... threat modeling, etc. in a hybrid multi-cloud environment. Key Responsibilities: Develop and manage multi-year cybersecurity strategy and roadmaps Advise leadership on cyber priorities, risk, and ...
... threat modeling, etc. in a hybrid multi-cloud environment. Key Responsibilities: Develop and manage multi-year cybersecurity strategy and roadmaps Advise leadership on cyber priorities, risk, and ...
... threat modeling, etc. in a hybrid multi-cloud environment. Key Responsibilities: Develop and manage multi-year cybersecurity strategy and roadmaps Advise leadership on cyber priorities, risk, and ...
... threat modeling, etc. in a hybrid multi-cloud environment. Key Responsibilities: Develop and manage multi-year cybersecurity strategy and roadmaps Advise leadership on cyber priorities, risk, and ...
Software Engineer, Product Security
Rochester, MN · On-site +1
$103K - $165K/yr
Experience analyzing security risks from sources such as penetration testing, threat modeling, vulnerability management etc. Other Requirements: * Must be at least 18 years of age. * Ability to ...
Software Engineer, Product Security
Rochester, MN · On-site +1
$103K - $165K/yr
Experience analyzing security risks from sources such as penetration testing, threat modeling, vulnerability management etc. Other Requirements: * Must be at least 18 years of age. * Ability to ...
... threat modeling, etc. in a hybrid multi-cloud environment. Key Responsibilities: Develop and manage multi-year cybersecurity strategy and roadmaps Advise leadership on cyber priorities, risk, and ...
... threat modeling, etc. in a hybrid multi-cloud environment. Key Responsibilities: Develop and manage multi-year cybersecurity strategy and roadmaps Advise leadership on cyber priorities, risk, and ...
Product Security Engineer - AI Trainer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Product Security Engineer - AI Trainer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
DevSecOps Architect
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
DevSecOps Architect
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
AI Security Specialist
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
AI Security Specialist
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Trust & Safety Engineer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Trust & Safety Engineer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Incident Response Engineer - AI Trainer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Incident Response Engineer - AI Trainer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Cybersecurity Analyst
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Cybersecurity Analyst
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Security Operations Engineer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Security Operations Engineer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
SOC Analyst
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
SOC Analyst
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Security Engineer - AI Trainer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Security Engineer - AI Trainer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Red Team Engineer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Red Team Engineer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Cloud Security Engineer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Cloud Security Engineer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Penetration Tester
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Penetration Tester
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Application Security Engineer - AI Trainer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Quick apply
Application Security Engineer - AI Trainer
Rochester, MN · Remote
$40 - $75/hr
... models. Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...
Principal Product Security Engineer
Rochester, MN · On-site +1
Deliver documentation for pre-market product development activities including security plans, architecture diagrams, data flow diagrams, threat models, security requirements, Design for Security ...
Principal Product Security Engineer
Rochester, MN · On-site +1
Deliver documentation for pre-market product development activities including security plans, architecture diagrams, data flow diagrams, threat models, security requirements, Design for Security ...
Feed Transportation
Le Roy, MN · On-site
$19 - $23/hr
Model behaviors that support Nexus mission and core values to be a trusted advisor to our customers ... Some requirements may exclude individuals who pose a direct threat or significant risk to the ...
Quick apply
Feed Transportation
Le Roy, MN · On-site
$19 - $23/hr
Model behaviors that support Nexus mission and core values to be a trusted advisor to our customers ... Some requirements may exclude individuals who pose a direct threat or significant risk to the ...
Threat Modeling information
See Rochester, MN salary details
$47.89 - $50.20
6% of jobs
$50.20 - $52.51
9% of jobs
$52.51 - $54.82
4% of jobs
$56.47 is the 25th percentile. Wages below this are outliers.
$54.82 - $57.13
7% of jobs
$57.13 - $59.44
20% of jobs
The median wage is $60.21 / hr.
