





Tier-1 employer and metro location increase candidate density but specialized GRC focus limits the pool.
Medical-device regulatory and GRC expertise strongly limits cross-industry transferability.
Multiple explicit years, domain-specific GRC experience and mandatory security certifications enforce strict filtering.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead identification, assessment, and mitigation of cybersecurity risks across the organization, focusing on compliance within a regulated healthcare environment.
Drive risk management and security strategy initiatives, including designing and implementing risk management programs and improving GRC platform workflows.
Collaborate with cross-functional teams to integrate security throughout the product lifecycle and maintain adherence to cybersecurity regulations (e.g., HIPAA, GDPR, FDA standards).
7+ years of IT experience with a Bachelor's Degree in Engineering, MCA, or MSc.
7+ years in cybersecurity Governance, Risk, and Compliance (GRC) or internal/external audit, preferably in medical device or healthcare industry.
Minimum 5 years of risk management experience executing risk assessments, including methodologies like FAIR and NIST frameworks.
Certifications required: CISSP, CRISC, or CISA.
Experienced in designing and implementing comprehensive enterprise risk management programs with hands-on program execution and improvement skills.
Proficient in GRC tools such as ServiceNow, LogicGate, or OneTrust with ability to automate workflows and integrate technical infrastructures.
Strong understanding of cybersecurity regulations and risk management in medical device or healthcare settings, able to communicate complex concepts to executive leadership.