Medtronic Logo

Medtronic

Sr Product Security Engineer

Posted 2 Days Ago
Be an Early Applicant
In-Office
Galway
Senior level
In-Office
Galway
Senior level
Lead application and product security for mobile apps, Software as a Medical Device, APIs, and cloud-connected healthcare software. Responsibilities include threat modeling, architecture reviews, security risk assessments, vulnerability remediation, security testing analysis, regulatory documentation, incident response support, and secure development process improvement. The role partners with engineering, quality, regulatory, and clinical teams to embed risk-based security throughout the product lifecycle.
The summary above was generated by AI

Careers that change lives start here. Medtronic is a global leader in healthcare technology with a Mission to alleviate pain, restore health, and extend life. Our 95,000 employees work across more than 150 countries to put patients first — developing innovative medical technologies that improve the lives of 72+ million patients each year. Your unique talents will help shape the future of healthcare while building a career grounded in purpose, growth, and impact.

A Day in the Life

Medtronic 

At Medtronic, we value what makes you unique. Be part of a company that thinks differently to solve problems, make progress, and deliver meaningful innovations. 

Our Purpose 

At Medtronic Patient Care Systems (PCS), we power the digital heartbeat behind life-saving cardiac therapies. We build the connected ecosystem that enables clinicians to monitor, manage, and protect millions of patients living with implantable cardiac devices around the world. 

From secure device connectivity and real-time data platforms to intelligent clinical tools and patient-facing experiences, PCS transforms complex cardiac data into clarity — helping physicians make faster decisions, improving outcomes, and giving patients greater confidence in their care. 

Our work ensures that life-saving therapies are not only delivered securely, safely and reliably, but continuously improved through innovation, insight, and global scale. 

If you want to build technology that truly matters — join us. Together, we are shaping the future of connected cardiac care and changing lives every single day 

Come for a job, stay for a career!  

A Day in the Life Of

As a Senior Product Security Engineer, Mobile Applications, you will help software teams build secure mobile applications and connected digital health solutions that support life-changing medical technologies. You’ll work closely with software engineers, architects, quality, regulatory, and clinical partners to embed security across the software development lifecycle. 

This role is ideal for someone who enjoys solving complex technical problems, partnering with development teams, and translating security requirements into practical, risk-based solutions. You’ll help ensure products are secure by design while balancing patient safety, usability, regulatory expectations, and engineering efficiency. 

In this role, no two days are the same. You may be:

  • Leading threat models and security risk assessments for new mobile applications 

  • Reviewing application architecture and recommending security controls 

  • Helping teams understand results from security testing tools such as SAST, SCA, IAST, and DAST 

  • Supporting vulnerability investigations, remediation planning, and postmarket security activities 

  • Preparing cybersecurity documentation for regulatory submissions 

  • Partnering with teams to improve security processes, tooling, and automation 

You will support multiple software development projects at once and serve as a trusted security partner throughout the product lifecycle, from concept through release and post market support. 

Application and Product Security 

  • Partner with engineering teams developing mobile apps, Software as a Medical Device (SaMD), APIs, and cloud-connected software eco-systems. 

  • Perform secure design and architecture reviews 

  • Advise on authentication, authorization, secure communications, API security, and application resilience 

  • Guide teams on mobile security controls such as secure storage, certificate validation, runtime protections, and app hardening 

  • Translate technical findings into practical recommendations developers can act on 

Risk Assessment and Lifecycle Security 

  • Conduct threat modelling, cybersecurity risk assessments, and vulnerability analysis 

  • Define security requirements and support secure design decisions 

  • Review penetration testing results and support remediation efforts 

  • Help ensure compliance with FDA guidance, IEC 81001-5-1, and evolving global cybersecurity standards and regulations 

Regulatory and Compliance Support 

  • Develop cybersecurity documentation for regulatory submissions and audits, including: 

  • Threat models 

  • Security risk assessments 

  • Security test plans and reports 

  • Software Bills of Materials (SBOMs) 

  • Security architecture documentation 

  • Vulnerability assessments and dispositions 

  • Support responses to regulatory questions, customer security assessments, and inspections 

Incident Response and Continuous Improvement 

  • Support Product Security Incident Response (PSIRT), Coordinated Vulnerability Disclosure (CVD), and post market vulnerability investigations 

  • Assess exploitability, product impact, and remediation options 

  • Improve security workflows through automation, tooling, and process enhancements 

  • Share knowledge and help teams strengthen secure software development practices 

Key Skills & Experience

  • Application or Product Security 

  • Mobile application security, including iOS, Android, .NET MAUI, or Xamarin 

  • Secure Software Development Lifecycle 

  • API security 

  • OWASP Top 10 and OWASP MASVS 

  • Threat modelling 

  • SAST, SCA, IAST, DAST, and SBOM analysis 

  • PKI, JWT, TLS, and secure communications 

  • Python or PowerShell 

  • Cloud-connected applications 

  • FDA cybersecurity guidance and IEC 81001-5-1 understanding 

  • Experience in working in medical device cybersecurity, PSIRT, or coordinated vulnerability disclosure  

Minimum Qualifications 

  • Bachelor’s degree (Level 8 NFQ) in Computer Engineering, Software Engineering, Computer Science or related technical discipline. 

