Enable job alerts via email!

Cybersecurity GRC Manager for Technical Oversight of Software & Medical Solutions

Ascension

United States

Remote

USD 90,000 - 130,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking organization as a Cybersecurity Manager, where you'll lead a dedicated team in safeguarding medical devices and applications. This role is pivotal in ensuring regulatory compliance and implementing innovative strategies to mitigate cybersecurity risks. You'll collaborate across departments to enhance security practices and foster a culture of awareness. With a commitment to continuous improvement, you will drive initiatives that shape the future of cybersecurity in healthcare. If you're passionate about making a difference and advancing your career in a supportive environment, this opportunity is for you.

Benefits

Paid time off (PTO)
Health insurance options
Retirement benefits with employer match
Tuition reimbursement
Employee assistance programs (EAP)
Parental leave
Adoption assistance

Qualifications

  • 5+ years in cybersecurity with a focus on medical devices.
  • Management experience in a regulated industry is essential.

Responsibilities

  • Lead a team to assess and mitigate cybersecurity risks.
  • Ensure compliance with industry standards and regulations.

Skills

Cybersecurity Management
Risk Management
Regulatory Compliance
Team Leadership
Communication Skills
Problem-Solving

Education

Bachelor's degree in Computer Science
High School diploma with experience

Tools

NIST Cybersecurity Framework
ISO 27001
FDA Regulations

Job description

We Are Hiring
  • Department: Security
  • Schedule: Full-Time Monday - Friday 8am-5pm CT
  • Location: Remote
What You Will Do

Job Summary:

We are seeking an experienced and dynamic Cybersecurity Manager to lead our cybersecurity team in reviewing medical devices and technical applications. In this role, you will be responsible for overseeing the cybersecurity review process for medical devices, software, and applications, ensuring compliance with regulatory standards, and driving strategies to mitigate potential cybersecurity threats. The ideal candidate will have a strong leadership background in cybersecurity within the healthcare industry, with a deep understanding of medical device technologies, risk management, and security best practices.

Key Responsibilities:

  • Team Leadership:Lead and manage a team of cybersecurity professionals in the review, assessment, and mitigation of cybersecurity risks related to medical devices and applications. Provide mentorship, direction, and professional development opportunities to team members.
  • Risk Management & Strategy:Develop and implement risk management strategies to assess, mitigate, and manage cybersecurity risks associated with medical devices and technical applications. Lead risk assessments, vulnerability analyses, and threat modeling exercises to identify security weaknesses and recommend corrective actions.
  • Regulatory Compliance Oversight:Ensure all medical devices and applications meet industry standards, regulations, and best practices, including FDA requirements, IEC 62304, ISO 14971, HIPAA, and NIST guidelines. Stay updated on evolving regulatory frameworks and ensure the organization is compliant with the latest cybersecurity standards.
  • Security Review & Auditing:Work in conjunction with other teams to facilitate the review and audit of all medical devices and technical applications. Ensure security controls are integrated throughout the product lifecycle from design and development through to deployment and post-market surveillance.
  • Collaboration & Cross-Functional Engagement:Collaborate with product management, IT, legal, and regulatory teams to advise on security considerations throughout the development and lifecycle of medical devices. Provide guidance on secure product design, secure coding practices, and overall cybersecurity strategy.
  • Security Awareness & Training:Lead the development and delivery of cybersecurity training and awareness programs for internal stakeholders, including product development teams and non-technical staff. Ensure that all employees understand the risks and are equipped to contribute to securing medical devices and applications. Foster a culture of cybersecurity awareness within the organization.
  • Continuous Improvement & Innovation:Drive continuous improvement in cybersecurity practices, procedures, and tools. Explore and implement emerging technologies and methodologies to enhance the security posture of medical devices and applications.

Qualifications:

