Security and Privacy Compliance Analyst - Cybersecurity
Core
Ensure cybersecurity and privacy compliance for medical device systems throughout the product development lifecycle.
Role type
Security and Privacy Compliance Analyst
Builds
Medical device software systems (CGM)
Domain
Medical device / Cybersecurity / Regulatory Compliance
Deliverable
client delivery
Required skills
Knowledge of FedRAMP, NIST 800-53, NIST CSF, ISO 27001, SOC2, GDPR, EU MDR; Experience with security compliance questionnaires; Ability to analyze regulations and identify compliance gaps; Documentation management for audits
Preferred skills
Technical knowledge of cybersecurity and privacy standards in the Medical Device field
Technologies
FedRAMP, NIST 800-53, NIST CSF, ISO 27001, SOC2, GDPR, EU MDR
Responsibilities
Collaborate with cross-functional teams to represent cybersecurity and privacy compliance interests; Facilitate completion of security compliance questionnaires for vendors and partners; Ensure compliance with cybersecurity and privacy standards throughout the product development lifecycle; Analyze newly released regulations to identify compliance gaps and collaborate on corrective actions; Maintain documentation and evidence for continual compliance and audits; Partner with stakeholders to ensure risk mitigation activities are well documented
Seniority
Mid-Senior level (5-8 years experience)