Medical Device Cybersecurity Program Manager
Core
Lead the execution and ongoing enhancement of an enterprise medical device cybersecurity program to support patient safety and clinical operations.
Role type
Senior IC cybersecurity program manager (healthcare)
Builds
Enterprise-wide medical device security posture and risk reduction
Domain
Healthcare + Medical Device Cybersecurity
Required skills
Cybersecurity program management, Healthcare IT, Clinical engineering, Enterprise-wide initiative direction, Medical device ecosystem familiarity, Clinical workflow knowledge, Vulnerability management, Risk frameworks, HIPAA Security Rule, FDA medical device cybersecurity guidance, Healthcare audit/accreditation expectations
Preferred skills
Large integrated delivery network experience, IoMT security platforms (Cynerio, Medigate), CMMS/CMDB integration, Asset data governance, Network segmentation, Zero trust, VLANs, PMP, PgMP, CISSP, HCISPP, CISM
Technologies
CMDB, CMMS, Firmware, Network Security
Responsibilities
Coordinate cross-functional efforts across cybersecurity, IT, Clinical Engineering/HTM, clinical operations, and external vendors; Oversee risk-based vulnerability management including prioritization, remediation tracking, compensating controls, and executive-level reporting; Support governance meetings, operating rhythms, KPIs, and leadership briefings; Hold vendors accountable for asset data quality, patching, firmware updates, incident response, and resolving cross-vendor issues; Ensure program alignment with cybersecurity, healthcare regulatory, audit, and accreditation expectations; Standardize processes for device onboarding, decommissioning, change management, and medical device incident response; Travel to primary local hospitals as needed in a primarily onsite, hybrid environment
Seniority
Senior, hands-on IC