{"schemaVersion":"jobsearcher.job.v1","id":"fcc506d103bb12a475511cf7","url":"https://jobsearcher.com/jobs/fcc506d103bb12a475511cf7","canonicalUrl":"https://jobsearcher.com/jobs/fcc506d103bb12a475511cf7","title":"Lead IT Security Engineer","description":"The Lead Information Security Engineer is a senior cybersecurity leader responsible for protecting the organization’s digital ecosystem across product development, manufacturing, and enterprise IT systems. This role ensures the security of connected medical/surgical devices, intellectual property, and regulated environments, while maintaining compliance with cybersecurity guidance, ISO standards, and global regulations.\nThis position plays a critical role in enabling secure product innovation, patient safety, and operational resilience across the device lifecycle.\n**This REMOTE opportunity is not eligible for employer-visa sponsorship **\nKey Responsibilities:\nSecurity Operations & Incident Response\nLead detection and response for incidents affecting: manufacturing systems (OT/ICS), connected medical/surgical devices, and enterprise IT environments\nManage SOC operations with prioritization of IT security, production integrity, and supply chain impact\nInvestigate and respond to incidents involving intellectual property theft, disruptions and/or ransomware affecting production lines, and IT vulnerabilities\nLead regulatory-aligned incident handling and disclosure (local/global authorities)\nProduction & IT Security (Critical Focus Area)\nPartner with IT, production, and engineering to embed secure-by-design principles across the IT & product lifecycle\nConduct threat modeling and security risk assessments for surgical and medical devices\nSupport compliance with IT security guidance, SOX, ISO27001 & EU GDPR / NIS2\nIdentify and remediate product vulnerabilities (secure firmware, APIs, connectivity)\nSupport coordinated vulnerability disclosure (CVD) processes\nManufacturing & Operational Technology (OT) Security\nSecure manufacturing environments (plants, production lines, robotics, control systems)\nImplement segmentation between IT and OT networks\nLead vulnerability and patch management for industrial control systems\nReduce risk to production continuity and product integrity\nThreat & Vulnerability Management\nMonitor threat landscape with emphasis on nation-state attacks targeting IP, supply chain compromise, medical device exploitation\nLead proactive threat hunting across cloud environments, OT/manufacturing systems, & product telemetry (if applicable)\nDrive enterprise-wide vulnerability management with prioritization based on patient and product impact\nSecurity Engineering & Architecture\nImplement Zero Trust principles across corporate IT and manufacturing environments\nDrive consolidation and optimization of SIEM/XDR (Sentinel, Defender, etc.), identity platforms (Entra ID, PAM), data protection tools (DLP, encryption for IP and regulated data)\nSecure cloud platforms supporting R&D, analytics, and digital health capabilities\nRegulatory Compliance & Risk Management\nEnsure alignment with SOX, ISO 27001, NIST CSF / NIST 800-53 & Global data protection regulations (GDPR where applicable)\nLead cyber risk assessments tied to patient safety, product risk, and regulatory exposure\nSupport internal and external audits and regulatory inspections\nTranslate cybersecurity risk into business impact (recalls, production disruption, liability)\nData Protection & Intellectual Property Security\nProtect sensitive data, designs, and trade secrets\nImplement controls for secure collaboration with third-party manufacturers and partners and data encryption and access governance\nMonitor for data exfiltration and insider threats\nLeadership & Mentorship\nProvide technical leadership across security operations and engineering functions\nMentor analysts and engineers on IT/OT security, production security, and incident response in regulated environments\nAct as escalation point for high-impact security events affecting products or manufacturing\nStakeholder Collaboration\nPartner with CIO, CISO, and Chief Product/Engineering Officers, Quality & Regulatory Affairs, Manufacturing / Plant leadership & Legal and Compliance teams\nCommunicate cybersecurity risks in terms of IT security & safety, regulatory impact and revenue / production risk\nJob Requirements\nBachelor’s degree in Cybersecurity, Engineering, IT, or related field (or equivalent experience)\n5+ years of experience in cybersecurity, with exposure to regulated industries or manufacturing environments, with hands-on experience with SIEM/XDR platforms, endpoint, network, and cloud security and/or vulnerability and incident response programs\nPreferred Experience:\nStrong knowledge of Security frameworks (NIST, ISO 27001), Identity and access management& network segmentation and Zero Trust principles\nExperience in medical device, healthcare technology, or manufacturing (OT/ICS)\nFamiliarity with ISO27001, NIS2, SOX, NIST CF 800-53, & EU GDPR\nPreferred Certifications: CISSP, CEH, GIAC & GICSP (Industrial Control Systems) or HCISPP (strong plus)\nExperience with IT/Production security testing, Threat modeling (e.g., STRIDE), Secure SDLC practices\nThis position is not eligible for employer-visa sponsorship\nDisclosure as required by applicable law, the annual salary range for this position is $104,134 - $163,640. The actual compensation may vary based on geographic location, work experience, education and skill level. The salary range is CONMED’s good faith belief at the time of this posting.\nThis job posting is anticipated to close on August 12, 2026. We may, however, extend this time period, in which case the posting will remain available on careers.conmed.com. Please submit your application as soon as possible as we will be reviewing applications on a rolling basis as we receive them.\nBenefits:\nCONMED offers a wide array of benefits to fit your unique needs. Visit our Benefits Page for more information.\nCompetitive compensation\nExcellent healthcare including medical, dental, vision and prescription coverage\nShort & long term disability plus life insurance\n- cost paid fully by CONMED\nRetirement Savings Plan (401K)\n- CONMED matches your contributions dollar for dollar, with the potential for up to 7% per pay period\nEmployee Stock Purchase Plan\n- allows stock purchases at discounted price\nTuition assistance for undergraduate and graduate level courses\nKnow someone at CONMED? Have them submit you as a referral before applying for this position to be eligible for our Employee Referral Program incentives!\nCONMED is an equal opportunity employer and does not discriminate on the basis of any legally protected status or characteristic. Protected veterans and individuals with disabilities are encouraged to apply. The Know Your Rights: Workplace Discrimination is Illegal Poster reaffirms this commitment.\nColorado Residents: In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.\nIf you feel you need a reasonable accommodation pursuant to the ADA, you are encouraged to contact us at 800-929-7176 option #5.","company":"ConMed","rawCompany":"conmed","city":"Largo","state":"FL","isRemote":false,"isActive":false,"createdAt":"2026-07-08T07:45:29.017Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"13-1199.07","title":"Security Management Specialists","slug":"security-management-specialists"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"339112","title":"Surgical and Medical Instrument Manufacturing","slug":"surgical-and-medical-instrument-manufacturing"},{"code":"339113","title":"Surgical Appliance and Supplies Manufacturing","slug":"surgical-appliance-and-supplies-manufacturing"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Lead IT Security Engineer","description":"The Lead Information Security Engineer is a senior cybersecurity leader responsible for protecting the organization’s digital ecosystem across product development, manufacturing, and enterprise IT systems. This role ensures the security of connected medical/surgical devices, intellectual property, and regulated environments, while maintaining compliance with cybersecurity guidance, ISO standards, and global regulations.\nThis position plays a critical role in enabling secure product innovation, patient safety, and operational resilience across the device lifecycle.\n**This REMOTE opportunity is not eligible for employer-visa sponsorship **\nKey Responsibilities:\nSecurity Operations & Incident Response\nLead detection and response for incidents affecting: manufacturing systems (OT/ICS), connected medical/surgical devices, and enterprise IT environments\nManage SOC operations with prioritization of IT security, production integrity, and supply chain impact\nInvestigate and respond to incidents involving intellectual property theft, disruptions and/or ransomware affecting production lines, and IT vulnerabilities\nLead regulatory-aligned incident handling and disclosure (local/global authorities)\nProduction & IT Security (Critical Focus Area)\nPartner with IT, production, and engineering to embed secure-by-design principles across the IT & product lifecycle\nConduct threat modeling and security risk assessments for surgical and medical devices\nSupport compliance with IT security guidance, SOX, ISO27001 & EU GDPR / NIS2\nIdentify and remediate product vulnerabilities (secure firmware, APIs, connectivity)\nSupport coordinated vulnerability disclosure (CVD) processes\nManufacturing & Operational Technology (OT) Security\nSecure manufacturing environments (plants, production lines, robotics, control systems)\nImplement segmentation between IT and OT networks\nLead vulnerability and patch management for industrial control systems\nReduce risk to production continuity and product integrity\nThreat & Vulnerability Management\nMonitor threat landscape with emphasis on nation-state attacks targeting IP, supply chain compromise, medical device exploitation\nLead proactive threat hunting across cloud