Principal Product Security Engineer

6 months ago


Hyderabad, India Medtronic Full time

CAREERS THAT CHANGE LIVES

The Principal Cyber Info Assurance Analyst will join the Business Information Security team within the Business Partner Services (BPS) group and partner closely with the Global Security Office (GSO). You will serve as a champion of the GSO, focusing on enhancing user experience with our business partners. You’ll serve as a cybersecurity and compliance subject matter expert (SME) to the intelligent Data Solutions business. The cybersecurity SME will focus on identifying, prioritizing and driving remediation of all security risks owned by the business 

The primary focus of the role will be on achieving and/or maintaining HIPAA, GDPR and other regulatory compliance, and achieving and maintaining the ISO27011 and HITRUST certifications. You will facilitate and assist the business by interpreting the requirements and driving technical remediations. Communicate, escalate, and track progress on assessment remediation activities. Understand information security risks that are inherent to a business and articulate those risks in business terms. Support Commercial activities including contracting and IT/security questionnaires. Maintain current knowledge on data privacy and information security topics and their applicable program requirements. Provide concierge service to our business stakeholders when interacting with the GSO.

We believe that when people from different cultures, genders, and points of view come together, innovation is the result —and everyone wins. Medtronic walks the walk, creating an inclusive culture where you can thrive.

Bring your talents to an industry leader in medical technology and healthcare solutions – we’re a market leader and growing every day. You can be proud to be a part of technologies that are rooted in our long history of mission-driven innovation. You will be empowered to shape your own career. We support your growth with the training, mentorship, and guidance you need to own your future success. Together, we can transform healthcare.

Join us for a career in IT that changes lives.

Medtronic is committed to fostering a diverse and inclusive culture. Check out the accomplishments of our Women in IT group ;


A DAY IN THE LIFE

Maintain relationships within Operating Unit proactively share business' upcoming projects to the GSO Engage with cross functional teams to drive complex data security issues to resolution Contribute continuous improvement to the methodologies and practices of the Business Information Security to attain higher capability maturity levels Track status of open requests/tasks and drive accountability of requestors to ensure timely submitting Partner with the GSO and Privacy to perform deep dives over high risk processes and systems to identify and remediate gaps in data security Drive Security compliance activities related to HITRUST, ISO27001, SOC2, etc. Help facilitate and/or respond to Customer Inquiries Streamline processes and use of tools across Global IT to ensure data flow and security is maintained in the most efficient way possible Provide insight and business background to include data security, encryption, authorization, authentication, and access controls to the GSO process teams, when needed Prepare status reports on data security and privacy matters to educate the Business Relationship Managers (BRM) and business leadership about business owned IT security risks Compile and communicate security/privacy risk to Business IT Leadership, BRMs and business leadership as appropriate Establish a forum for outreach to the broader organization you represent to educate business requestors, business leaders, and IT leadership on the GSO Engagement processes Demonstrate strong knowledge of IT security controls, security risk and threats Regularly meet with the GSO to discuss issues, concerns, complex or high visibility projects, process improvement areas, and review SLA goals and actual results – leverage these relationships and information to ensure business readiness, engagement, and alignment with security programs and initiatives. Act as a resource for security compliance questions, risks, and concerns for the bisomess Perform other security-related duties as and when directed by the Business Information Security management Engage in stakeholder management in their respective business Reach out and meet with stakeholders, educate them about the GSO and Global IT  Serve business stakeholders and requesters as "Customers" with a focus on service and support Advise business / R&D teams on attaining security reviews earlier in their projects Hold yourself and your business accountable for committed deliverables and deadlines Ensure timely response to requests for security support from the business.