$59.44 - $61.75
9% of jobs
$61.75 - $64.06
11% of jobs
$65.68 is the 75th percentile. Wages above this are outliers.
$64.06 - $66.37
10% of jobs
$66.37 - $68.68
10% of jobs
$68.68 - $71
5% of jobs
$71 - $73.31
6% of jobs
$47
$61
$73
How much do threat modeling jobs pay per hour?
What are the key skills and qualifications needed to thrive as a Threat Modeler, and why are they important?
What is threat modeling?
What are some common challenges faced by professionals in threat modeling roles, and how can they be addressed?
What is the difference between Threat Modeling vs Security Analyst?
| Aspect | Threat Modeling | Security Analyst |
|---|---|---|
| Primary Focus | Identifying potential security threats during system design and development | Monitoring, analyzing, and responding to security incidents and vulnerabilities |
| Skills & Certifications | Knowledge of security frameworks, risk assessment, threat identification | Security certifications (e.g., CISSP, CompTIA Security+), incident response skills |
| Work Environment | Typically involved in early-stage design, often within development teams | Operational, monitoring security tools, and incident management teams |
Threat Modeling and Security Analysts both play vital roles in cybersecurity. Threat Modeling focuses on proactively identifying potential threats during system design, while Security Analysts respond to ongoing security incidents. Understanding their distinct responsibilities helps organizations strengthen their security posture effectively.

Full-time
Medical, Dental, Vision, Retirement
Posted 21 days ago
Mayo Clinic rating
7.8
Based on 678 frontline employees who took The Breakroom Quiz
132nd of 870 rated healthcare providers
Job description
Mayo Clinic is top-ranked in more specialties than any other care provider according to U.S. News & World Report. As we work together to put the needs of the patient first, we are also dedicated to our employees, investing in competitive compensation and comprehensive benefit plans - to take care of you and your family, now and in the future. And with continuing education and advancement opportunities at every turn, you can build a long, successful career with Mayo Clinic.
- Medical: Multiple plan options.
- Dental: Delta Dental or reimbursement account for flexible coverage.
- Vision: Affordable plan with national network.
- Pre-Tax Savings: HSA and FSAs for eligible expenses.
- Retirement: Competitive retirement package to secure your future.
Responsibilities
The Office of Information Security's Transformation Office seeks a Principal Cybersecurity Strategist to lead the Data Security Posture Management (DSPM) related initiatives within the Information Security Modernization (ISM) Program for the enterprise. This role will embed, be a critical thought leader, drive the strategy and coordinate all aspects of information security within a high visibility AI ready secure data architecture. The role coordinates cross-project dependencies, ensures alignment, and accelerates enterprise implementation. The position supports secure AI-driven advancements by integrating safeguards across the AI-ready data architecture, supporting the advancement of data protection controls and management as innovation grows. The Principal Digital Strategist must assess delivery, integration, and operational risks and develop strategies that protect Mayo Clinic Data and patient trust.
Participate in and lead components of Mayo Clinic's enterprise-wide cybersecurity strategy, cyber innovation and associated services. Partner with leadership to align security with business goals, drive adoption of emerging technologies, and strengthen the organization's security posture. Lead and drive innovative security projects while collaborating cross functionally. Initial assignments will include leading and embedding within the development of a critical Mayo Clinic initiative and drive DSPM implementation and partner with dependent efforts, including critical partnership with the Privacy office. This role will coordinate cross-project dependencies, ensure alignment to program outcomes, and accelerate implementation. This will support AI-driven advancement by embedding safeguards throughout the AI data architecture and management practices as innovation grows and proactively assessing risk to protect Mayo Clinic Data. Must be technically skilled and experienced with modern data management, DSPM, database activity monitoring, data protection controls, PKI, API security, AI Security, S-SDLC, IAM, cloud security, threat modeling, etc. in a hybrid multi-cloud environment.
