Manager Information Security Engineer - Remote or Hybrid in MN or DC

UnitedHealth GroupEden Prairie, MN
$91,700 - $163,700Hybrid

About The Position

As the Cybersecurity Manager leading Connected Device Security and Data Protection, you will be responsible for leading the organization’s Connected Device Security (IoT/IoMT) and Data Protection & Insider Risk programs across a shared services healthcare environment. You will develop, implement, and mature security capabilities that protect medical devices, connected technologies, sensitive data, and critical healthcare information assets. Additionally, you will establish and mature an Insider Threat Program including governance, technology, processes, investigative workflows, stakeholder engagement, and program metrics. In this role, you will leverage enterprise-approved AI tools to streamline workflows, automate data protection analytics, and drive continuous operational improvements. Working closely with Security Operations, Incident Response, Security Engineering, Clinical Engineering, Compliance, Privacy, Legal, HR, and IT, you will ensure a coordinated, frictionless approach to cyber risk reduction and drive program outcomes. You’ll enjoy the flexibility to work remotely from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, Healthcare Technology, or a related field OR equivalent cybersecurity experience in lieu of degree
  • 3+ years of progressive cybersecurity experience in an enterprise environment
  • 2+ years of experience implementing or managing Data Loss Prevention (DLP), Information Protection, or Insider Risk capabilities
  • 1+ years of experience in a leadership, management, or technical team lead role, mentoring and developing security professionals
  • 1+ years of experience with connected device security, IoMT, IoT, or healthcare technology security environments
  • All employees working remotely will be required to adhere to UnitedHealth Group’s Telecommuter Policy
  • Candidates are required to pass a drug test before beginning employment.

Nice To Haves

  • Relevant cybersecurity certifications such as CISSP, CISM, or HCISPP
  • Hands-on experience with Microsoft Purview (DLP, Information Protection, Insider Risk Management), Microsoft Defender XDR, and Microsoft Sentinel
  • Experience with medical device security platforms (e.g., Ordr, Armis, Nozomi, Claroty), vulnerability management tools, and Microsoft Entra ID
  • Experience utilizing ServiceNow and Power BI (or equivalent dashboarding tools) to build operational security metrics and executive dashboards
  • In-depth understanding of healthcare cybersecurity frameworks and regulations, including HIPAA, HITECH, NIST CSF, NIST 800-53, CIS Controls, and HITRUST
  • Demonstrated ability to build cybersecurity programs and lead cross-functional investigations across Legal, HR, and Compliance

Responsibilities

  • Lead Connected Device Security (IoMT/IoT) and Data Protection & Insider Risk teams, developing strategic program roadmaps aligned with organizational cybersecurity objectives
  • Drive the standardized deployment and operational management of Data Loss Prevention (DLP), Information Protection, and Insider Risk Management capabilities across shared services healthcare environments
  • Establish repeatable deployment frameworks, standard architectures, configuration baselines, and operational runbooks to ensure continuous monitoring and prevent policy and configuration drift
  • Design, implement, and mature an Insider Threat Program, establishing governance, policies, investigative workflows, case management, and escalation criteria
  • Lead risk-based Connected Device Security processes for medical devices (IoMT), IoT, and connected technologies, including inventory management, visibility, vulnerability management, and network segmentation
  • Develop, implement, and maintain healthcare-aligned KPIs, KRIs, operational dashboards, and metrics to measure control effectiveness, operational maturity, and risk reduction outcomes
  • Partner with Security Engineering, Security Operations, Clinical Engineering, Biomedical Engineering, Privacy, Compliance, Legal, HR, and IT stakeholders to ensure aligned cyber risk reduction
  • Ensure program alignment with regulatory frameworks including HIPAA, HITECH, NIST Cybersecurity Framework, NIST 800-53, CIS Controls, and HITRUST standards
  • Use enterprise-approved AI tools to streamline workflows, automate threat detection analytics, and drive continuous operational improvement across data protection and device security programs
  • Evaluate emerging cybersecurity trends, threat vectors, and automated tools to inform solution design and strategic innovation

Benefits

  • comprehensive benefits package
  • incentive and recognition programs
  • equity stock purchase
  • 401k contribution
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service