IT Director Cybersecurity Chief of Staff

MedtronicMinneapolis, MN
1dOnsite

About The Position

We anticipate the application window for this opening will close on - 23 Jan 2026 At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity for all. You’ll lead with purpose, breaking down barriers to innovation in a more connected, compassionate world. A Day in the Life The IT Director; Cybersecurity Chief of Staff will assist in providing the strategic, operational, and coordination support needed to make a cybersecurity organization effective at scale. As security programs grow in complexity, the CISO must balance executive leadership, enterprise-wide risk management, and rapid response demands. A Chief of Staff enables this by: Driving organizational focus, Improving cross-functional coordination, Enhancing operational efficiency, Strengthening decision-making, and Ensuring continuity and resilience. At Medtronic, we bring bold ideas forward with speed and decisiveness to put patients first in everything we do . In-person exchanges are invaluable to our work . We're working onsite 4 days a week as part of our commitment to fostering a culture of professional growth and cross-functional collaboration as we work together to engineer the extraordinary . In your role, you may work from the following Medtronic sites: Twin Cities , Minnesota Memphis, Tennessee Lafayette, Colorado Santa Ana/ Irvine, California (UCI) North Haven, Connecticut Jacksonville, Florida Mansfield or Boston, Massachusetts Fort Worth, Texas This role will require 5-10 % of travel to enhance collaboration and ensure successful completion of projects. We believe that when people from different cultures , genders, and points of view come together, innovation is the result —and everyone wins. Medtronic walks the walk, creating an inclusive culture where you can thrive . Our unwavering commitment to inclusion, diversity, and equity (ID&E) means zero barriers to opportunity within Medtronic and a culture where all employees belong, are respected, and feel valued for who they are and the life experiences they contribute . We know equity starts beyond our workplace, and we must play a role in addressing systemic inequities in our communications to achieve long-term sustainable impact. Anchored in our Mission, we continue to drive ID&E forward both to enhance the well-being of Medtronic employees and to accelerate innovation that brings our lifesaving technologies to more people in more places around the world. Bring your talents to an industry leader in medical technology and healthcare solutions – we’re a market leader and growing every day. You can be proud to be a part of technologies that are rooted in our long history of mission-driven innovation. You will be empowered to shape your own career . We encourage and support your growth with the training, mentorship, and guidance you need to own your future success. Together, we can transform healthcare . Join us for a career in IT that changes lives . Medtronic is committed to fostering a diverse and inclusive culture . Check out the accomplishments of our Women in IT group! http://bit.ly/MedtronicWomeninIT CAREERS THAT CHANGE LIVES The Cybersecurity Chief of Staff ( CoS ) serves as the primary strategic partner and "force multiplier" for the Chief Information Security Officer (CISO). In this role you will bridge the gap between technical security operations and high-level business strategy, ensuring the security organization runs efficiently. As the Chief of Staff ( CoS ), you will be the strategic architect behind the CISO’s office. You aren't just an administrator; you are a high-level advisor and operator who ensures the cybersecurity department executes its mission with precision. You will manage the "business of security," allowing the CISO to focus on high-stakes technical leadership and external stakeholder management. This role will focus on f ive key pillars: Strategic Operations & Governance Strategic Planning: Drive the annual and quarterly planning cycles; track progress against OKRs and KPIs to ensure the security roadmap is on schedule. Strategy Development & Performance Measurement: Lead the translation of the CISO’s multi-year vision into a structured execution roadmap. You will be responsible for defining the Critical Success Factors (CSFs) and establishing a robust measurement framework— utilizing advanced telemetry and security-specific metrics—to quantify risk reduction and demonstrate the ROI of the global security program to executive leadership while maintaining alignment to greater organizational goals. Financial Stewardship: Manage the cybersecurity budget, overseeing vendor relationships, procurement processes, and headcount planning. The "Rhythm of Business": Structure and lead leadership team meetings, off-sites, and town halls to ensure alignment and accountability. Functional Delivery & Global Oversight GICSO Pillar Management: Provide functional management and delivery oversight for one or more core Global Information Security Office (GICSO) pillars (e.g., PMO/MA&D, Strategy & Programs, GRC, Cyber Defense, IAM, or GRC). You will ensure cross-regional alignment, unblock technical dependencies, and guarantee that global security initiatives are delivered on time and within scope across varied geographic business units. Executive Communication & Reporting Executive Proxy & Delegated Authority: Serve as the primary surrogate for the CISO in high-stakes steering committees, executive leadership meetings, and vendor negotiations. You will be empowered to make operational decisions, provide "the voice of the CISO" in their absence, and ensure momentum on critical security mandates is never stalled by scheduling conflicts. The Diplomatic Proxy: Act as the CISO’s 'eyes and ears' across the organization, triaging requests for the CISO’s time and representing the Security Office in sensitive cross-functional disputes to reach a resolution before escalation. The Operational Proxy: Serve as one of the designated Deput ies for the Office of the CISO, assuming leadership over the Global Security leadership team during the CISO’s absence to ensure continuity of operations and incident response readiness. The Strategic Proxy: Translate the CISO's long-term vision into immediate tactical direction for GICSO pillar leads, serving as the secondary point of contact for executive stakeholders to ensure security alignment with broader business goals. Board Readiness: Prepare high-impact presentations and reports for the Board of Directors and the Audit Committee and the Medtronic Cybersecurity Committee translating technical vulnerabilities into business risk. Internal Liaison: Act as the CISO’s proxy in cross-functional meetings with Finance, Legal, HR, and O U s as needed . Ghostwriting: Draft and or review internal announcements, security culture memos, and executive-level briefings. Development of presentations which distill complex technical risks into clear business-centric narratives for both internal and external speaking engagements. Operational Oversight: Streamlining the "rhythm of business" by managing leadership meetings and GCISO organization events , overseeing headcount planning, and driving cross-functional projects that require coordination across Legal, Finance, and HR. Special Projects & Crisis Management Incidents & Response: During major security incidents, act as a coordinator (as needed) to ensure non-technical workstreams (communications, legal, updates to leadership) are handled seamlessly. Change Management: Lead organizational design initiatives or large-scale culture shifts, such as rolling out a new "Security First" mindset across the company. Cultural Leadership: Driving internal initiatives such as team off -sites, talent development programs, and security awareness culture across the enterprise. Coordination of OHS initiatives and GCISO Culture Committee.

