Tempus

Sr. Manager, Medical Device Cyber Security

Tempus$185K — $215K *
Healthcare
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of technical experience in information security within the tech or healthcare sector.
  • Deep understanding of FDA Cybersecurity Guidance and ISO standards relevant to medical devices.
  • Proficiency in established threat modeling methodologies and secure architecture design principles.
  • Holding industry-recognized certifications such as CISSP, HCISPP, or CISM is preferable.
  • Strong ability to manage multiple programs and collaborate with diverse stakeholders effectively.
  • Exceptional communication skills, capable of translating complex security concepts across various disciplines.

Responsibilities

  • Develop and enhance the Medical Device Cybersecurity roadmap and related policies.
  • Collaborate with R&D to apply secure-by-design principles in product development.
  • Define and oversee the strategy for maintaining a Software Bill of Materials across devices.
  • Integrate security services from various teams into the medical devices lifecycle.
  • Ensure compliance with FDA cybersecurity guidelines during design and lifecycle management.
  • Create and maintain regulatory-required cybersecurity documentation for submissions.
  • Mentor cybersecurity analysts, aiding in their daily tasks and overall professional growth.

Benefits

  • Comprehensive medical benefits, including wellness programs.
  • Incentive compensation and potential equity through restricted stock units.
  • Personal development opportunities and professional growth resources.
Full Job Description
The Role

As the Medical Device Cybersecurity Senior Manager, you will own the medical device cyber security program at Tempus AI. You will act as the crucial bridge between enterprise-wide security strategy and product-level medical device technical execution. You will partner closely with R&D, Product Management, Regulatory Affairs, and Quality to integrate security into the device lifecycle ("shift-left"), ensure adherence to FDA cybersecurity guidelines, and enabling Pre-Market submissions as well as Post-Market surveillance of Tempus Medical Devices.

What You'll Do
  • Program Management & Strategy Execution:
    • Develop, implement, and continuously mature the Medical Device Cybersecurity roadmap, policies, and Standard Operating Procedures (SOPs), aligning them with the overarching enterprise data security strategy.
  • Product Security & Engineering Partnership:
    • Partner with R&D and engineering teams to embed secure-by-design principles and Secure Software Development Life Cycle (SSDLC) practices into medical device development.
    • Define and manage the strategy for Software Bill of Materials (SBOM) generation and maintenance across all device product lines.
    • Coordinate with Cloud Security, Application Security, and Vulnerability Management Information Security teams to integrate their services into Tempus Medical Devices.
  • Regulatory Compliance & Quality Assurance:
    • Ensure device design and lifecycle management align with FDA pre-market and post-market cybersecurity guidelines.
    • Author, review, and maintain cybersecurity documentation required for regulatory submissions (e.g., 510(k), De Novo, PMA).
    • Coordinate with the Quality Management team to integrate cybersecurity into the enterprise Quality Management System (QMS).
  • Leadership & Mentorship:
    • Mentor, and develop the Medical Device Cybersecurity Analyst(s), guiding their daily tactical execution, vulnerability assessments, and professional growth.
    • Serve as the primary Subject Matter Expert (SME) for Medical Device Cybersecurity across the organization and provide education to cross-functional teams on the program.
  • Threat & Vulnerability Management:
    • Oversee the continuous monitoring, vulnerability scanning, and patching strategies for deployed medical devices.
    • Manage engagements with penetration testing conducting assessments on Tempus hardware and embedded systems


Qualifications
  • 7+ years of technical experience in information security in the tech or healthcare industry.
  • Deep understanding of FDA Cybersecurity Guidance (Pre-market and Post-market), ISO 14971, and ISO 13485
  • Proficiency in threat modeling methodologies (STRIDE, PASTA) and secure architecture design.
  • Industry-recognized certifications such as CISSP, HCISPP, CISM, or relevant SANS certifications are preferred.
  • Ability to manage several programs at once and work proactively to align multi-disciplinary stakeholders.
  • Excellent written and verbal communication skills, including the ability to act as translator among diverse teams of biologists, medical professionals, engineers, operators, and data scientists.


#LI-HR1

#LI-Hybrid

CHI: $185,000-$215,000

The expected salary range above is applicable if the role is performed from Illinois and may vary for other locations (California, Colorado, New York). Actual salary may vary based on qualifications and experience. Tempus offers a full range of benefits, which may include incentive compensation, restricted stock units, medical and other benefits depending on the position.

About Tempus

Tempus is a technology company that has built an operating system to battle cancer. The company enables physicians to deliver personalized cancer care for patients through its interactive analytical and machine learning platform. Tempus provides genomic sequencing services and analyzes molecular and therapeutic data to empower physicians to make real-time, data-driven decisions. The company also offers research services to enable discovery of new therapeutic targets and clinical services that support clinical trial design and monitoring. Tempus was founded in 2015 by Eric Lefkofsky and has raised over $8 billion in funding to date.
Learn more about Tempus
Size
1,001 employees
Industry
Founded
2015

Similar Jobs

More Jobs at Tempus

More Healthcare Jobs

Find similar Sr. Manager, Medical Device Cyber Security jobs: