1

Contractual Medical Device Cybersecurity Security Jobs

Sr. Product Security Engineer

Newton, MA · On-site

$125K - $172K/yr

Security Standards - Apply medical device cybersecurity standards and guidance, including NIST, OWASP, and IEC 81001-5-1, and partner with development teams to strengthen security practices.

Sr. Product Security Engineer

Moundsview, MN · On-site

$121K - $166K/yr

Security Standards - Apply medical device cybersecurity standards and guidance, including NIST, OWASP, and IEC 81001-5-1, and partner with development teams to strengthen security practices.

Sr. Product Security Engineer

Moundsview, MN

$121K - $166K/yr

Security Standards - Apply medical device cybersecurity standards and guidance, including NIST, OWASP, and IEC 81001-5-1, and partner with development teams to strengthen security practices.

Sr. Product Security Engineer

Moundsview, MN · On-site

$121K - $166K/yr

Security Standards - Apply medical device cybersecurity standards and guidance, including NIST, OWASP, and IEC 81001-5-1, and partner with development teams to strengthen security practices.

Showing results 21-40

Contractual Medical Device Cybersecurity Security information

See salary details

$57K

$133K

$186K

How much do contractual medical device cybersecurity security jobs pay per year?

As of Sep 8, 2026, the average yearly pay for contractual medical device cybersecurity security in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What is a contractual medical device cybersecurity security professional?

A Contractual Medical Device Cybersecurity Security professional is an expert hired on a contract basis to assess, implement, and maintain cybersecurity measures for medical devices. Their main role is to protect medical equipment from cyber threats, ensuring that patient data and device functionality are not compromised. They work with manufacturers, healthcare providers, and IT teams to identify vulnerabilities, develop security protocols, and ensure compliance with industry regulations. These professionals often have specialized knowledge in both cybersecurity and healthcare technology standards.

What are the main challenges faced by professionals in a contractual medical device cybersecurity role?

Professionals working in contractual medical device cybersecurity often encounter challenges such as rapidly evolving regulatory requirements, integrating robust security measures without disrupting device functionality, and coordinating with cross-disciplinary teams including engineers, clinical staff, and compliance officers. Contract roles also require quick onboarding and adaptability, as every client may use different systems and have unique risk profiles. Staying current with the latest cybersecurity threats and ensuring compliance with standards like FDA and ISO 13485 within tight project timelines are also common hurdles.

What are the key skills and qualifications needed to thrive as a contractual medical device cybersecurity specialist, and why are they important?

To thrive as a Contractual Medical Device Cybersecurity Specialist, you need expertise in cybersecurity principles, risk assessment, and familiarity with medical device regulations, often backed by a degree in cybersecurity, computer science, or related fields. Experience with vulnerability assessment tools, network security systems, and certifications like CISSP or Security+ are typically required. Strong analytical thinking, problem-solving abilities, and effective communication are essential soft skills for working with cross-functional teams and conveying risks to stakeholders. These skills are crucial to protect patient safety and ensure regulatory compliance in an environment where cybersecurity threats can directly impact healthcare delivery.

What cities are hiring for Contractual Medical Device Cybersecurity Security jobs?

Cities with the most Contractual Medical Device Cybersecurity Security job openings:

What are the most commonly searched types of Medical Device Cybersecurity Security jobs?

The most popular types of Medical Device Cybersecurity Security jobs are:

What states have the most Contractual Medical Device Cybersecurity Security jobs?

States with the most job openings for Contractual Medical Device Cybersecurity Security jobs include:

Infographic showing various Contractual Medical Device Cybersecurity Security job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 78% Full Time, 15% Part Time, and 6% Contract. Highlights an 91% Physical, 1% Hybrid, and 8% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

Clinical Engineering Medical Device Security Engineer

CommonSpirit Health

Rancho Cordova, CA • On-site

$47.41 - $70.52/hr

Full-time

Re-posted 13 days ago


Key responsibilities

  • Collaborate with cross-functional teams to implement mitigation strategies that address medical device security vulnerabilities and threats.

  • Develop and test medical device security patching and remediation instructions to mitigate risks while also maintaining the integrity of the devices to ensure device reliability and patient safety.

  • Lead system-wide remediation efforts in response to security incidents by coordinating with teams to return devices to service and implement preventative measures.


CommonSpirit Health rating

7.0

Company rating: 7.0 out of 10

Based on 545 frontline employees who took The Breakroom Quiz

420th of 898 rated healthcare providers


Job description


Job Summary and Responsibilities

This position will serve the state of California region (specifically Merced to North State) and would require travel up to 75% of the time with non-traveling work being from a home office. We are looking for a candidate with residence in this region. 

As our Clinical Engineering Medical Device Security Engineer I, you will play a critical role in safeguarding CommonSpirit's extensive medical device environment, ensuring both device integrity and patient safety. You will be at the forefront of mitigating cybersecurity vulnerabilities and threats across our system, contributing to the development and testing of robust remediation strategies. This position is vital for maintaining the resilience of our medical technology infrastructure against evolving cyber risks and ensuring compliance with stringent cybersecurity regulations.