  • 4+ years of cybersecurity or related technical experience, or an advanced degree with 2+ years of relevant experience 

Medtronic offer a competitive salary and flexible Benefits Package

#LI-Hybrid


Physical Job Requirements
The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position. 

Recruitment Fraud Alert 

We are aware of phishing scams targeting job seekers. Please keep the following in mind: 


Apply only through official Medtronic channels. All legitimate Medtronic recruiting communications come from approved Medtronic platforms and official @medtronic.com email addresses. 


Medtronic will never ask for payment or sensitive personal information (such as bank account or Social Security details) during early stages of the hiring process. Any such requests are not legitimate. 


If you receive a suspicious message claiming to be from Medtronic, do not respond, click links, or open attachments. 


If you have any questions, concerns regarding the authenticity of a communication alleged to have been made by or on behalf of Medtronic, please contact us immediately at [email protected]



Benefits & Compensation

Medtronic offers a competitive Salary and flexible Benefits Package
A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create.  We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage.
 


Pay range / Rango salarial / Intervalo salarial /Fascia retributiva / Tranche de salaire / Gehaltsband / Salaribereik:  Ireland: 64,640.00 EUR - 96,960.00 EUR | 
This position is eligible for a short-term incentive called the Medtronic Incentive Plan (MIP).

HQ

Medtronic Dublin, Dublin, IRL Office

Dublin, Ireland

Similar Jobs

10 Hours Ago
Remote or Hybrid
2 Locations
Senior level
Senior level
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Leads strategy, delivery, governance, adoption, and lifecycle management for agentic AI products across Pfizer’s regulated manufacturing network. Defines use cases, roadmaps, evaluation frameworks, guardrails, success metrics, and value-realization models while partnering with manufacturing, engineering, data, quality, cybersecurity, and business teams. Oversees pilots, production deployment, monitoring, continuous improvement, responsible AI, and scaling of intelligent manufacturing capabilities.
Top Skills: Agentic AiAICloud Data PlatformsHistoriansLimsLlmopsMesMlopsPlant ConnectivityScadaSerialization
10 Hours Ago
Remote or Hybrid
2 Locations
Entry level
Entry level
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Build, prototype, evaluate, deploy, and improve agentic AI products for Pfizer’s regulated manufacturing network. Own agent backlogs, user discovery, experimentation, adoption, success metrics, governance, responsible AI, monitoring, and lifecycle operations. Partner with engineers, data scientists, manufacturing SMEs, Quality, Cybersecurity, and business stakeholders to convert manufacturing knowledge and user needs into production-grade intelligent agents that improve productivity, decision-making, and operational performance.
Top Skills: Advanced AnalyticsAgentic AiAgentic Ai OrchestrationAgile/ScrumAi Agent FrameworksAi Evaluation FrameworksAi GuardrailsCloud Data PlatformsCsvHistoriansHuman-In-The-Loop OversightLarge Language Models (Llms)LimsLlmopsMesMlopsOt/AutomationPrompt EngineeringRetrieval-Augmented Generation (Rag)Scada
12 Hours Ago
Remote or Hybrid
Ireland, IRL
Expert/Leader
Expert/Leader
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Lead cybersecurity incident response engagements, investigate intrusions through host and network forensics, hunt threats across large datasets, and develop remediation plans. Conduct investigations under outside counsel, analyze Windows, macOS, and Linux environments, and communicate findings to executives, regulators, and legal stakeholders. Contribute industry thought leadership through publications and presentations while completing technical work independently and applying AI to improve workflows and decision-making.
Top Skills: Ai TechnologiesAWSBro/ZeekGoogle Cloud PlatformLinuxmacOSAzureSuricataWindows

What you need to know about the Dublin Tech Scene

From Bono and Oscar Wilde to today's tech leaders, Dublin has always attracted trailblazers, with more than 70,000 people working in the city's expanding digital sector. Continuing its legacy of drawing pioneers, the city is advancing rapidly. Ireland is now ranked as one of the top tech clusters in the region and the number one destination for digital companies, with the highest hiring intention of any region across all sectors.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account