- Medtronic USA Inc
- Galway, Connacht
- Full-Time
- 24 days ago
Sr Product Security Engineer.
Before you go
Before you leave us, sign up for our email alerts
We don't do job spam, just the best digital jobs delivered straight to your inbox.
Sr Product Security Engineer: our view in 3 lines...
- The Role:This role is for a senior product security engineer focused on mobile applications and connected digital health software in medical technology.
- The Person:The person will review application architecture, run threat models and risk assessments, assess security testing results, support vulnerability investigations and remediation, and prepare cybersecurity documentation for regulatory submissions.
- Requirements:The ideal candidate has application or product security experience, mobile application security, OWASP Top 10 and OWASP MASVS knowledge, threat modelling, SAST, SCA, IAST, DAST, Python or PowerShell, and understanding of FDA cybersecurity guidance and IEC 81001-5-1.
About the role
Careers that change lives start here. Medtronic is a global leader in healthcare technology with a Mission to alleviate pain, restore health, and extend life. Our 95,000 employees work across more than 150 countries to put patients first — developing innovative medical technologies that improve the lives of 72+ million patients each year. Your unique talents will help shape the future of healthcare while building a career grounded in purpose, growth, and impact.
A Day in the Life
MedtronicÂ
At Medtronic, we value what makes you unique. Be part of a company that thinks differently to solve problems, make progress, and deliver meaningful innovations.Â
Our Purpose Â
At Medtronic Patient Care Systems (PCS), we power the digital heartbeat behind life-saving cardiac therapies. We build the connected ecosystem that enables clinicians to monitor, manage, and protect millions of patients living with implantable cardiac devices around the world.Â
From secure device connectivity and real-time data platforms to intelligent clinical tools and patient-facing experiences, PCS transforms complex cardiac data into clarity — helping physicians make faster decisions, improving outcomes, and giving patients greater confidence in their care.Â
Our work ensures that life-saving therapies are not only delivered securely, safely and reliably, but continuously improved through innovation, insight, and global scale.Â
If you want to build technology that truly matters — join us. Together, we are shaping the future of connected cardiac care and changing lives every single dayÂ
Come for a job, stay for a career! Â
A Day in the Life Of
As a Senior Product Security Engineer, Mobile Applications, you will help software teams build secure mobile applications and connected digital health solutions that support life-changing medical technologies. You’ll work closely with software engineers, architects, quality, regulatory, and clinical partners to embed security across the software development lifecycle.Â
This role is ideal for someone who enjoys solving complex technical problems, partnering with development teams, and translating security requirements into practical, risk-based solutions. You’ll help ensure products are secure by design while balancing patient safety, usability, regulatory expectations, and engineering efficiency.Â
In this role, no two days are the same. You may be:
-
Leading threat models and security risk assessments for new mobile applicationsÂ
-
Reviewing application architecture and recommending security controlsÂ
-
Helping teams understand results from security testing tools such as SAST, SCA, IAST, and DASTÂ
-
Supporting vulnerability investigations, remediation planning, and postmarket security activitiesÂ
-
Preparing cybersecurity documentation for regulatory submissionsÂ
-
Partnering with teams to improve security processes, tooling, and automationÂ
You will support multiple software development projects at once and serve as a trusted security partner throughout the product lifecycle, from concept through release and post market support.Â
Application and Product SecurityÂ
-
Partner with engineering teams developing mobile apps, Software as a Medical Device (SaMD), APIs, and cloud-connected software eco-systems.Â
-
Perform secure design and architecture reviewsÂ
-
Advise on authentication, authorization, secure communications, API security, and application resilienceÂ
-
Guide teams on mobile security controls such as secure storage, certificate validation, runtime protections, and app hardeningÂ
-
Translate technical findings into practical recommendations developers can act onÂ
Risk Assessment and Lifecycle SecurityÂ
-
Conduct threat modelling, cybersecurity risk assessments, and vulnerability analysisÂ
-
Define security requirements and support secure design decisionsÂ
-
Review penetration testing results and support remediation effortsÂ
-
Help ensure compliance with FDA guidance, IEC 81001-5-1, and evolving global cybersecurity standards and regulationsÂ
Regulatory and Compliance SupportÂ
-
Develop cybersecurity documentation for regulatory submissions and audits, including:Â
-
Threat modelsÂ
-
Security risk assessmentsÂ
-
Security test plans and reportsÂ
-
Software Bills of Materials (SBOMs)Â
-
Security architecture documentationÂ
-
Vulnerability assessments and dispositionsÂ
-
Support responses to regulatory questions, customer security assessments, and inspectionsÂ
Incident Response and Continuous ImprovementÂ
-
Support Product Security Incident Response (PSIRT), Coordinated Vulnerability Disclosure (CVD), and post market vulnerability investigationsÂ
-
Assess exploitability, product impact, and remediation optionsÂ
-
Improve security workflows through automation, tooling, and process enhancementsÂ
-
Share knowledge and help teams strengthen secure software development practicesÂ
Key Skills & Experience
-
Application or Product SecurityÂ
-
Mobile application security, including iOS, Android, .NET MAUI, or XamarinÂ
-
Secure Software Development LifecycleÂ
-
API securityÂ
-
OWASP Top 10 and OWASP MASVSÂ
-
Threat modellingÂ
-
SAST, SCA, IAST, DAST, and SBOM analysisÂ
-
PKI, JWT, TLS, and secure communicationsÂ
-
Python or PowerShellÂ
-
Cloud-connected applicationsÂ
-
FDA cybersecurity guidance and IEC 81001-5-1Â understandingÂ
-
Experience in working in medical device cybersecurity, PSIRT, or coordinated vulnerability disclosure Â
Minimum QualificationsÂ
-
Bachelor’s degree (Level 8 NFQ) in Computer Engineering, Software Engineering, Computer Science or related technical discipline.Â
-
4+ years of cybersecurity or related technical experience, or an advanced degree with 2+ years of relevant experienceÂ
Medtronic offer a competitive salary and flexible Benefits Package
#LI-Hybrid
Â
Physical Job Requirements
The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position. 
‌
Recruitment Fraud AlertÂ
We are aware of phishing scams targeting job seekers. Please keep the following in mind:Â
Apply only through official Medtronic channels. All legitimate Medtronic recruiting communications come from approved Medtronic platforms and official @medtronic.com email addresses.Â
Medtronic will never ask for payment or sensitive personal information (such as bank account or Social Security details) during early stages of the hiring process. Any such requests are not legitimate.Â
If you receive a suspicious message claiming to be from Medtronic, do not respond, click links, or open attachments.Â
If you have any questions, concerns regarding the authenticity of a communication alleged to have been made by or on behalf of Medtronic, please contact us immediately at AskHR@medtronic.com.Â
‌
Â
Â
Benefits & Compensation
Medtronic offers a competitive Salary and flexible Benefits Package
A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create. We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage.
Â
Â
Pay range / Rango salarial / Intervalo salarial /Fascia retributiva / Tranche de salaire / Gehaltsband / Salaribereik: Â Ireland: 64,640.00 EURÂ - 96,960.00 EURÂ |Â
Â
This position is eligible for a short-term incentive called the Medtronic Incentive Plan (MIP).
