At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity for all. You’ll lead with purpose, breaking down barriers to innovation in a more connected, compassionate world.
A Day in the LifeWe are seeking a highly skilled Cyber Defense Specialist to join our dynamic cyber security team. In this role, you will be responsible for identifying, analyzing, and mitigating cyber threats to protect our organization’s assets and data. You will leverage your expertise in incident response to enhance our security posture and ensure the organization is well-prepared to respond to evolving threats. Key activities include:Incident Response: Active incident response team member responsible for investigating and closing out security incidents.
Reporting: Create and present reports, dashboards, and briefings to stakeholders at various levels within the organization.
Threat Analysis: Monitor and analyze cyber threats and vulnerabilities from various sources, including open-source intelligence, industry reports, and dark web forums.
Responsibilities may include the following and other duties may be assigned:
Monitor security alerts and identify potential incidents in real time from various sources (SIEM, intrusion detection systems)Participate in the full incident Response lifecycle. Perform investigations on complex information security incidents,including determining root cause and lessons learned.Develop, implement, and review processes, procedures, and playbooks for Security Incident Response and SecurityIncident Triage functions.Apply Security Incident Response log analysis and forensic techniques (i.e. forensic timelining) on events and artifacts.Participate in the development of custom detection rules, partnering with the Anomaly Detection Program Manager, forboth common and targeted threats.Provide support during post-incident reviews and help identify areas for process improvement.Stay current on the latest cybersecurity threats, vulnerabilities, and trendsParticipate in incident response training and tabletop exercises to enhance skills and readinessAnalyze the collected data to identify trends, patterns, and potential threats specific to the organization. Create a summary report outlining actionable insights and recommended mitigation strategies for the security team and key stakeholders.Meet with other incident response team to provide intelligence support for ongoing investigations. Share insights about threat actors, their methodologies, and potential indicators of compromise (IOCs) relevant to the current incidentsCollaborate with the vulnerability management team to review the latest vulnerability assessments. Discuss findings and recommend prioritization based on threat intelligence and potential impact on the organization.Participate in on-call rotation for full coverage of incident response activitiesWork effectively with third part SOC partnersRespond to potential incidents associated reputational risk associated with malicious domainsEffectively investigate organizational incidents such as account takeovers, zero-day attacks, phishing campaignsWork with security awareness team and threat intelligence teams to provide develop organizational trainingDocument processes and playbooksPartner with internal and external teams. Ability to negotiate with others to reach understanding or agreement.Provide technical solutions to a wide range of difficult problems. Solutions are imaginative, thorough, and practicable,and consistent with organization objectives.Work on developing or refining threat models for the organization. This involves mapping out potential attack vectors, assessing the organization’s defenses, and recommending improvements based on intelligence findings.Contribute to creating training materials for employees on current cyber threats and best practices for maintaining security hygiene. Plan upcoming awareness sessions to educate staff about recognizing phishing attempts and other social engineering tactics.Formulate specific hypotheses about potential threats based on previous incidents, emerging trends, or known vulnerabilities.Determine which systems, applications, or data sets will be the focus of the hunt, often based on risk assessments or threat intelligence.Collect logs from various sources, such as SIEM (Security Information and Event Management) systems, firewalls, and endpoint detection and response (EDR) tools.Foster a positive, engaging and challenging team-focused ‘global’ work environment to ensure high productivity, employee engagement, and optimal performance.Proactively engage with Medtronic business and Global IT partners to identify and define opportunities where the application of information technology can advance the strategic goals and objectives of Medtronic.Act as role model by “living” and demonstrating the MedtronicRequired Knowledge and Experience:
4+ years of Information Security Experience + Bachelors DegreeExperience in a global enterprise on a defined cyber security teamExperience participating in incident response events and responseExperience briefing leadership and speaking to the organization broadlyExperience identifying key threats and vulnerabilities and reporting them out to the organizationNICE TO HAVE (Preferred Qualifications)
Familiarity with frameworks like MITRE ATT&CK, Diamond Model, or Cyber Kill Chain, which help in understanding and categorizing threatsBasic understanding of reverse engineering and static/dynamic analysis of malware to identify behaviors and capabilities.Skills in evaluating risks and vulnerabilities to help prioritize threats based on potential impact and likelihood.Familiarity with cloud environments (e.g., AWS, Azure, GCP) and the specific threats associated with cloud security.Understanding of social engineering tactics to help recognize and counteract human-targeted threats.Physical Job Requirements
The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position.
Medtronic offers a competitive Salary and flexible Benefits Package
A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create. We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage.
This position is eligible for a short-term incentive called the Medtronic Incentive Plan (MIP).About Medtronic
We lead global healthcare technology and boldly attack the most challenging health problems facing humanity by searching out and finding solutions.
Our Mission — to alleviate pain, restore health, and extend life — unites a global team of 95,000+ passionate people.
We are engineers at heart— putting ambitious ideas to work to generate real solutions for real people. From the R&D lab, to the factory floor, to the conference room, every one of us experiments, creates, builds, improves and solves. We have the talent, diverse perspectives, and guts to engineer the extraordinary.
Learn more about our business, mission, and our commitment to diversity here