> Markdown version of [/jobs/ext/2198236-principal-cybersecurity-assurance-engineer-remote-united-states](https://www.wearedevelopers.com/jobs/ext/2198236-principal-cybersecurity-assurance-engineer-remote-united-states). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Cybersecurity Assurance Engineer (Remote - United States) - **Company:** Solventum Corporation - **Location:** Maplewood, MN, United States - **Experience:** Expert - **Salary:** $116,480.0 - $128,960.0 - **Contract:** Permanent contract - **Skills:** C (Programming Language), Software System Penetration Testing, Bluetooth, Cyber Security, Fuzz Testing, Wi-Fi Technology, Software Security, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** August 23, 2026 - **Apply:** https://www.jofdav.com/jobs/59363447-principal-cybersecurity-assurance-engineer-remote-united-states ## About the Role * Bachelor's degree or higher (completed and verified prior to start) AND eight (8) years of cybersecurity and/or cybersecurity risk management experience supporting medical devices In addition to the above requirements, the following are also required: * Experience working with embedded systems, Internet of Things (IoT) devices, Bluetooth, Wi-Fi, and/or cellular technologies Additional qualifications that could help you succeed even further in this role include: * Ten (10) years of cybersecurity and/or cybersecurity risk management experience supporting medical devices * Experience applying premarket and postmarket medical device regulations and standards, such as FDA requirements, EU regulations, IEC 81001-5-1, ISO 13485, ISO 14971, IEC 62304, or similar standards. * Experience leading and documenting threat modeling and vulnerability assessments for embedded systems, connected devices, and/or IoT ecosystems. * Experience applying threat modeling and vulnerability assessment frameworks, such as STRIDE and CVSS. * Experience conducting penetration testing, malformed input testing (fuzz testing), static application security testing (SAST), and/or dynamic application security testing (DAST) for embedded systems. * Experience performing software composition analysis (SCA), software bill of materials (SBOM) generation, SBOM monitoring, and related software security activities. * Experience applying C programming language concepts and/or cryptographic principles to support product cybersecurity activities. * Experience communicating cybersecurity risks, technical findings, and recommendations through verbal discussions, presentations, and written communications. * Experience managing multiple projects, priorities, and deliverables across cross-functional teams in a dynamic product development environment. * Experience working with internal stakeholders and external business partners to support cybersecurity, compliance, and product development initiatives. ## Description * Ensuring compliance with applicable regulatory requirements and industry standards, while immediately elevating to management any major problem that could affect patient safety, cybersecurity, customer usability, or system adherence to process requirements. * Acting as a cybersecurity champion within product development teams by analyzing system designs for vulnerabilities, determining cyber risk profiles, estimating security risks, defining security controls, interacting with hardware and software engineers, Design Assurance, Quality, and Regulatory teams to ensure compliance with cybersecurity regulations and ATO readiness, and collaborating with other security teams to monitor and respond to cyber signals. * Supporting continuous process improvement, external audits and submissions, the CAPA process, supplier audit processes, and other quality-related processes regarding cybersecurity risk management and software assurance. * Supervising, mentoring, guiding, and coaching other cybersecurity assurance engineers. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [How will artificial intelligence change the future of software testing?](https://www.wearedevelopers.com/videos/85-how-will-artificial-intelligence-change-the-future-of-software-testing) - [Building a Cross-Platform BLE Client with Kotlin Multiplatform and Kable](https://www.wearedevelopers.com/videos/100250-building-a-cross-platform-ble-client-with-kotlin-multiplatform-and-kable) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)