Key Responsibilities:
Develop and manage multi-year cybersecurity strategy and roadmaps
Advise leadership on cyber priorities, risk, and investment
Lead innovation in securing novel and emerging technology.
Guide and partner with strategic programs such as DSPM, database activity monitoring, AI security, API security, identity modernization, OT/IoT security, application protection, etc.
Foster cross-functional collaboration and mentor security professionals
Represent the organization in appropriate industry forums and contribute thought leadership
Core Competencies:
Executive communication and strategic vision
Technical breadth across modern security and IT domains
Promote a culture of innovation and change, ensuring continuous improvement in quality, cost-effectiveness, and service excellence.
Ability to translate technical risk for business leaders.
This is a hybrid position. Incumbent must live within a reasonable driving distance of a Mayo Clinic campus.
Mayo Clinic will not sponsor or transfer visas for this position including F1 OPT STEM.
Qualifications
Bachelor's degree and 7+ years of experience with digital strategy, digital product strategy, experience strategy, healthcare administration, business administration, strategic development experience, or related field; or Master's degree and 5+ years of related experience in the preceding or related fields.
Experience must include several of the following areas of expertise: digital product strategy and/or management, strategic planning, business plan development, consulting, customer experience or experience design, project management, stakeholder engagement, process change management, scorecard and dashboard development, financial analysis, new service/product planning and development, market research, and data management, analysis, and statistics. Management experience and experience with value-driven digital product management is preferred; experience navigating transformation in highly regulated industries is a plus.
Strong analytical skills with the ability to synthesize and capture the essence of complex information in order to discern meaning, trends, and the big picture quickly. Experience in consulting or advisory functions; demonstrated success in analyzing situations and using various methodologies to develop high-value strategies and plans methodically. Working knowledge of Design Thinking, experience design, and digital analytics as inputs to digital strategy processes and artifacts; able to bridge digital disciplines to develop novel strategy solutions that balance the needs of multiple stakeholders. Experience in successfully managing stakeholders in complex, matrixed, and strategic initiatives. Demonstrated success in effective decision-making that drives progress toward ambitious goals while managing complexity, ambiguity, risk, and uncertainty. Demonstrated ability to lead, influence and collaborate across disciplines, including business strategy, experience design, analytics, and technology. Expert story-telling skills. Strong written and verbal communication and persuasion skills. Strong interpersonal and active listening skills; ability to quickly establish high-trust relationships and facilitate group/team activities. Professional approach that reflects Mayo Clinic values. Strong planning, organizational, and problem-solving skills; attention to detail; ability to self-direct with minimal supervision, demonstrate judgement in delegating responsibilities, and work well under pressure. Servant leader; gifted collaborator with demonstrated cultural competence and strong skills in negotiation, change, and conflict management.
Preferred Qualifications:
Working knowledge of the Mayo technical environment and core business operations is strongly preferred. Advanced professional and culturally astute communication skills (both written and verbal) are required including ability to generate and deliver executive-level presentations. Must possess interpersonal skills to interact effectively with both technical and non-technical personnel at all levels of the organization, including proven ability to confidently lead discussion and negotiate on high risk and high-pressure issues while simultaneously building credibility & rapport. Demonstrated ability to tolerate & deal effectively with ambiguous situations and the varying political/cultural environments within the institution, department, divisions. Proven ability to offer guidance on business processes, technology capability and vulnerability assessments, and control enhancements or mitigation approaches. Solid knowledge of information security concepts and trends, project management methodologies, and relevant healthcare security regulatory requirements is required.
Certified as CISSP, GSEC, CISM, or security equivalent; or will obtain certification within 2 years of hire.