  • Experience:
    • 5+ years of experience in cybersecurity, with a significant focus on medical devices, healthcare IT, or embedded systems.
    • At least 2-3 years of management experience leading teams of cybersecurity professionals in a regulated industry.
    • In-depth knowledge of relevant industry standards such as FDA regulations, IEC 62304, ISO 14971, and cybersecurity frameworks like NIST and ISO 27001.
    • Knowledge of medical device software architectures, including embedded systems, IoT (Internet of Things), & mobile applications in the healthcare space.
    • Familiarity with cloud security practices and technologies, especially in healthcare environments.
    • Previous experience in a regulatory compliance role, specifically within the medical device or healthcare industry.
    • Proven experience conducting security reviews, risk assessments, penetration tests, and audits for technical applications or devices in regulated environments.
    • Knowledge of medical device lifecycle, including design, testing, and deployment, and familiarity with industry-specific cybersecurity concerns.
  • Certifications:
    • Relevant certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or similar are required for this role..
  • Skills & Knowledge:
    • Strong understanding of medical device security risks, threat landscapes, and security controls.
    • Proficient in cybersecurity frameworks, security architecture, risk management, and compliance for regulated industries.
    • Proven ability to manage cross-functional teams and collaborate with senior leadership.
    • Excellent written and verbal communication skills, with the ability to present complex cybersecurity concepts to non-technical audiences.
    • Strong problem-solving abilities, decision-making skills, and attention to detail.
    • Ability to work in a fast-paced environment and manage multiple priorities.
What You Will Need

Education:

  • High School diploma equivalency with 3 years of cumulative experience OR Associate'sdegree/Bachelor's degree with 2 years of cumulative experience OR 7 years of applicable cumulative job specific experience required.
  • 3 years of leadership or management experience preferred.
Additional Preferences

Preferences:

  • Bachelor’s degree in Computer Science, Information Security, or a related field.

#LI-Remote

Why Join Our Team

When you join Ascension, you join a team of over 134,000 individuals across the country committed to a Mission of serving others and providing compassionate, personalized care to all. Our inclusive culture, continuing education programs, career coaches and benefit offerings are just a few of the resources and tools that team members can use to create a rewarding career path. In fact, Ascension spent nearly $46 million in tuition assistance alone to support associate growth and development. If you are looking for a career where you can grow and make a difference in your community, we invite you to join our team today.

Equal Employment Opportunity Employer

Ascension will provide equal employment opportunities (EEO) to all associates and applicants for employment regardless of race, color, religion, national origin, citizenship, gender, sexual orientation, gender identification or expression, age, disability, marital status, amnesty, genetic information, carrier status or any other legally protected status or status as a covered veteran in accordance with applicable federal, state and local laws.

For further information, view the EEO Know Your Rights (English) poster or EEO Know Your Rights (Spanish) poster.

As a military friendly organization, Ascension promotes career flexibility and offers many benefits to help support the well-being of our military families, spouses, veterans and reservists. Our associates are empowered to apply their military experience and unique perspective to their civilian career with Ascension.

Pay Non-Discrimination Notice

Please note that Ascension will make an offer of employment only to individuals who have applied for a position using our official application. Be on alert for possible fraudulent offers of employment. Ascension will not solicit money or banking information from applicants.

E-Verify Statement

This employer participates in the Electronic Employment Verification Program. Please click the E-Verify link below for more information.E-Verify

Benefits

Paid time off (PTO) Various health insurance options & wellness plans Retirement benefits including employer match plans Long-term & short-term disability Employee assistance programs (EAP) Parental leave & adoption assistance Tuition reimbursement Ways to give back to your community

Benefit options and eligibility vary by position. Compensation varies based on factors including, but not limited to, experience, skills, education, performance and salary range at the time of the offer.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Technology Risk & Resilience Manager

Assurant

Carpinteria

Remote

USD 99.000 - 166.000

Yesterday
Be an early applicant

Principal IT Solutions Analyst - Enterprise Security GRC

WEC Business Services LLC

Milwaukee

Hybrid

USD 101.000 - 153.000

2 days ago
Be an early applicant

Sr. Cybersecurity Operational Risk Officer

KeyBank

Ohio

Remote

USD 115.000 - 130.000

10 days ago

Principal IT Solutions Analyst - Enterprise Security GRC

Wisconsin Public Service Corporation

Milwaukee

Hybrid

USD 101.000 - 153.000

3 days ago
Be an early applicant

Cybersecurity Governance Lead

Slate

Troy

On-site

USD 120.000 - 150.000

-1 days ago
Be an early applicant

Cybersecurity GRC Manager for Technical Oversight of Software & Medical Solutions

Ascension Healthcare

Oregon City

Remote

USD 80.000 - 100.000

30+ days ago

GIS Policy Exception Governance Team Lead

Bank of America

Newark

On-site

USD 80.000 - 110.000

4 days ago
Be an early applicant

Operational Risk Officer- Cybersecurity Risk - Risks - New York, New York, United States

Societe Generale Corporate and Investment Banking - SGCIB

New York

Hybrid

USD 90.000 - 150.000

12 days ago

Cybersecurity Systems and Data Engineer

ASM Global

Remote

USD 80.000 - 120.000

30+ days ago