BASIC QUALIFICATIONS

MUST HAVE (Minimum Qualifications)


• High school diploma (or equivalent) and 12+ years of experience
OR
• Bachelor’s degree and 7+ years of experience or advanced degree and 5+ years of experience

DESIRED/PREFERRED QUALIFICATIONS


NICE TO HAVE (Preferred Qualifications)

Previous Medtronic experience Preference given to current Medtronic employees Strongly preferred: Experience in audit, risk management, vulnerability management, governance, IT security and/or compliance functions Experience with cloud storage systems/PaaS/SaaS Experience with AWS highly regarded Clear understanding of product architecture, data, data flows, and usage Experience working across business units and geographical boundaries to engage IT, business counterparts, and team members Ability to understand, question, and interpret internal and external security environments 3+ years working in IT GRC or controls function Proven experience dealing with ambiguous situations, and producing a consistent result with varied input Working knowledge of IT and security control frameworks (NIST, CobiT, ITIL, CyberEssentials, HDH), as well as regulatory requirements (PCI, HIPAA, GDPR, CCPA) Knowledge of information risk concepts and practices required Knowledge of controls manifestation in large global corporations with regional and local presence is required Experience communicating conceptual and technical information Experience translating technical data into business impact information Experience working with ServiceNow GRC (Governance, Risk, and Compliance) Knowledge of Frameworks, including PCI, SOX and ISO 27001 is a plus Detailed knowledge of ITGRC, Auditing principles / practices is desired Good understanding of Vendor management desired Good understanding of security frameworks desired, included but not limited to NIST, HISTRUST, OWASP, etc. Good project management skills desired Experience in examining reports on security controls (SSAE-16, PCI-ROC, Application Security Assessments)
  • Product Security

    4 months ago


    Hyderabad, India Progress Full time

    Job Summary We are Progress (Nasdaq: PRGS) - an experienced, trusted provider of products designed with customers in mind so they can develop the applications they need, deploy where and how they want, and manage it all safely and securely. We’re proud to have a diverse, global team where we value the individual and enrich our culture by considering...


  • Hyderabad, Telangana, India Microsoft Full time

    OverviewMicrosoft is at the forefront of innovation, empowering billions of people worldwide with its productivity applications and services.We are seeking a seasoned Principal Product Manager to join our Microsoft Security Response Center (MSRC) – Security Architecture Lifecycle Team for E+D (SALTed), driving objectives that prioritize security and trust...


  • Hyderabad, India Microsoft Full time

    Overview Microsoft runs on Trust. The M365 product portfolio makes up some of the most widely used and trusted productivity applications and services in the world. Would you like to help us protect the billions of people these apps empower to accomplish more in their lives? It’s a fun, dynamic, and always interesting set of problems securing these...

  • Principal SDE

    1 month ago


    Hyderabad, Telangana, India Microsoft Full time

    About the RoleWe are seeking a highly skilled Principal SDE to join our M65 Security Engineering team at Microsoft. As a Principal SDE, you will be responsible for designing, building, and running cloud services at large scale in C#, .Net, or any high-level programming language.ResponsibilitiesOversee the overall system architecture for a critically...


  • Hyderabad, India Orbit Reporting + Analytics Full time

    Sr. Principal Software Engineer / Implementation LeadAbout CompanyOrbit helps companies harness the power of accurate self-service reporting and analytics. Orbit integrates with ERP and critical business applications, providing access to real-time data from all data sources and empowering business users to build interactive reports, charts, and dashboards...


  • Hyderabad, India Orbit Reporting + Analytics Full time

    Sr. Principal Software Engineer / Implementation LeadAbout CompanyOrbit helps companies harness the power of accurate self-service reporting and analytics. Orbit integrates with ERP and critical business applications, providing access to real-time data from all data sources and empowering business users to build interactive reports, charts, and dashboards...


  • hyderabad, India Orbit Reporting + Analytics Full time

    Sr. Principal Software Engineer / Implementation LeadAbout CompanyOrbit helps companies harness the power of accurate self-service reporting and analytics. Orbit integrates with ERP and critical business applications, providing access to real-time data from all data sources and empowering business users to build interactive reports, charts, and dashboards...


  • Hyderabad, India Orbit Reporting + Analytics Full time

    Sr. Principal Software Engineer / Implementation LeadAbout CompanyOrbit helps companies harness the power of accurate self-service reporting and analytics. Orbit integrates with ERP and critical business applications, providing access to real-time data from all data sources and empowering business users to build interactive reports, charts, and dashboards...


  • Hyderabad, India Orbit Reporting + Analytics Full time

    Sr. Principal Software Engineer / Implementation LeadAbout CompanyOrbit helps companies harness the power of accurate self-service reporting and analytics. Orbit integrates with ERP and critical business applications, providing access to real-time data from all data sources and empowering business users to build interactive reports, charts, and dashboards...


  • Hyderabad, India Micron Full time

    Our vision is to transform how the world uses information to enrich life for all. Micron Technology is a world leader in innovating memory and storage solutions that accelerate the transformation of information into intelligence, inspiring the world to learn, communicate and advance faster than ever. JR53190 Staff Engineer/Principal Engineer Product...


  • Hyderabad, Telangana, India Tech Mahindra Full time

    Job OverviewTech Mahindra is seeking a skilled Principal SAP Security Specialist to join our team. This role requires an individual with extensive experience in SAP Security and a strong technical background.


  • hyderabad, India Orbit Reporting + Analytics Full time

    Sr. Principal Software Engineer / Implementation Lead About Company Orbit helps companies harness the power of accurate self-service reporting and analytics. Orbit integrates with ERP and critical business applications, providing access to real-time data from all data sources and empowering business users to build interactive reports, charts, and...


  • Hyderabad, India Blackbaud India Full time

    About the roleAs a Principal Software Engineer, you will focus on developing, enhancing and supporting a mission critical back-end application, while working with a broad range of application development, server maintenance, Devops and cloud-based computing. You will contribute to the development and operations of a critical application gateway on the cloud...


  • Hyderabad, India SecureWorks India Pvt. Ltd. (7230) Full time

    Title –Windows Sensor Principal Software Engineer Taegis XDR/Agent Secureworks® (NASDAQ: SCWX) a global cybersecurity leader, enables our customers and partners to outpace and outmaneuver adversaries with more precision, so they can rapidly adapt and respond to market forces to meet their business needs. With a unique combination of cloud-native,...

  • Associate Principal

    4 weeks ago


    hyderabad, India Evernorth Health Services Full time

    About Evernorth: Evernorth Health Services, a division of The Cigna Group (NYSE: CI), creates pharmacy, care, and benefits solutions to improve health and increase vitality. We relentlessly innovate to make the prediction, prevention, and treatment of illness and disease more accessible to millions of people. Cyber Security Associate Principal Position...


  • Hyderabad, India HSBC Full time

    Some careers shine brighter than others. If you’re looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further. HSBC is one of the largest...


  • Hyderabad, Telangana, India Dell International Services India Pvt Ltd (7451) Full time

    Cybersecurity Principal Software Engineer - IT Leader Role SummaryThe Software Engineering IT team at Dell International Services India Pvt Ltd (7451) delivers next-generation software application enhancements and new products for a changing world. We design and develop software for platforms, peripherals, applications, and diagnostics, leveraging advanced...


  • Hyderabad, India New Relic, Inc. Full time

    Principal Product Designer Principal Product Designer Principal Product Designer Req ID FY|R&D|#2 Location(s) Hyderabad, India; Work arrangement(s) Hybrid (works from home and New Relic office throughout the week) Your opportunity You will play a meaningful role in designing the experience to enable engineers to handle their data, ingest, query, alert on,...


  • Hyderabad, India Orbit Reporting + Analytics Full time

    Sr. Principal Software Engineer / Implementation LeadAbout CompanyOrbit helps companies harness the power of accurate self-service reporting and analytics. Orbit integrates with ERP and critical business applications, providing access to real-time data from all data sources and empowering business users to build interactive reports, charts, and dashboards...


  • hyderabad, India Blackbaud India Full time

    About the role We are seeking a highly experienced Principal Software Engineer to act as the technical lead for our engineering team. You will be responsible for overseeing the architecture, design, and delivery of software solutions on the Blackbaud Infinity platform using the .NET tech stack. You will provide technical leadership, mentor junior...