Requirements

  • Bachelor’s degree with 10+ years in Cybersecurity, IT Operations, or Management Consulting.
  • 7+ years of managerial experience
  • Technical Literacy - Ability to understand GRC (Governance, Risk, and Compliance), SOC operations, and cloud security architecture without needing to be a practitioner.
  • Operational Excellence - Proven track record of managing multi-million-dollar budgets and complex project portfolios.
  • Soft Skills - High emotional intelligence, discretion with sensitive data, and the ability to "manage up."
  • Experience managing a Project Management Office and Agile coaching teams.
  • Excellent strategic thinking and problem-solving skills.
  • Strong leadership and interpersonal skills with the ability to influence and drive change.

Nice To Haves

  • Strongly Preferred: Previous Medtronic experience
  • Advanced degree(s)
  • Specific leadership experience in cybersecurity; managing multiple areas of within the cybersecurity function.

Responsibilities

  • Strategic Operations & Governance
  • Strategic Planning: Drive the annual and quarterly planning cycles; track progress against OKRs and KPIs to ensure the security roadmap is on schedule.
  • Strategy Development & Performance Measurement: Lead the translation of the CISO’s multi-year vision into a structured execution roadmap. You will be responsible for defining the Critical Success Factors (CSFs) and establishing a robust measurement framework— utilizing advanced telemetry and security-specific metrics—to quantify risk reduction and demonstrate the ROI of the global security program to executive leadership while maintaining alignment to greater organizational goals.
  • Financial Stewardship: Manage the cybersecurity budget, overseeing vendor relationships, procurement processes, and headcount planning.
  • The "Rhythm of Business": Structure and lead leadership team meetings, off-sites, and town halls to ensure alignment and accountability.
  • Functional Delivery & Global Oversight GICSO Pillar Management: Provide functional management and delivery oversight for one or more core Global Information Security Office (GICSO) pillars (e.g., PMO/MA&D, Strategy & Programs, GRC, Cyber Defense, IAM, or GRC). You will ensure cross-regional alignment, unblock technical dependencies, and guarantee that global security initiatives are delivered on time and within scope across varied geographic business units.
  • Executive Communication & Reporting Executive Proxy & Delegated Authority: Serve as the primary surrogate for the CISO in high-stakes steering committees, executive leadership meetings, and vendor negotiations. You will be empowered to make operational decisions, provide "the voice of the CISO" in their absence, and ensure momentum on critical security mandates is never stalled by scheduling conflicts.
  • The Diplomatic Proxy: Act as the CISO’s 'eyes and ears' across the organization, triaging requests for the CISO’s time and representing the Security Office in sensitive cross-functional disputes to reach a resolution before escalation.
  • The Operational Proxy: Serve as one of the designated Deput ies for the Office of the CISO, assuming leadership over the Global Security leadership team during the CISO’s absence to ensure continuity of operations and incident response readiness.
  • The Strategic Proxy: Translate the CISO's long-term vision into immediate tactical direction for GICSO pillar leads, serving as the secondary point of contact for executive stakeholders to ensure security alignment with broader business goals.
  • Board Readiness: Prepare high-impact presentations and reports for the Board of Directors and the Audit Committee and the Medtronic Cybersecurity Committee translating technical vulnerabilities into business risk.
  • Internal Liaison: Act as the CISO’s proxy in cross-functional meetings with Finance, Legal, HR, and O U s as needed .
  • Ghostwriting: Draft and or review internal announcements, security culture memos, and executive-level briefings. Development of presentations which distill complex technical risks into clear business-centric narratives for both internal and external speaking engagements.
  • Operational Oversight: Streamlining the "rhythm of business" by managing leadership meetings and GCISO organization events , overseeing headcount planning, and driving cross-functional projects that require coordination across Legal, Finance, and HR.
  • Special Projects & Crisis Management Incidents & Response: During major security incidents, act as a coordinator (as needed) to ensure non-technical workstreams (communications, legal, updates to leadership) are handled seamlessly.
  • Change Management: Lead organizational design initiatives or large-scale culture shifts, such as rolling out a new "Security First" mindset across the company.
  • Cultural Leadership: Driving internal initiatives such as team off -sites, talent development programs, and security awareness culture across the enterprise. Coordination of OHS initiatives and GCISO Culture Committee.

Benefits

  • We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage.
  • This position is eligible for a short-term incentive plan.
  • This position is eligible for an annual long-term incentive plan.
  • Health, Dental and vision insurance
  • Health Savings Account
  • Healthcare Flexible Spending Account
  • Life insurance
  • Long-term disability leave
  • Dependent daycare spending account
  • Tuition assistance/reimbursement
  • Simple Steps (global well-being program)
  • Incentive plans
  • 401(k) plan plus employer contribution and match
  • Short-term disability
  • Paid time off
  • Paid holidays
  • Employee Stock Purchase Plan
  • Employee Assistance Program
  • Non-qualified Retirement Plan Supplement (subject to IRS earning minimums)
  • Capital Accumulation Plan (available to Vice Presidents and above, or subject to IRS earning minimums).

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Director

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service