Senior Principal Cyber Security Culture Lead

Principal
CompanyPRC Medtronic PR Operations
LocationMounds View, Minnesota, United States of America, Fridley, Minnesota, United States of America, Fort Worth, Texas, United States of America, Lafayette, Colorado, United States of America, Irvine, California, United States of America, Jacksonville, Florida, United States of America, Boston, Massachusetts, United States of America, Memphis, Tennessee, United States of America
CategorySecurity
SeniorityPrincipal
Workplace-
Posted2026-09-11
Estimated salary$15K - $26K (a market estimate, not the employer's figure)
Viaworkday

Description

We anticipate the application window for this opening will close on - 3 Oct 2026

Careers that change lives start here. Medtronic is a global leader in healthcare technology with a Mission to alleviate pain, restore health, and extend life. Our 95,000 employees work across more than 150 countries to put patients first — developing innovative medical technologies that improve the lives of 72+ million patients each year. Your unique talents will help shape the future of healthcare while building a career grounded in purpose, growth, and impact.

A Day in the Life

The Global Chief Information Security Office (GCISO) provides leadership and oversight for Medtronic’s enterprise cybersecurity strategy, risk management, security operations, and security culture initiatives. The Security Culture function focuses on reducing human-related cyber risk through cybersecurity awareness, communications, engagement, and behavior-change programs that strengthen security practices across the enterprise.
This role may be based at one of the following Medtronic locations, with a strong preference for onsite presence in Mounds View, Minnesota:

  • Mounds View, Minnesota
  • Fridley, Minnesota (OHQ)
  • Rice Creek, Minnesota
  • Boston, Massachusetts
  • Lafayette, Colorado
  • Irvine, California (UCI)
  • Jacksonville, Florida
  • Fort Worth, Texas
  • Memphis, Tennessee

The role follows Medtronic’s onsite work model, with employees working onsite four days per week to support collaboration, partnership, and engagement across teams.

The Senior Principal Cyber Security Culture Lead will lead Medtronic’s Security Culture function, driving enterprise-wide cybersecurity awareness, communications, and engagement programs. This role focuses on reducing human-related cyber risk through education, behavior change, and strategic program leadership. The ideal candidate will have strong people leadership experience, deep cybersecurity awareness program expertise, and a proven ability to lead cross-functional initiatives in a complex, matrixed environment.

Primary Responsibilities

  • Lead the Security Culture function, setting the strategic direction for enterprise-wide cybersecurity awareness, communications, and engagement programs across Medtronic.
  • Establish and advance the long-term vision, maturity roadmap, and operating model for Security Culture, ensuring alignment with enterprise risk and business priorities.
  • Experience leading and developing high-performing teams, including coaching, performance management, and capability building.
  • Drive measurable reduction in human-related cyber risk through role-based awareness, learning, behavior-change strategies, and employee engagement.
  • Oversee enterprise cybersecurity communications, including campaigns, alerts, newsletters, intranet content, leadership messaging, and major awareness initiatives such as Cybersecurity Awareness Month.
  • Lead and expand the Ambassador Program, including regional and local engagement models, feedback loops, and broader reach across business units and sites.
  • Partner across GCISO, BISOs, HR, Communications, IT, Legal, Compliance, and business leadership to align Security Culture priorities with strategic and operational objectives.
  • Define, monitor, and report on KPIs and success measures to assess Security Culture effectiveness, maturity, and behavioral impact to leadership.
  • Identify opportunities to scale and modernize programs through automation, digital platforms, analytics, and innovative engagement methods.
  • Lead, coach, and develop a team of cybersecurity specialists, ensuring strong execution, clear priorities, and alignment to enterprise strategy.
  • Bring deep cybersecurity and program leadership experience, including success leading large, cross-functional initiatives, influencing senior stakeholders, and building enterprise-wide awareness and behavior-change programs in complex environments.

Required Qualifications

  • 10+ years of experience with a bachelor’s degree or 8+ years of experience with an advanced degree

Preferred Qualifications

  • Experience in leadership – has led a team before
  • Experience leading or maturing enterprise-wide cybersecurity awareness, engagement, or culture programs in a large, matrixed organization.
  • Prior leadership experience in a highly regulated industry, such as healthcare, med tech, financial services, or manufacturing.
  • Demonstrated ability to lead cross-functional and enterprise-wide initiatives through influence, especially in complex, matrixed environments.
  • Proven success in developing and operationalizing program metrics, dashboards, and maturity measures that demonstrate business and behavioral impact.
  • Experience partnering with executive leadership, communications, HR, and business stakeholders to drive enterprise-wide behavior change and engagement initiatives.
  • Strong background in organizational change management, employee engagement, and culture transformation, including helping teams adapt to new priorities and ways of working.
  • Familiarity with cyber learning principles, instructional design, or enterprise learning platforms to support scalable awareness and education programs.
  • Experience scaling programs through automation, digital collaboration tools, analytics, or innovative engagement models.
  • Proven ability to lead global initiatives and build ambassador, champion, or grassroots engagement networks across regions, sites, and business units.

For Baccalaureate degrees earned outside of the United States, a degree that satisfies the requirements of 8 C.F.R. § 214.2(h)(4)(iii)(A) is required.

Physical Job Requirements

The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position.

The physical demands described within the Responsibilities section of this job description are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. For Office Roles: While performing the duties of this job, the employee is regularly required to be independently mobile. The employee is also required to interact with a computer, and communicate with peers and co-workers. Contact your manager or local HR to understand the Work Conditions and Physical requirements that may be specific to each role.

U.S. Work Authorization & Sponsorship

At Medtronic, we are committed to fostering an environment where employees can thrive and make a meaningful impact. In alignment with our enterprise-wide workforce planning approach, U.S. work authorization sponsorship (H-1B, TN, J, etc.) is offered exclusively for Principal-level roles and above, where specialized expertise aligns with long-term business needs. Roles below the Principal level require candidates to possess unrestricted U.S. work authorization at the time of hire and for the duration of employment.

‌

Recruitment Fraud Alert

We are aware of phishing scams targeting job seekers. Please keep the following in mind:

Apply only through official Medtronic channels. All legitimate Medtronic recruiting communications come from approved Medtronic platforms and official @medtronic.com email addresses.

Medtronic will never ask for payment or sensitive personal information (such as bank account or Social Security details) during early stages of the hiring process. Any such requests are not legitimate.

If you receive a suspicious message claiming to be from Medtronic, do not respond, click links, or open attachments.

If you have any questions, concerns regarding the authenticity of a communication alleged to have been made by or on behalf of Medtronic, please contact us immediately at [email protected] .

‌

Benefits &