Clinical Engineering Cybersecurity Specialist
Confidential Recruiting PartnersOur client is seeking a Clinical Engineering Cyber Specialist to support and strengthen medical device cybersecurity within a hospital environment. This role is responsible for implementing cybersecurity controls, conducting device risk assessments, coordinating vulnerability remediation, and partnering closely with Clinical Engineering, HTM, IT, and Information Security teams.
The ideal candidate brings hands-on experience with medical devices, biomedical/clinical engineering, and healthcare cybersecurity frameworks, along with strong technical leadership and a proactive approach to emerging threats.
Onsite | No Visa Sponsorship | No Relocation Assistance
Location: Far Rockaway, NY
Responsibilities:
- Support IT projects that impact connected medical devices.
- Coordinate cybersecurity activities with medical device manufacturers.
- Validate and test network segmentation rules in collaboration with hospital IT teams.
- Oversee secure configuration of medical devices to align with cybersecurity standards.
- Collect and maintain Critical Data Elements (CDEs) and manufacturer documentation within the CMMS.
- Lead planned and unplanned vulnerability remediation, including patching, upgrades, and zero‑day response.
- Perform medical device cybersecurity risk assessments based on CDEs, device configurations, and manufacturer guidance.
Program Support
- Track and report vulnerability remediation progress.
- Identify opportunities to improve cybersecurity practices across HTM and IT.
- Ensure quality and accuracy of cybersecurity documentation within the CMMS.
- Investigate cybersecurity alerts involving medical devices and develop response recommendations.
Training & Education
- Support cybersecurity education for HTM teams.
- Coach BMETs on cybersecurity hygiene and secure device configuration.
- Participate in industry cybersecurity workgroups and professional forums.
Regulatory & Compliance
- Support enterprise-level cybersecurity audits and compliance activities.
- Provide guidance during hospital audits involving cybersecurity (HIPAA, Joint Commission)
Qualifications (Must-Haves)
- Valid driver's license and acceptable driving record.
- Proficiency with CMMS platforms and asset-inventory workflows.
- Ability to collaborate with IT, InfoSec, HTM, and device manufacturers.
- Experience with vulnerability management, patching, zero‑day response, and device risk assessments.
- Hands-on experience with connected medical devices, device configurations, and manufacturer documentation.
- 3+ years of experience in biomedical/clinical engineering, HTM, medical device cybersecurity, or healthcare technology environments.
- Strong knowledge of cybersecurity frameworks such as NIST, ISO, and healthcare regulatory requirements (FDA, HIPAA, Joint Commission)
- Bachelor's degree or equivalent experience, preferably in biomedical, clinical, electrical, computer, information technology, engineering, or a related healthcare discipline.
Preferred Skills:
- HTM-related certifications (CBET, CCE) are beneficial.
- Cybersecurity certifications such as CISSP, HCISPP, CEH, or Security+
- Experience educating BMETs or HTM teams on cybersecurity best practices.
Benefits & Perks:
- Paid Time Off
- Paid Holidays
- 401(k) with match
- Wellness Programs
- Tuition Reimbursement
- Medical, Dental, and Vision
- Professional development and career growth