Myriad Genetics, Inc

Cybersecurity and Compliance Lead

Myriad Genetics, Inc$110K — $130K *
Healthcare
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of experience in cybersecurity, application security, or product security.
  • Experience working in software development or product engineering environments.
  • Proficient in threat modeling, architecture reviews, and secure Software Development Life Cycle (SDLC) practices.
  • Experienced in conducting product cybersecurity risk assessments.
  • Familiarity with regulated products or regulated software development settings.
  • Strong communication skills for effective stakeholder management.
  • Demonstrated ability to lead initiatives across teams without direct authority.

Responsibilities

  • Serve as the technical subject matter expert for product cybersecurity initiatives.
  • Provide guidance on FDA, PMDA, IVDR, and other regulatory cybersecurity requirements.
  • Lead threat modeling, architecture reviews, and SPDF activities.
  • Promote security-by-design practices throughout all phases of product lifecycle.
  • Provide cybersecurity insights for new products and regulatory submissions.
  • Collaborate with Regulatory Affairs and Engineering teams on compliance initiatives.
  • Conduct risk assessments and threat analyses for product cybersecurity.

Benefits

  • Opportunity to work at the intersection of cybersecurity and regulated product development.
  • Access to leadership roles in maturing cybersecurity practices.
  • Cross-functional collaboration with diverse teams: Product, Engineering, QA, and more.
  • Engagement in significant compliance and regulatory activities.
  • Chance to contribute to the safe development of healthcare-related technologies.
Full Job Description
Job Description

Overview

The Product Cybersecurity and Compliance Lead serves as the technical subject matter expert for product cybersecurity and regulatory cybersecurity compliance initiatives. The role partners with the Director of Information Security, Product Development, Engineering, Regulatory Affairs, and Quality teams to integrate cybersecurity into the product lifecycle and support regulatory submissions requiring cybersecurity evidence and documentation.

This role provides technical leadership for Secure Product Development Framework (SPDF) activities, threat modeling, architecture reviews, cybersecurity risk assessments, and compliance initiatives. The position also coordinates cybersecurity workstreams, supports regulatory and product teams, and helps establish sustainable cybersecurity practices across regulated product programs.

Responsibilities
  • Product Cybersecurity Leadership
    Serve as a technical SME for product cybersecurity activities across regulated products.
  • Provide cybersecurity guidance for FDA, PMDA, IVDR, and related regulatory requirements.
  • Lead threat modeling, security architecture reviews, and SPDF activities.
  • Promote security-by-design practices throughout the product lifecycle.
  • Provide cybersecurity input for new products, enhancements, and regulatory submissions.
  • Partner with the Director of Information Security to mature product cybersecurity capabilities.
  • Cybersecurity Compliance
    Partner with Regulatory Affairs, Quality, Product, and Engineering teams on cybersecurity compliance initiatives.
  • Support development of cybersecurity evidence and documentation for regulatory submissions.
  • Translate cybersecurity regulations and standards into technical requirements.
  • Participate in audits, assessments, and remediation activities.
  • Maintain cybersecurity compliance documentation and supporting artifacts.
  • Security Assessments & Risk Management
    Conduct product cybersecurity risk assessments and threat analyses.
  • Review software supply chain security controls and contribute to SBOM processes.
  • Coordinate vulnerability assessments, penetration testing, and remediation efforts.
  • Support cybersecurity risk management documentation and evidence generation.
  • Review product architectures and designs for cybersecurity risks.


Cross-Functional Coordination & Execution
  • Coordinate cybersecurity workstreams across Product, Engineering, QA, Regulatory Affairs, IT, and Information Security.
  • Track cybersecurity deliverables, dependencies, and regulatory milestones.
  • Facilitate technical reviews, threat modeling sessions, and cybersecurity working meetings.
  • Identify risks, blockers, and resource constraints affecting deliverables.
  • Support cybersecurity roadmap planning and execution.
  • Security Architecture & Consultation
  • Advise teams on secure design principles and secure development practices.
  • Review application, cloud, infrastructure, and system designs.
  • Recommend cybersecurity controls aligned with regulatory and business requirements.
  • Support implementation of secure development and data protection practices.
  • Help establish repeatable cybersecurity practices across product development teams.

Required Qualifications
  1. 7+ years of cybersecurity, application security, or product security experience.
  2. Experience supporting software development or product engineering organizations.
  3. Experience with threat modeling, architecture reviews, and secure SDLC practices.
  4. Experience conducting product cybersecurity risk assessments.
  5. Experience supporting regulated products or regulated software development environments.
  6. Strong communication and stakeholder management skills.
  7. Ability to lead cross-functional initiatives without direct authority.

Preferred Qualifications
  1. Experience with medical device, diagnostics, biotechnology, healthcare, or other regulated products.
  2. Experience supporting cybersecurity components of regulatory submissions.
  3. Experience with SBOM management and software supply chain security.
  4. Experience with HITRUST, ISO 27001, NIST CSF, or similar security frameworks.
  5. CISSP, CCSP, CSSLP, CISM, AWS Security Specialty, GIAC, or equivalent cybersecurity certifications.

Required
  • U.S. citizen or national
  • Green Card holder
  • Living full time in the USA

We take geographic location into account when determining base salary to ensure equitable and competitive compensation.

#LI-KO1

Physical Requirements

Use of equipment and tools necessary to perform essential job functions.

About Myriad Genetics, Inc

Myriad Genetics, Inc. is a molecular diagnostic company that develops and markets tests that assess a person's risk of developing certain cancers, the presence of certain inherited genetic conditions, and the likelihood of responding to certain drugs. The company was founded in 1991 and is headquartered in Salt Lake City, Utah. Myriad Genetics operates through two segments: Diagnostics and Other. The Diagnostics segment provides testing and collaborative development of testing that is designed to assess an individual's risk of developing a disease later in life, identify a patient's likelihood of responding to drug therapy and guide a patient's dosing to ensure optimal treatment. The Other segment provides testing products and services to the pharmaceutical, biotechnology and medical research industries, research and development, and clinical services for patients.
Learn more about Myriad Genetics, Inc
Size
2,400 employees
Market Cap
$1.2 billion
Industry
Net Income
-$230 million
Founded
1991
5 Year Trend
-1.1%
Revenue
$557 million
NASDAQ

Similar Jobs

More Jobs at Myriad Genetics, Inc

More Healthcare Jobs

Find similar Cybersecurity and Compliance Lead jobs: