Myriad Genetics Logo

Myriad Genetics

Cybersecurity and Compliance Lead

Posted Yesterday
Be an Early Applicant
In-Office or Remote
Hiring Remotely in United States
Senior level
In-Office or Remote
Hiring Remotely in United States
Senior level
Leads product cybersecurity and regulatory compliance for regulated products. Responsibilities include threat modeling, security architecture reviews, risk assessments, secure SDLC guidance, vulnerability remediation, SBOM and supply-chain security, regulatory submission evidence, audits, and cross-functional cybersecurity workstream coordination.
The summary above was generated by AI

Overview

The Product Cybersecurity and Compliance Lead serves as the technical subject matter expert for product cybersecurity and regulatory cybersecurity compliance initiatives. The role partners with the Director of Information Security, Product Development, Engineering, Regulatory Affairs, and Quality teams to integrate cybersecurity into the product lifecycle and support regulatory submissions requiring cybersecurity evidence and documentation.

This role provides technical leadership for Secure Product Development Framework (SPDF) activities, threat modeling, architecture reviews, cybersecurity risk assessments, and compliance initiatives. The position also coordinates cybersecurity workstreams, supports regulatory and product teams, and helps establish sustainable cybersecurity practices across regulated product programs.
Responsibilities

  • Product Cybersecurity Leadership
    Serve as a technical SME for product cybersecurity activities across regulated products. 
  • Provide cybersecurity guidance for FDA, PMDA, IVDR, and related regulatory requirements. 
  • Lead threat modeling, security architecture reviews, and SPDF activities. 
  • Promote security-by-design practices throughout the product lifecycle. 
  • Provide cybersecurity input for new products, enhancements, and regulatory submissions. 
  • Partner with the Director of Information Security to mature product cybersecurity capabilities.
  • Cybersecurity Compliance
    Partner with Regulatory Affairs, Quality, Product, and Engineering teams on cybersecurity compliance initiatives. 
  • Support development of cybersecurity evidence and documentation for regulatory submissions. 
  • Translate cybersecurity regulations and standards into technical requirements. 
  • Participate in audits, assessments, and remediation activities. 
  • Maintain cybersecurity compliance documentation and supporting artifacts.
  • Security Assessments & Risk Management
    Conduct product cybersecurity risk assessments and threat analyses. 
  • Review software supply chain security controls and contribute to SBOM processes. 
  • Coordinate vulnerability assessments, penetration testing, and remediation efforts. 
  • Support cybersecurity risk management documentation and evidence generation. 
  • Review product architectures and designs for cybersecurity risks.

Cross-Functional Coordination & Execution

  • Coordinate cybersecurity workstreams across Product, Engineering, QA, Regulatory Affairs, IT, and Information Security. 
  • Track cybersecurity deliverables, dependencies, and regulatory milestones. 
  • Facilitate technical reviews, threat modeling sessions, and cybersecurity working meetings. 
  • Identify risks, blockers, and resource constraints affecting deliverables. 
  • Support cybersecurity roadmap planning and execution.
  • Security Architecture & Consultation
  • Advise teams on secure design principles and secure development practices. 
  • Review application, cloud, infrastructure, and system designs. 
  • Recommend cybersecurity controls aligned with regulatory and business requirements. 
  • Support implementation of secure development and data protection practices. 
  • Help establish repeatable cybersecurity practices across product development teams.

Required Qualifications

  1. 7+ years of cybersecurity, application security, or product security experience.
  2. Experience supporting software development or product engineering organizations.
  3. Experience with threat modeling, architecture reviews, and secure SDLC practices.
  4. Experience conducting product cybersecurity risk assessments.
  5. Experience supporting regulated products or regulated software development environments.
  6. Strong communication and stakeholder management skills.
  7. Ability to lead cross-functional initiatives without direct authority.

Preferred Qualifications

  1. Experience with medical device, diagnostics, biotechnology, healthcare, or other regulated products.
  2. Experience supporting cybersecurity components of regulatory submissions.
  3. Experience with SBOM management and software supply chain security.
  4. Experience with HITRUST, ISO 27001, NIST CSF, or similar security frameworks.
  5. CISSP, CCSP, CSSLP, CISM, AWS Security Specialty, GIAC, or equivalent cybersecurity certifications.

 Required 

  • U.S. citizen or national
  • Green Card holder 
  • Living full time in the USA

 We take geographic location into account when determining base salary to ensure equitable and competitive compensation.

 #LI-KO1

Physical Requirements

Use of equipment and tools necessary to perform essential job functions.

EEO

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. In hiring and all other employment decisions, we prohibit discrimination and harassment on the basis of any protected characteristic, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as any mental health or physical disability needs.

Similar Jobs

9 Days Ago
Remote
USA
145K-207K Annually
Senior level
145K-207K Annually
Senior level
Aerospace • Defense
Own and mature the cybersecurity compliance program against NIST frameworks, CMMC, and government security requirements. Lead audits, assessments, gap analyses, risk remediation, SSP and POA&M development, CUI protection, and EAR/ITAR compliance. Serve as liaison to government security stakeholders and support RMF/ATO packages, classified systems compliance, and accreditation efforts. Partner with IT, Security, Engineering, and Legal teams to embed controls across the organization.
Top Skills: 32 Cfr Part 117AtoCmmcControlled Unclassified Information (Cui)DfarsEarFedrampItarNispomNist 800-171Nist 800-53Plans Of Action And Milestones (Poa&Ms)RmfSystem Security Plans (Ssps)
6 Minutes Ago
Remote or Hybrid
128K-189K Annually
Entry level
128K-189K Annually
Entry level
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Develop Python software and data systems that capture, validate, process, monitor, and deliver autonomous-vehicle telemetry from fleets to cloud and AI development pipelines. Own reliability initiatives, define architectures and operational metrics, debug distributed cloud and backend issues, improve observability and data quality, and apply AI/LLMs to incident triage and root-cause analysis. Collaborate across engineering and operations teams, lead design reviews, deliver tested production solutions, and mentor engineers.
Top Skills: APIsAutomated TestingBackend ServicesBigQueryC++CiCloud StorageContainer OrchestrationData PipelinesDistributed SystemsGCPKubernetesLlmsMetricsMonitoringPythonSQLTelemetry Pipelines
7 Minutes Ago
Remote or Hybrid
United States
69K-107K Annually
Expert/Leader
69K-107K Annually
Expert/Leader
Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Provides on-site automotive technical support to GM dealerships and wholesale teams. Diagnoses vehicle and Techline issues, resolves escalated cases, supports repair and repurchase prevention, reviews dealership service readiness, trains personnel, troubleshoots IT and diagnostic tools, and reports product concerns to GM engineering and quality teams. The role manages territory relationships, supports arbitration and legal cases, and requires frequent travel, extensive automotive diagnostic experience, and strong customer and technical communication skills.
Top Skills: Buffalo ToolController Area Networks (Can)Gm Essential Service ToolsGm Global Connect Service ApplicationsGm LanGm Service Training CollegeInca ToolLan/WanMS OfficeNeoviPicoscopeTis/GdsV-Spy Intrepid Tools

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account