environments, OT/manufacturing systems, & product telemetry (if applicable)\nDrive enterprise-wide vulnerability management with prioritization based on patient and product impact\nSecurity Engineering & Architecture\nImplement Zero Trust principles across corporate IT and manufacturing environments\nDrive consolidation and optimization of SIEM/XDR (Sentinel, Defender, etc.), identity platforms (Entra ID, PAM), data protection tools (DLP, encryption for IP and regulated data)\nSecure cloud platforms supporting R&D, analytics, and digital health capabilities\nRegulatory Compliance & Risk Management\nEnsure alignment with SOX, ISO 27001, NIST CSF / NIST 800-53 & Global data protection regulations (GDPR where applicable)\nLead cyber risk assessments tied to patient safety, product risk, and regulatory exposure\nSupport internal and external audits and regulatory inspections\nTranslate cybersecurity risk into business impact (recalls, production disruption, liability)\nData Protection & Intellectual Property Security\nProtect sensitive data, designs, and trade secrets\nImplement controls for secure collaboration with third-party manufacturers and partners and data encryption and access governance\nMonitor for data exfiltration and insider threats\nLeadership & Mentorship\nProvide technical leadership across security operations and engineering functions\nMentor analysts and engineers on IT/OT security, production security, and incident response in regulated environments\nAct as escalation point for high-impact security events affecting products or manufacturing\nStakeholder Collaboration\nPartner with CIO, CISO, and Chief Product/Engineering Officers, Quality & Regulatory Affairs, Manufacturing / Plant leadership & Legal and Compliance teams\nCommunicate cybersecurity risks in terms of IT security & safety, regulatory impact and revenue / production risk\nJob Requirements\nBachelor’s degree in Cybersecurity, Engineering, IT, or related field (or equivalent experience)\n5+ years of experience in cybersecurity, with exposure to regulated industries or manufacturing environments, with hands-on experience with SIEM/XDR platforms, endpoint, network, and cloud security and/or vulnerability and incident response programs\nPreferred Experience:\nStrong knowledge of Security frameworks (NIST, ISO 27001), Identity and access management& network segmentation and Zero Trust principles\nExperience in medical device, healthcare technology, or manufacturing (OT/ICS)\nFamiliarity with ISO27001, NIS2, SOX, NIST CF 800-53, & EU GDPR\nPreferred Certifications: CISSP, CEH, GIAC & GICSP (Industrial Control Systems) or HCISPP (strong plus)\nExperience with IT/Production security testing, Threat modeling (e.g., STRIDE), Secure SDLC practices\nThis position is not eligible for employer-visa sponsorship\nDisclosure as required by applicable law, the annual salary range for this position is $104,134 - $163,640. The actual compensation may vary based on geographic location, work experience, education and skill level. The salary range is CONMED’s good faith belief at the time of this posting.\nThis job posting is anticipated to close on August 12, 2026. We may, however, extend this time period, in which case the posting will remain available on careers.conmed.com. Please submit your application as soon as possible as we will be reviewing applications on a rolling basis as we receive them.\nBenefits:\nCONMED offers a wide array of benefits to fit your unique needs. Visit our Benefits Page for more information.\nCompetitive compensation\nExcellent healthcare including medical, dental, vision and prescription coverage\nShort & long term disability plus life insurance\n- cost paid fully by CONMED\nRetirement Savings Plan (401K)\n- CONMED matches your contributions dollar for dollar, with the potential for up to 7% per pay period\nEmployee Stock Purchase Plan\n- allows stock purchases at discounted price\nTuition assistance for undergraduate and graduate level courses\nKnow someone at CONMED? Have them submit you as a referral before applying for this position to be eligible for our Employee Referral Program incentives!\nCONMED is an equal opportunity employer and does not discriminate on the basis of any legally protected status or characteristic. Protected veterans and individuals with disabilities are encouraged to apply. The Know Your Rights: Workplace Discrimination is Illegal Poster reaffirms this commitment.\nColorado Residents: In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.\nIf you feel you need a reasonable accommodation pursuant to the ADA, you are encouraged to contact us at 800-929-7176 option #5.","datePosted":"2026-07-08T07:45:29.017Z","dateModified":"2026-07-08T07:45:29.017Z","hiringOrganization":{"@type":"Organization","name":"ConMed","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Largo","addressRegion":"FL","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"fcc506d103bb12a475511cf7"},"url":"https://jobsearcher.com/jobs/fcc506d103bb12a475511cf7"}}