Lead product cybersecurity operations across the product lifecycle, including incident response, continuous surveillance, vulnerability management, risk assessment, and security monitoring. Partner cross-functionally with Engineering, Quality, Regulatory, Product Management, PSO, Global-IT, and Operations to identify, prioritize, and mitigate cybersecurity risks.
Numbers & Facts
Location
Minneapolis, MN
Salary
$55–$65 Per Hour
Description
Primary Talent Partners has a 12 month contract opening for a Product Security Engineer to join a multinational medical device company for an onsite position operating out of Minneapolis, MN.
Pay: $55.00/hr - $65.00/hr Contract: 12 months, extensions likely, conversion possible Type: W-2, cannot support C2C or provide visa sponsorship
Position Overview
Lead product cybersecurity operations across the product lifecycle, including incident response, continuous surveillance, vulnerability management, risk assessment, and security monitoring.
Partner cross-functionally with Engineering, Quality, Regulatory, Product Management, PSO, Global-IT, and Operations to identify, prioritize, and mitigate cybersecurity risks.
Cybersecurity Incident Response
Lead incident triage, investigation, containment, remediation, recovery, and root-cause analysis for product cybersecurity incidents.
Coordinate cross-functional response teams, escalation, documentation, and regulatory/customer notification assessments.
Continuous Security Surveillance
Monitor emerging threats, vulnerabilities, exploits, security advisories, and threat intelligence relevant to the product portfolio.
Assess emerging threats and proactively identify potential product exposure and required security actions.
Vulnerability Management
Lead end-to-end vulnerability management, from identification and risk assessment through remediation, mitigation, and closure.
Prioritize vulnerabilities based on severity, exploitability, exposure, product impact, and business/regulatory risk.
Cybersecurity Risk & Impact Assessment
Conduct cybersecurity risk and impact assessments across the product lifecycle, including threats, vulnerabilities, attack paths, and security controls.
Translate technical findings into product, patient/customer, business, and regulatory risk and recommend appropriate mitigation or risk acceptance.
SIEM / SOC & Security Monitoring
Integrate product cybersecurity signals, telemetry, threat intelligence, and vulnerability data into security monitoring.
Define monitoring requirements, detection use cases, alerting, escalation criteria, and opportunities for automated threat detection.
Leadership Communication
Provide timely executive communication on significant incidents, emerging vulnerabilities, cybersecurity risk, and remediation status.
Translate complex technical issues into concise risk assessments, recommendations, decisions, and business impact for senior leadership.
Cross-Functional Collaboration
Collaborate with Engineering, Software/Firmware, Quality, Regulatory, Product Management, Operations, and IT teams.
Drive cybersecurity alignment across product development, deployment, monitoring, post-market surveillance, and lifecycle management.
Continuous Improvement
Develop and mature cybersecurity processes, tools, automation, metrics, and operating models to improve security posture and response effectiveness.
Establish KPIs/KRIs, dashboards, lessons-learned processes, and continuous improvement initiatives across product cybersecurity operations.
Qualifications
Bachelor's or Master's degree in Cybersecurity, Computer Science, Engineering, Information Technology, or related field, with significant cybersecurity experience.
3 Years+ experience in product cybersecurity, incident response, vulnerability management, threat intelligence, security operations, and cybersecurity risk management.
Top 3 skills required include Vulnerability Management, Security signal Analytics with automation/AI, and Impact/Risk Analysis and report generation
Preferred Experience
Experience with Product Security, SIEM/SOC, vulnerability/exposure management, threat modeling, security architecture, and post-market cybersecurity.
Experience with regulated or safety-critical industries and frameworks such as FDA cybersecurity requirements, IEC 81001-5-1, ISO 14971, IEC 62443, or ISO 27001.
Leadership Competencies
Strong cybersecurity leadership, risk-based decision making, executive communication, and cross-functional influence.
Ability to lead through high-pressure incidents, translate technical complexity into business decisions, and drive measurable security improvements.
Primary Talent Partners is an Equal Opportunity / Affirmative Action employer committed to diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, age, national origin, disability, protected veteran status, gender identity, or any other factor protected by applicable federal, state, or local laws.
If you are a person with a disability needing assistance with the application or at any point in the hiring process, please contact us at info@primarytalentpartners.com