product security during internal and external audits Maintain the product security Confluence site and organize documentation related to product security Establish and lead implementation of roadmap of goals for product security team and organization Organize day-to-day activities of the product security team members and lead standups Provide mentorship and guidance to junior and senior product security engineers Support definition of roles and responsibilities for product security Provide guidance to R&D project teams on security controls and assist with security-focused design and code reviews Collaborate with the Medtronic Product Security Office and other R&D organizations to ensure alignment Collaborate with project teams to create, review, and maintain threat models Assist project teams with performing and documenting security risk assessments Evaluate project deliverables for compliance with security-related standards and guidance Assist with creation of MDS2 forms and answering product security questions from customers Assist project teams with executing and reviewing results from SAST and DAST tools Capture metrics to measure the organization’s security posture Respond to product security incidents and work with customers on security-related issues Provide security training and documentation to the R&D organization as needed Assist project teams with building and reviewing SBOMs Assist project teams with analyzing vulnerabilities identified by penetration testing and SBOM analysis
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
5,001-10,000 employees