At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity for all. You’ll lead with purpose, breaking down barriers to innovation in a more connected, compassionate world. A Day in the Life Act boldly. Compete to win. Move with speed and decisiveness. Foster belonging. Deliver results…the right way. That’s the Medtronic Mindset — our cultural norms. Our brand is rooted in action, not just words. The Medtronic Mindset defines the expectations of our culture. Every person here plays a role in bringing it to life. We recognize your extraordinary potential to ensure future generations live better, healthier lives. The audit focus will be primarily medical device software, product cybersecurity, and risk management. We look for leaders who have a clear vision of where we are going and how to get there, bold inclusive thinkers who create new ideas and bring our best solutions forward to benefit our patients, business partners, and customers. Responsibilities may include the following and other duties may be assigned. Must have experience, subject matter expertise (SME), and technical knowledge working with regulated medical device software and product cybersecurity requirements. Remain informed on Regulatory requirements for Software and Product Cybersecurity to identify gaps in medical device software. Manage and oversee internal audit activities, which may include conducting and/or overseeing audits, investigations, and/or interviews; and preparing corresponding reports and documents. Coordinate and/or complete internal assessments and/or audits in accordance with regulatory standards, which may include US and/or international regulatory agencies/authorities. Interpret and implement applicable regulations as they apply to products, processes, practices, and procedures. May counsel stakeholders about these requirements as necessary. Ensure compliance with internal and external regulatory agencies, which may include investigating and resolving compliance violations, questions, or concerns. Analyze audit data and present findings to management and/or regulatory bodies in support of Corrective Action Plans, which may include coaching business partners on compliance gaps, data, and/or resulting corrective actions. Own development of training and awareness programs for Software as a Medical Device (SaMD), Software in a Medical Device (SiMD), and product cybersecurity designed to increase auditor awareness and knowledge of requirements. Provide detailed functional medical device software and product security knowledge and maintain insight into current industry best practices and how they can be applied to Medtronic. Explore new tools and techniques to recommend for other team members to audit regulated medical device software and product cybersecurity. Identify opportunities for regulated medical device software and product security enhancement. Possess understanding of Software Bill of Material (SBOM) development and maintenance for the purposes of vulnerability monitoring. Possess an understanding of non-probabilistic scoring methodologies for security threats like common vulnerability scoring system (CVSS) and apply appropriately. Document and communicate recommended state-of-the-art regulated medical device software and product cybersecurity controls and deficiencies. Contribute to company standards and policies related to regulated medical device software and product cybersecurity risks. Enable strong partnerships across the organization to drive best-in-class regulated medical device software and product cybersecurity development. Analyze complex issues and significantly improve, change, or adapt existing methods. Show creativity and innovation in all aspects of your responsibilities. Expected travel: 20-25%
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
5,001-10,000 employees