Demo

Medical Device Security Specialist (flex-hybrid) @ UCLA Health

Cyber Crime
Los Angeles, CA Full Time
POSTED ON 1/17/2025
AVAILABLE BEFORE 4/17/2025

Medical Device Security Specialist (flex-hybrid)

UCLA Health

Ranked as one of America's top hospitals, UCLA Health provides the best care at its 4 hospitals and more than 250 locations throughout Southern California.

Work Location : Los Angeles, USA

Onsite or Remote : Flexible Hybrid

Work Schedule : Monday-Friday, 8 : 00 am - 5 : 00 pm PST

Posted Date : 12 / 21 / 2024

Salary Range : $124,600 - 289,400 Annually

Employment Type : 2 - Staff : Career

Duration : Indefinite

Job # : 20710

Primary Duties and Responsibilities

The medical device security specialist will play a crucial role in safeguarding our medical device environment to ensure device integrity and resilience by assessing, monitoring, and responding to threats and vulnerabilities. This position will work closely with cross-functional teams to ensure that our medical devices meet the highest standards of security, compliance, and reliability.

Duties include, but are not limited to :

  • Conduct comprehensive assessments of medical devices to identify potential security risks and vulnerabilities. Operation and administration of the Medigate medical device security platform.
  • Ensure Medical Device IT inventory is accurate and up to date. Participate in developing and implementing integrations for clinical device inventory data in ServiceNow (CMDB inventory).
  • Conduct Pen Testing to assess the resilience of our security controls against simulated cyber-attacks, identifying potential weaknesses and areas for improvement.
  • Participate in developing and implementing strategies to mitigate cybersecurity risks associated with medical devices, including but not limited to threat modeling, vulnerability management, and penetration testing.
  • Ensure that medical devices comply with relevant cybersecurity regulations, standards, and guidelines, such as FDA premarket cybersecurity guidance, HIPAA, and GDPR.
  • Collaborate with cross-functional teams to strengthen technical controls of network connected medical devices. Continuously evaluate the effectiveness of existing security controls deployed to mitigate vulnerabilities in medical devices, recommending adjustments or enhancements as necessary to bolster protection against evolving threats.
  • Participate in developing and maintaining incident response plans and procedures to effectively respond to cybersecurity incidents involving medical devices.
  • Perform investigation and analysis of security incidents involving medical devices, conducting digital forensics examinations to uncover the root causes of incidents and support remediation efforts.
  • Engage in a rotating on-call schedule to promptly respond to cybersecurity threats within a 24 / 7 healthcare environment.
  • Evaluate the cybersecurity posture of third-party vendors and suppliers providing components or services for medical devices.

This flexible hybrid role allows for a blend of remote and on-site work, requiring presence on-site as needed based on operational requirements. Please note, travel to the 'home office' location is not reimbursed. Each employee will complete a FlexWork Agreement with their manager to outline expectations and ensure mutual understanding. These arrangements are periodically reviewed and may be adjusted or terminated as necessary.

Salary offers are based on a variety of factors including qualifications, experience, and internal equity. The full salary range for this position is $124,600 - $289,400 annually. The University anticipates offering a salary between the minimum and midpoint of this range.

Job Qualifications

Required Experience :

  • 8 years of extensive, hands-on experience in cybersecurity, with significant focus on healthcare IoT / IoMT device security.
  • 5 years of experience leading and managing teams of cybersecurity professionals to implement security programs.
  • Proven track record leading projects to deploy and operate security solutions across distributed environments.
  • Experience performing risk assessments, developing security policies / standards, and implementing controls.
  • Substantial background working with clinical engineers, biomedical teams, and IT teams in healthcare settings.
  • Deep expertise with security frameworks (NIST CSF, ISO, etc.), regulations (HIPAA, etc.) and cybersecurity best practices.
  • Required Qualifications :

  • Bachelor's degree in computer science, cybersecurity, information systems or related technical field is preferred, but not required with sufficient equivalent work experience.
  • Relevant industry certifications such as CISSP, CISM, CRISC, HCISPP, etc. or equivalent work experience.
  • Extensive technical skills across security domains including network, endpoint, cloud, application security, etc.
  • Significant experience with security tools for vulnerability management, SIEM, IDS / IPS, DLP, etc.
  • Outstanding leadership, communication, and stakeholder management abilities.
  • Exceptional problem-solving, critical thinking, and decision-making skills.
  • Ability to roll up sleeves and perform specialized, hands-on cybersecurity work as needed.
  • J-18808-Ljbffr

    Salary : $124,600 - $289,400

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Medical Device Security Specialist (flex-hybrid) @ UCLA Health?

    Sign up to receive alerts about other jobs on the Medical Device Security Specialist (flex-hybrid) @ UCLA Health career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $152,549 - $188,894
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $70,462 - $84,818
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Cyber Crime

    Cyber Crime
    Hired Organization Address San Francisco, CA Full Time
    Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between co...
    Cyber Crime
    Hired Organization Address Chicago, IL Full Time
    Northwestern Memorial Healthcare Northwestern Medicine is a leader in quality healthcare and service, bringing together ...
    Cyber Crime
    Hired Organization Address San Diego, CA Full Time
    ServiceNow ServiceNow allows employees to work the way they want to, not how software dictates they have to. And custome...
    Cyber Crime
    Hired Organization Address Santa Clara, CA Full Time
    Palo Alto Networks Implement Zero Trust, Secure your Network, Cloud workloads, Hybrid Workforce, Leverage Threat Intelli...

    Not the job you're looking for? Here are some other Medical Device Security Specialist (flex-hybrid) @ UCLA Health jobs in the Los Angeles, CA area that may be a better fit.

    Medical Device Security Specialist (flex-hybrid)

    UCLA Health Careers, Los Angeles, CA

    AI Assistant is available now!

    Feel free to start your new journey!