Jobs and Careers
ME

Principal Data Protection & Privacy Engineer - Neuroscience

Medtronic
USA-MN, United Statesfull_timeVerifiedPosted 19 Aug 2024
💰 $218,400/yr

About the role

At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity for all. You’ll lead with purpose, breaking down barriers to innovation in a more connected, compassionate world.

A Day in the Life

Principal Data Protection & Privacy Engineer

We value what makes you unique. Be a part of a company that thinks differently to solve problems, make progress, and deliver meaningful innovations.

The Neuromodulation and Pelvic Health Groups gather support for critical R&D activities through the Neuro Core R&D organization which brings a large set of Medtronic’s Neurosciences therapies and their project teams together in a collaborative operating unit to employ the full breadth of our talent, technologies, products, services, and solutions to address the needs of customers and patients across the globe. Neuromodulation and Pelvic Health operating units offer devices and therapies to treat chronic pain, movement disorders, overactive bladder, non-obstructive urinary retention, and much more!

  

Be on the frontlines of the emerging area of medical device data protection and privacy as an integral member and technical leader within a team responsible for creating, deploying, and monitoring cybersecurity and privacy solutions for Medtronic’s medical devices and supporting IT infrastructure. Work directly with R&D teams to ensure all relevant data protection and privacy risks are identified and evaluated, and appropriate and well-balanced solutions are implemented.  Develop project privacy management deliverables for regulatory bodies to comply with standards / guidance documents, and successfully communicate data protection policies, processes and solutions to customers, regulatory bodies, and other stakeholders.

A Day in the Life

  • Develop and manage a Privacy by Design framework integrated with existing product development lifecycles.

  • Lead and perform product data privacy activities ranging from incident response to data protection impact assessments to mitigation implementation. 

  • Develop and perform product privacy consultations, product specific privacy policies and procedures

  • Leads product through Privacy by Design process in conjunction with product R&D teams and develop and recommend specific privacy controls for product/system wide privacy needs, including third party risk management.

  • Conducts and participates in product specific Data Privacy investigations and leads appropriate corrective action, remediation and mitigation efforts.

  • Participate in the creation and consultation of privacy required contract and consent language and processes.

  • Manage privacy related deliverables for regulatory bodies, ensuring compliance with key standards / guidance documents.

  • Responds and assists as appropriate with the Privacy & Security customer question response process

  • Consults with and educates regional business and legal partners on product specific privacy

  • Maintains data mapping and other artifacts to address compliance to global regulations including GDPR

  • Enforces privacy awareness and measures compliance through training and consultation.

  • Other duties as assigned

Must Have: Minimum Requirements:

  • Bachelors degree in a technically required

  • Minimum of 4 years of relevant experience, or advanced degree with a minimum of 2 years relevant experience

Nice to Have: 

  • Privacy and Security incident management experience 

  • Cybersecurity/Information Security and/or IT background

  • Experience with Privacy by Design principals and integrating privacy into product development lifecycles.

  • Understanding of data protection practices, risk management processes, cybersecurity principles, and incident response methodologies

  • Expertise in Global Privacy laws including HIPAA and GDPR

  • Experience in Healthcare industry or other heavily regulated industry.

  • CIPP, CHPC or similar certification, or proven experience and/or formal education in Data Privacy and Compliance

  • J.D. and/or M.B.A

  • Understanding of medical device regulations and standards (e.g., FDA pre and post market guidance on cybersecurity for medical device manufacturers, ISO 13485, ISO 81001-5-1, etc.)

  • Experience with contracting and legal interpretation

  • Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution

  • High atte

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Medtronic

View company profile →