Medical Device Cyber Security Program Manager
Core
Lead and mature the enterprise medical device security program across a multi-hospital environment to ensure devices remain secure, compliant, and aligned with clinical safety and enterprise cybersecurity requirements.
Role type
Senior IC program manager (medical device cybersecurity)
Builds
Enterprise governance, vulnerability management processes, and standardized device lifecycle workflows for a multi-hospital health system
Domain
Healthcare IT / Medical Device Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
IT program/project management, risk-based vulnerability management, vendor accountability, healthcare regulatory compliance (HIPAA/FDA), medical device ecosystem knowledge, cross-functional coordination, executive reporting
Preferred skills
Large integrated delivery network experience, IoMT security platforms (Cynerio, Medigate), CMMS/CMDB integration, network segmentation, zero trust, VLANs
Technologies
Cynerio, Medigate, CMMS, CMDB
Responsibilities
Lead execution and continuous improvement of the enterprise medical device cybersecurity program; Coordinate cross-functional workstreams across cybersecurity, IT, Clinical Engineering/HTM, clinical operations, and vendors; Oversee risk-based vulnerability management including prioritization, remediation tracking, and executive reporting; Support governance forums, operating cadence, KPIs, and leadership briefings; Manage vendor accountability for asset data quality, patching, firmware updates, and incident response; Ensure program alignment with cybersecurity, healthcare regulatory, audit, and accreditation expectations; Standardize processes for device onboarding, decommissioning, change management, and medical device incident response
Seniority
Senior, hands-on IC