ICT Lead Legal Counsel (Digital)
About the role
Provide legal support for the Interventional Cardiology Therapies Business, with a focus on the Business’s digital health portfolio. Partner directly with digital health program leaders and software development core teams, collaborating with other Legal Department team members, including Legal, Privacy, and Compliance Centers of Expertise (COEs) and Regional Legal team members. Work closely with cross-functional teams such as marketing, sales, regulatory affairs, quality, research and development, business development, clinical, office of medical affairs, finance, human resources, communications, information security, and operations.
This is an onsite position located at any Medtronic facility, with preference for Lafayette, CO, Minneapolis, MN, or Galway, Ireland. The role reports to the Vice President & Chief Counsel for the Interventional Cardiology Therapies Business and works closely with other Chief Counsel within the Cardiovascular Portfolio.
Responsibilities
- Provide legal advice and counsel to legal, business, function, and regional stakeholders, maintaining a trusted seat at leadership team meetings to ensure the business receives the legal guidance needed for key decisions and risk management.
- Serve as the legal advisor to digital health programs and software development core teams, supporting advisement on regulatory, privacy, data protection, and commercial risk throughout the product development lifecycle.
- Counsel R&D and product teams on Privacy by Design legal requirements, advising on data protection impact assessments and the selection of appropriate privacy and data-handling controls from the OPIC Privacy Control Objectives (PCOL) Library.
- Draft and negotiate privacy- and data-related contractual terms, including data processing agreements, consent language, and third-party/vendor risk provisions.
- Coordinate with OPIC privacy partners, information security, and regulatory affairs on incident response, customer privacy and security inquiries, and medical device cybersecurity regulatory expectations.
- Ensure appropriate privacy documentation is completed and maintained within the OPIC Privacy system of record, including DPIAs, PIAs, ROPAs, and other required privacy artifacts.
- Collaborate with Centers of Expertise (COEs), regional partners, and outside counsel to ensure high-quality legal support and drive consistency in approach across the enterprise.
- Lead stakeholders in developing and implementing relevant training and knowledge management programs.
- Serve as legal counsel for business development projects involving due diligence, acquisitions, joint ventures, and integrations.
- Provide commercial legal advice across substantive areas, including negotiation and drafting of strategic contracts, healthcare compliance, competition law, regulatory law, product liability, data privacy, distribution and agency law, labor and employment, corporate governance, mergers and acquisitions, and intellectual property.
- Implement continuous improvement of operating mechanisms and guide, develop, and support Legal Department team members.
- Engage in knowledge sharing with other legal leaders across the enterprise and build consensus on cutting-edge legal issues.
Requirements
- Juris Doctor (J.D.) from a nationally accredited law school with strong academic credentials.
- Admitted to one or more state bars.
- 8+ years of experience as an Attorney.
- Member in good standing of the bar in the state where the position is based or eligible to waive into such state bar or otherwise eligible to practice in such state (e.g., authorized house counsel program).
- Demonstrated experience providing legal business advisement on digital health programs, data privacy and protection, and/or software development core teams in a regulated environment.
Skills
- Strong understanding of cultural norms: act boldly; compete to win; move with speed & decisiveness; foster belonging; and deliver results the right way.
- Medical device, digital health, or other heavily regulated industry experience.
- Experience advising digital programs and software development core teams, including working alongside product and engineering teams in an advisory legal capacity.
- Working knowledge of global privacy and data protection laws (e.g., HIPAA, GDPR, U.S. state privacy laws) and their application to medical devices and digital health products.
- Familiarity with Privacy by Design principles and integrating privacy and legal requirements into product development lifecycles.
- Experience advising on artificial intelligence/machine learning governance and software as a medical device (SaMD).
- Understanding of medical device cybersecurity regulatory frameworks and standards (e.g., FDA pre- and post-market cybersecurity guidance, ISO 13485, IEC 81001-5-1).
- Experience drafting and negotiating data processing agreements, consent frameworks, and third-party/vendor risk provisions.
- Excellent written and verbal communication skills, including the ability to communicate complex and technical information clearly to diverse audiences.
- Strong analytical thinking, flexibility, adaptability, pragmatism, responsiveness, and collegiality.
- Ability to work on multiple projects simultaneously with superior judgment, courage, integrity, and ethical character.
- Analytical risk identification, evaluation, and management skills.
- Capable of inspiring trust and confidence in business partners.
Benefits
A commitment to our employees lives at the core of our values. We recognize their contributions, and they share in the success they help to create. We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every career and life stage. This position is eligible for a short-term incentive plan.
Pay
The base salary range is applicable across the United States, excluding Puerto Rico and specific locations in California. The offered rate complies with federal and local regulations and may vary based on factors such as experience, certification/education, market conditions, and location. Compensation and benefits information pertains solely to candidates hired within the United States.