Exemption Status
Exempt
Compensation Detail
$155,500.80 - $225,492.80 / year
Benefits Eligible
Yes
Schedule
Full Time
Hours/Pay Period
80
Schedule Details
Monday - Friday, 8am - 5pm
Weekend Schedule
As needed
International Assignment
No
Site Description
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, protected veteran status or disability status. Learn more about the 'EOE is the Law'. Mayo Clinic participates in E-Verify and may provide the Social Security Administration and, if necessary, the Department of Homeland Security with information from each new employee's Form I-9 to confirm work authorization.
Recruiter
Ted KeefeQualifications:
Bachelor's degree and 7+ years of experience with digital strategy, digital product strategy, experience strategy, healthcare administration, business administration, strategic development experience, or related field; or Master's degree and 5+ years of related experience in the preceding or related fields.
Experience must include several of the following areas of expertise: digital product strategy and/or management, strategic planning, business plan development, consulting, customer experience or experience design, project management, stakeholder engagement, process change management, scorecard and dashboard development, financial analysis, new service/product planning and development, market research, and data management, analysis, and statistics. Management experience and experience with value-driven digital product management is preferred; experience navigating transformation in highly regulated industries is a plus.
Strong analytical skills with the ability to synthesize and capture the essence of complex information in order to discern meaning, trends, and the big picture quickly. Experience in consulting or advisory functions; demonstrated success in analyzing situations and using various methodologies to develop high-value strategies and plans methodically. Working knowledge of Design Thinking, experience design, and digital analytics as inputs to digital strategy processes and artifacts; able to bridge digital disciplines to develop novel strategy solutions that balance the needs of multiple stakeholders. Experience in successfully managing stakeholders in complex, matrixed, and strategic initiatives. Demonstrated success in effective decision-making that drives progress toward ambitious goals while managing complexity, ambiguity, risk, and uncertainty. Demonstrated ability to lead, influence and collaborate across disciplines, including business strategy, experience design, analytics, and technology. Expert story-telling skills. Strong written and verbal communication and persuasion skills. Strong interpersonal and active listening skills; ability to quickly establish high-trust relationships and facilitate group/team activities. Professional approach that reflects Mayo Clinic values. Strong planning, organizational, and problem-solving skills; attention to detail; ability to self-direct with minimal supervision, demonstrate judgement in delegating responsibilities, and work well under pressure. Servant leader; gifted collaborator with demonstrated cultural competence and strong skills in negotiation, change, and conflict management.
Preferred Qualifications:
Working knowledge of the Mayo technical environment and core business operations is strongly preferred. Advanced professional and culturally astute communication skills (both written and verbal) are required including ability to generate and deliver executive-level presentations. Must possess interpersonal skills to interact effectively with both technical and non-technical personnel at all levels of the organization, including proven ability to confidently lead discussion and negotiate on high risk and high-pressure issues while simultaneously building credibility & rapport. Demonstrated ability to tolerate & deal effectively with ambiguous situations and the varying political/cultural environments within the institution, department, divisions. Proven ability to offer guidance on business processes, technology capability and vulnerability assessments, and control enhancements or mitigation approaches. Solid knowledge of information security concepts and trends, project management methodologies, and relevant healthcare security regulatory requirements is required.
Certified as CISSP, GSEC, CISM, or security equivalent; or will obtain certification within 2 years of hire.
What Mayo Clinic employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Mayo Clinic
Sourced by ZipRecruiter
Mayo Clinic is the largest integrated, not-for-profit medical group practice in the world. We're building the future, one where the best possible care is available to everyone — and more people can heal at home. Our relentless research turns into earlier diagnoses and new cures. That's how we inspire hope in those who need it most. At Mayo Clinic, experts work together to solve the most challenging unmet needs of patients. Our history of innovation dates back almost 150 years, when brothers Will and Charlie Mayo pioneered an integrated, team-based approach to medicine. Today, that trailblazing spirit drives innovations like Mayo Clinic Platform — which powers new technologies to change how care is delivered to all.
Industry
Hospitals
Company size
10,000+ Employees
Headquarters location
Rochester, MN, US
Year founded
1919