





Large Medtronic brand and metro Hyderabad increase competition, but senior GRC specialization limits qualified applicants.
Medical device cybersecurity and regulatory GRC expertise required makes cross-industry transfers difficult.
Mandates 8+ years, specialized GRC/regulatory experience and domain certifications, enforcing strict candidate filtering.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Own identification, assessment, and mitigation of cybersecurity risks across a large healthcare technology organization.
Lead design, implementation, and improvement of risk management and Governance, Risk, and Compliance (GRC) processes, ensuring adherence to regulations like HIPAA and GDPR.
Collaborate cross-functionally to integrate security risk management into products and operations, driving security posture enhancements and GRC platform automation.
Minimum 8 years of work experience; 7+ years specifically in cybersecurity GRC or audit within healthcare or medical device industry preferred.
Strong expertise in risk management activities including risk assessments using methods like FAIR and NIST standards.
In-depth knowledge of cybersecurity regulations relevant to medical device industry, such as HIPAA, GDPR, FDA, IEC 62443, and NIST.
Certifications such as CISSP, CRISC, or CISA are required or strongly preferred.
Experienced leader with track record of designing and executing comprehensive risk management programs in large, complex organizations.
Strong technical understanding of cybersecurity frameworks, GRC platforms (e.g., ServiceNow, LogicGate), and ability to bridge technical and non-technical stakeholders.
Deep domain knowledge of regulated healthcare or medical device environments with proficiency in aligning risk management with evolving regulatory trends.