Назад
Company hidden
обновлено 5 дней назад

Principal Security & Privacy Engineer (Medical Devices)

160 800 - 241 200$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Security & Privacy Engineer (Medical Devices): Advancing Privacy by Design across connected medical devices and supporting technology systems with an accent on privacy risk management, regulatory compliance, and data protection assessments. Focus on leading DPIAs, coordinating privacy investigations and incident response, aligning privacy requirements with product security, and mentoring security professionals.

Location: Fridley, Minnesota, United States

Salary: $160,800–$241,200 per year

Company

hirify.global develops healthcare technologies and medical devices used to address chronic pain, movement disorders, bladder conditions, and other medical needs.

What you will do

  • Own and continuously improve the Privacy by Design framework across connected medical devices and supporting systems.
  • Lead cross-functional privacy activities, identify risks, and define technical and procedural controls for products, systems, and third-party integrations.
  • Conduct Data Protection Impact Assessments and drive mitigation planning and implementation.
  • Develop privacy documentation, data maps, compliance evidence, policies, procedures, and regulatory submission deliverables.
  • Lead privacy investigations, corrective actions, and incident response activities.
  • Partner with product security, engineering, legal, regulatory, and business stakeholders while mentoring privacy and security professionals.

Requirements

  • Bachelor’s degree with 7 years of relevant experience, Master’s degree with 5 years, or PhD with 3 years.
  • Extensive experience applying Privacy by Design principles throughout product development lifecycles.
  • Experience with data protection practices, risk management, cybersecurity principles, and incident response methodologies.
  • Knowledge of global privacy laws, including HIPAA and GDPR.
  • Understanding of medical device regulations and standards, including FDA cybersecurity guidance, ISO 13485, and ISO 81001-5-1.
  • Work authorization and sponsorship follow U.S. employment requirements; sponsorship is offered for Principal-level roles and above.

Nice to have

  • Privacy and security incident management experience.
  • Experience in healthcare or another heavily regulated industry.
  • CIPP, CHPC, or a similar privacy and compliance certification.

Culture & Benefits

  • Purpose-driven work focused on improving patient health and extending life.
  • Health, dental, and vision insurance, plus health and flexible spending accounts.
  • Paid time off, paid holidays, short-term and long-term disability coverage, and life insurance.
  • 401(k) plan with employer contribution and match.
  • Tuition assistance, employee stock purchase plan, employee assistance program, and incentive plans.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →