Sr. Product Security Engineer
MedtronicAbout the role
At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity for all. You’ll lead with purpose, breaking down barriers to innovation in a more connected, compassionate world.
A Day in the Life
Bring your talents to an industry leader in medical technology and healthcare solutions – we’re a market leader and growing every day. You can be proud to part of technologies that are rooted in our long history of mission-driven innovation. You will be empowered to shape your own career. We support your growth with the training, mentorship, and guidance you need to own your future success. Together, we can transform healthcare.The Sr. Product Security Engineer will work with Medtronic's Acute Care & Monitoring organization and across the R&D teams to ensure products are designed, developed, and maintained securely from inception to retirement. They will collaborate with cross-functional teams to quantify product risk related to security, design mitigations, coordinate cybersecurity activities, and create security documentation. Responsibilities include analyzing software composition, building SBOMs, monitoring for known vulnerabilities in software components, and ensuring compliance with pre- and post-market cybersecurity expectations. By providing cybersecurity-focused tools and knowledge, the engineer will empower R&D teams to deliver secure, robust products that align with Medtronic's mission of improving patient outcomes with security in mind.
POSITION RESPONSIBILITIES MAY INCLUDE THE FOLLOWING AND OTHER DUTIES MAY BE ASSIGNED:
Must be willing to work locally from our office in Lafayette, Colorado (On-Site 4 days/week)
Provide guidance to R&D project teams on security controls and assist with security-focused design and code reviews
Collaborate with project teams to create, review, and maintain threat models
Assist project teams with creating security architecture diagrams
Assist project teams with performing and documenting security risk assessments
Evaluate project deliverables for compliance with security-related standards and guidance
Assist with creation of MDS2 forms and answering product security questionnaires from customers
Assist project teams with executing and reviewing results from SAST and DAST tools
Capture metrics to measure the organization’s security posture
Respond to product security incidents and work with customers on security-related issues
Provide security training and documentation to the R&D organization as needed
Assist project teams with building and reviewing SBOMs
Assist project teams with analyzing vulnerabilities identified by penetration testing and SBOM analysis
BASIC QUALIFICATIONS:
MUST HAVE: MINIMUM REQUIREMENTS:
EDUCATION REQUIRED:
Bachelor’s Degree
YEARS OF EXPERIENCE:
4+ years of cybersecurity experience with a bachelor's degree
2+ years of cybersec
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s