Windows DevOps Engineer

Posted One Month Ago
Be an Early Applicant
Kefar Sava, ISR
In-Office
Mid level
Healthtech
The Role
Owns the security hardening, imaging, automation, and deployment of Windows environments supporting a regulated medical device. Designs PowerShell automation, manages BIOS/UEFI security, TPM trust chains, BitLocker, Group Policy, AppLocker, kiosk configurations, permissions, VHD/VHDX images, and Azure DevOps CI/CD pipelines. Collaborates with software, QA, and regulatory teams while documenting reproducible, auditable processes.
Summary Generated by Built In

Careers that change lives start here. Medtronic is a global leader in healthcare technology with a Mission to alleviate pain, restore health, and extend life. Our 95,000 employees work across more than 150 countries to put patients first — developing innovative medical technologies that improve the lives of 72+ million patients each year. Your unique talents will help shape the future of healthcare while building a career grounded in purpose, growth, and impact.

A Day in the LifeCathWorks, now part of Medtronic, develops FFRangio — a Windows-based system used in the cardiac catheterization lab (Cath lab) to support interventional cardiology decision-making. As part of our platform and infrastructure team, you'll help ensure our Windows-based medical device environment is secure, compliant, and reliably deployable across clinical sites.
We are looking for a Windows platform expert with deep, hands-on scripting skills (PowerShell preferred) to own the security hardening, imaging, and deployment automation of the Windows environment underlying our FFRangio system.
You'll work at the intersection of low-level Windows internals (boot security, disk encryption, image management) and modern Windows virtualization and DevOps practices (CI/CD pipelines), helping us build a secure, locked down, and reliably reproducible Windows environment for a regulated medical device product.
You should be comfortable going deep — from BIOS settings and TPM chains up through image-building and pipeline automation — and who treats scripting as the primary tool for making security and deployment repeatable, auditable, and reliable, in service of a real clinical product used in the Cath lab.

Responsibilities may include the following and other duties may be assigned:

  • Design, implement, and maintain PowerShell-based automation for system configuration, hardening, and deployment of FFRangio Windows workstations
  • Define and enforce BIOS/UEFI security settings and TPM-based trust chains (Secure Boot, measured boot, TPM attestation)
  • Implement and manage BitLocker and other Windows encryption mechanisms, including key management and recovery strategies
  • Build and maintain Windows hardening baselines using Group Policy, AppLocker, custom Shell/UI restrictions, and Kiosk (Assigned Access) mode suited to a clinical, cath-lab environment
  • Manage user/account permission models and least-privilege access schemes across managed devices
  • Create, manipulate, and maintain VHD/VHDX-based images for deployment, recovery, and testing workflows
  • Build and maintain CI/CD pipelines in Azure DevOps for automated build, test, and deployment of Windows images and configurations
  • Collaborate with software, QA, and regulatory/quality teams to ensure hardening and deployment practices
  • Document configurations, scripts, and processes for reproducibility and audit purposes, consistent with medical device quality system requirements

Required Knowledge and Experience:

  • B.Sc. in Computer Science, Software Engineering, Computer Engineering, Mathematics, or a related field
  • 4+ years of relevant experience in Windows systems engineering, software engineering, security, or automation
  • Strong, demonstrable PowerShell scripting skills
  • Solid understanding of BIOS/UEFI security concepts and TPM (Trusted Platform Module) architecture
  • Experience with BitLocker and Windows encryption/hardening tools: Group Policy design and management AppLocker rule creation and enforcement Kiosk mode / Assigned Access / custom shell configuration Windows account, group, and permission management
  • Experience creating and manipulating VHD/VHDX virtual disks (mounting, provisioning, offline servicing, diskpart/DISM)
  • Strong troubleshooting skills across the Windows boot chain, OS internals, and security stack

Experience with Windows imaging tools (MDT, DISM, Sysprep, WinPE), endpoint security frameworks (CIS benchmarks, DoD STIGs), Intune or other MDM solutions for Windows fleet management, scripting experience beyond PowerShell (Python, C#) for tooling integration, experience working within a large medical device organization (e.g., post-acquisition integration, Medtronic or similar), building and maintaining CI/CD pipelines in Azure DevOps, Git version control and familiarity with Agile methodologies (Scrum/Kanban) will be considered an advantage.


Physical Job Requirements
The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position. 

‌

‌



Recruitment Fraud Alert 

We are aware of phishing scams targeting job seekers. Please keep the following in mind: 


Apply only through official Medtronic channels. All legitimate Medtronic recruiting communications come from approved Medtronic platforms and official @medtronic.com email addresses. 


Medtronic will never ask for payment or sensitive personal information (such as bank account or Social Security details) during early stages of the hiring process. Any such requests are not legitimate. 


If you receive a suspicious message claiming to be from Medtronic, do not respond, click links, or open attachments. 


If you have any questions, concerns regarding the authenticity of a communication alleged to have been made by or on behalf of Medtronic, please contact us immediately at [email protected]. 

Benefits & Compensation

Medtronic offers a competitive Salary and flexible Benefits Package
A commitment to our employees lives at the core of our values. We recognize their contributions. They share in the success they help to create.  We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage.
 



‌

This position is eligible for a short-term incentive called the Medtronic Incentive Plan (MIP).

Skills Required

  • Bachelor of Science degree in Computer Science, Software Engineering, Computer Engineering, Mathematics, or a related field
  • 4 or more years of relevant experience in Windows systems engineering, software engineering, security, or automation
  • Strong demonstrable PowerShell scripting skills
  • Understanding of BIOS/UEFI security concepts and TPM architecture
  • Experience with BitLocker and Windows encryption or hardening tools
  • Experience designing and managing Group Policy
  • Experience creating and enforcing AppLocker rules
  • Experience with Kiosk Mode, Assigned Access, or custom shell configuration
  • Experience managing Windows accounts, groups, and permissions
  • Experience creating and manipulating VHD/VHDX virtual disks, including mounting, provisioning, offline servicing, diskpart, and DISM
  • Strong troubleshooting skills across the Windows boot chain, operating system internals, and security stack
  • Experience with Windows imaging tools such as MDT, DISM, Sysprep, or WinPE
  • Experience with endpoint security frameworks such as CIS benchmarks or DoD STIGs
  • Experience with Intune or other Windows fleet MDM solutions
  • Scripting experience beyond PowerShell, such as Python or C#, for tooling integration
  • Experience working within a large medical device organization
  • Experience building and maintaining CI/CD pipelines in Azure DevOps
  • Experience with Git version control
  • Familiarity with Agile methodologies, including Scrum or Kanban

Medtronic Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Medtronic and has not been reviewed or approved by Medtronic.

  • Healthcare Strength — Health coverage is considered comprehensive, with high-quality medical, dental, and vision options through major providers and added mental-health resources. These programs are frequently highlighted as a core strength of the package.
  • Parental & Family Support — Parental and family benefits stand out, including up to 24 weeks paid leave for U.S. birthing parents, 12 weeks for other parents, and a global Family Care Leave at 100% pay. Family-building support (fertility, adoption/surrogacy reimbursements) and backup care further reinforce this strength.
  • Retirement Support — A 401(k) with company match is described as competitive and reliable for long-term savings. Additional financial programs, such as tuition assistance and charitable-gift matching, complement retirement planning.

Medtronic Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Dublin
80,303 Employees
Year Founded: 1949

What We Do

Medtronic is a global healthcare solutions company operating in approximately 160 countries. We are committed to improving lives through our medical technologies, services, and solutions. Since our beginning, 60 years ago, our Mission has remained the same: to alleviate pain, restore health, and extend life for people around the world. The Mission is our ethical framework and inspirational goal guiding our day-to-day work. It reminds us that our efforts are transforming millions of lives each year. To meet the needs of patients and healthcare professionals around the globe, we operate from more than 370 locations in approximately 160 countries.

Similar Jobs

HiBob Logo HiBob

Senior Director Product Marketing

HR Tech • Information Technology • Professional Services • Sales • Software
Remote or Hybrid
IL
1350 Employees

HiBob Logo HiBob

Senior Field Deployment Engineer (FDE)

HR Tech • Information Technology • Professional Services • Sales • Software
Remote or Hybrid
IL
1350 Employees

HiBob Logo HiBob

Account Executive

HR Tech • Information Technology • Professional Services • Sales • Software
Remote or Hybrid
IL
1350 Employees

HiBob Logo HiBob

Controller

HR Tech • Information Technology • Professional Services • Sales • Software
Remote or Hybrid
IL
1350 Employees

Similar Companies Hiring

Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees
Vitalize Thumbnail
Artificial Intelligence • Healthtech • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account