Work Flexibility: Remote
Key Responsibilities
Cybersecurity Strategy & Governance
- Develop and execute a comprehensive cybersecurity strategy across enterprise and product domains.
- Collaborate with business and technology leaders to guide risk-based decisions that balance security and innovation.
- Lead Stryker’s Product Security strategy by embedding secure-by-design principles and best-in-class security practices across the product lifecycle. Partner with engineering, legal and infrastructure teams to add business value to our commercial product lines. Service as a customer-facing security expert, engaging directly with CIOs and clients to reinforce trust and ensure compliance.
- Serve as the primary interface with the Board of Directors and executive leadership on cybersecurity matters. Lead governance programs to assess, manage, and mitigate cyber security risks.
- Lead enterprise-wide incident response and threat management efforts. Present clear and actionable insights on threat landscape, incident response, and risk posture.
- Ensure compliance with global regulations, privacy standards, and industry frameworks (e.g., GDPR, HIPAA, SOX, ISO, NIST) and oversee security programs that support legal, audit, and regulatory requirements.
- Lead security architecture, operations, and development practices that protect both corporate and product environments and ensure security is embedded into the software development lifecycle (SDLC) and cloud environments.
- Continuously evolve cybersecurity programs to address emerging technologies, including AI, IoT, and digital platforms.
- Lead, execute and test enterprise-wide incident detection, response, and recovery strategies.
- Attract, develop and engage a high-performing global cyber security and compliance team through effective and intentional focus on the talent offense.
- Drive a comprehensive communications strategy to ensure all stakeholders are educated on cyber security risks and mitigation plans.
- Demonstrate leadership expectations and a tone from the top to drive our mission, develop the team, work collaboratively across all functions and make growth happen.
Qualifications
- Minimum 20 years of experience in cybersecurity, IT risk management, and compliance, with at least 10 years in executive leadership roles.
- At least 10 years of experience leading cyber security strategy and operations for cloud and on-prem software products and services.
- Extensive experience with enterprise and product security, data privacy, and regulatory compliance in global organizations.
- Proven ability to communicate complex security issues and strategies clearly to technical and non-technical audiences, including boards.
- Track record of building enterprise-wide security programs that support business innovation and value.
- Experience in leading security operations, engineering, governance, and product security functions.
- Strong leadership skills, including team development, decision-making under pressure, and cross-functional collaboration for global teams.
- Bachelor's degree in Cybersecurity, MIS, Computer Science, Technology Management, Software Engineering, or related disciplines. MBA/Master’s degree preferred.
- Experience in the Life Sciences, Medical Technology, Pharmaceutical, Healthcare or other related industries is preferred.
Travel Percentage: None
Stryker Corporation is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, gender identity, sexual orientation, national origin, disability, or protected veteran status. Stryker is an EO employer – M/F/Veteran/Disability.
Stryker Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.