Principal Cybersecurity Assurance Engineer (Remote - United States)
🏢 Solventum · all Solventum jobs
📍 United States
💰 USD 124,000 - 170,500 / annual
📅 Posted 2026-08-24 · via Himalayas
🏷 Cybersecurity-Assurance,Medical-Device-Security,Cybersecurity-Engineering,Security-Risk-Management,Infosec,Principal-Cybersecurity-Engineer,Principal-Information-Security-Engineer,Senior-Principal-Security-Engineer,Principal-Security-Engineer
Apply on original site ↗Thank you for your interest in joining Solventum . Solventum is a new healthcare company with a long legacy of solving big challenges that improve lives and help healthcare professionals perform at their best. At Solventum , people are at the heart of every innovation we pursue. Guided by empathy, insight, and clinical intelligence, we collaborate with the best minds in healthcare to address our customers’ toughest challenges. While we continue updating the Solventum Careers Page and applicant materials, some documents may still reflect legacy branding. Please note that all listed roles are Solventum positions, and our Privacy Policy: applies to any personal information you submit. As it was with 3M, at Solventum all qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Job Description:
Principal Cybersecurity Assurance Engineer
3M Health Care is now Solventum
At Solventum , we enable better, smarter, safer healthcare to improve lives. As a new company with a long legacy of creating breakthrough solutions for our customers’ toughest challenges, we pioneer game-changing innovations at the intersection of health, material and data science that change patients' lives for the better while enabling healthcare professionals to perform at their best. Because people, and their wellbeing, are at the heart of every scientific advancement we pursue.
We partner closely with the brightest minds in healthcare to ensure that every solution we create melds the latest technology with compassion and empathy. Because at Solventum , we never stop solving for you.
The Impact You’ll Make in this Role
As a Principal Cybersecurity Assurance Engineer you will have the opportunity to tap into your curiosity and collaborate with some of the most innovative and diverse people around the world. Here, you will make an impact by:
- Leading cybersecurity assurance activities throughout the product life cycle, including creating cybersecurity risk management plans, threat modeling, performing vulnerability assessments, defining security architecture, creating SBOMs, managing vulnerabilities and cybersecurity risks, planning and monitoring security testing, including penetration testing, writing cybersecurity risk management reports, and ensuring traceability between security controls, security requirements, and security testing.
- Ensuring compliance with applicable regulatory requirements and industry standards, while immediately elevating to management any major problem that could affect patient safety, cybersecurity, customer usability, or system adherence to process requirements.
- Acting as a cybersecurity champion within product development teams by analyzing system designs for vulnerabilities, determining cyber risk profiles, estimating security risks, defining security controls, interacting with hardware and software engineers, Design Assurance, Quality, and Regulatory teams to ensure compliance with cybersecurity regulations and ATO readiness, and collaborating with other security teams to monitor and respond to cyber signals.
- Supporting continuous process improvement, external audits and submissions, the CAPA process, supplier audit processes, and other quality-related processes regarding cybersecurity risk management and software assurance.
- Supervising, mentoring, guiding, and coaching other cybersecurity assurance engineers.
Your Skills and Expertise
To set you up for success in this role from day one, Solventum requires (at a minimum) the following qualifications:
- Bachelor’s degree or higher (completed and verified prior to start) AND eight (8) years of cybersecurity and/or cybersecurity risk management experience supporting medical devices
In addition to the above requirements, the following are also required:
- Experience working with embedded systems, Inte