Every day you will collaborate dynamically with cross-functional teams to implement effective mitigation strategies, addressing identified medical device security vulnerabilities. A core responsibility will be to develop and meticulously test medical device security patching and remediation instructions, ensuring risks are mitigated without compromising device reliability or patient safety. In the event of a security incident, you will take the lead in system-wide remediation efforts, coordinating swift responses to return devices to service and implement preventative measures. Furthermore, you will conduct comprehensive assessments of system-wide medical devices, identifying potential risks through detailed reviews of MDS2 forms and information from OEMs, and resolve technical challenges while supporting field technicians.

To be successful in this role, you will possess a strong foundation in medical device cybersecurity, risk assessment, and technical remediation. Your expertise in vulnerability management, incident response, and regulatory compliance (e.g., relevant cybersecurity standards and guidelines) will be essential. We are seeking a proactive and detail-oriented engineer with a proven ability to collaborate effectively, troubleshoot complex technical issues, and develop robust solutions that protect critical healthcare infrastructure and ensure continuous patient care.

Essential Functions

  • Collaborate with cross-functional teams to implement mitigation strategies that address medical device security vulnerabilities and threats.
  • Develop and test medical device security patching and remediation instructions to mitigate risks while also maintaining the integrity of the devices to ensure device reliability and patient safety.
  • In the event of a security incident, lead system wide remediation efforts by coordinating with cross-functional teams to return the devices to service and to implement measures that will prevent future attacks.
  • Conduct comprehensive assessments of system wide medical devices to identify potential security risks and vulnerabilities by reviewing MDS2 forms, and obtaining information from medical device OEMs.
  • Ensure that medical devices comply with relevant cybersecurity regulations, standards and guidelines.
  • Resolve technical challenges and provide support to field technicians.

The job summary and responsibilities listed above are designed to indicate the general nature of the work performed within this job. They are not designed to contain or be interpreted as a comprehensive inventory of all job responsibilities required of employees assigned to this job. Employees may be required to perform other duties as assigned.

Job Requirements

Required:

  • Bachelors degree in HTM, Computer Science, Technology or Business or equivalent professional experience required upon hire
  • Minimum of 2-4 years of experience working in healthcare/IT Security, System Administration, Software Development or related field.
  • 1-2 years experience working in a healthcare/medical environment
  • Experience working with specialized medical equipment in a healthcare setting.
  • Experience with Cybersecurity and Infrastructure Security Agency (CISA) HIPAA/HITECH Compliance standards.
  • Valid Driver's License Required

Preferred:

  • Experience working with the software development life cycle or project management methodologies
  • Certified Radiology Equipment Specialists (CRES)
  • Certified Biomedical Equipment Technician (CBET)
  • Certified Healthcare Tech Manager (CHTM)
  • CompTIA A+ Certification (A-PLUS)
  • CompTIA Network + (NTWK-PLUS)

This position requires participation in a rotational on-call schedule, including nights, weekends, and holidays. Candidates must be available to respond to urgent service needs outside of regular business hours and may be required to return to the facility on short notice.

Where You'll Work

Inspired by faith. Driven by innovation. Powered by humankindness. CommonSpirit Health is building a healthier future for all through its integrated health services. As one of the nation’s largest nonprofit Catholic healthcare organizations, CommonSpirit Health delivers more than 20 million patient encounters annually through more than 2,300 clinics, care sites and 137 hospital-based locations, in addition to its home-based services and virtual care offerings. CommonSpirit has more than 157,000 employees, 45,000 nurses and 25,000 physicians and advanced practice providers across 24 states and contributes more than $4.2 billion annually in charity care, community benefits and unreimbursed government programs. Together with our patients, physicians, partners, and communities, we are creating a more just, equitable, and innovative healthcare delivery system.

Qualifications:

Required:

  • Bachelors degree in HTM, Computer Science, Technology or Business or equivalent professional experience required upon hire
  • Minimum of 2-4 years of experience working in healthcare/IT Security, System Administration, Software Development or related field.
  • 1-2 years experience working in a healthcare/medical environment
  • Experience working with specialized medical equipment in a healthcare setting.
  • Experience with Cybersecurity and Infrastructure Security Agency (CISA) HIPAA/HITECH Compliance standards.
  • Valid Driver's License Required

Preferred:

  • Experience working with the software development life cycle or project management methodologies
  • Certified Radiology Equipment Specialists (CRES)
  • Certified Biomedical Equipment Technician (CBET)
  • Certified Healthcare Tech Manager (CHTM)
  • CompTIA A+ Certification (A-PLUS)
  • CompTIA Network + (NTWK-PLUS)

This position requires participation in a rotational on-call schedule, including nights, weekends, and holidays. Candidates must be available to respond to urgent service needs outside of regular business hours and may be required to return to the facility on short notice.

Employment Type: Full Time

What CommonSpirit Health employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom