Matt Hillyer

Medical Device & Connected Health Product Security Leader

21 years of medical device and connected health cybersecurity experience, spanning global manufacturers of imaging, diagnostics, and surgical technology. Career began as a U.S. Navy submarine electronics technician, where reliability and security were never separate problems.

Focus & Expertise

  • Product cybersecurity program design and maturity assessment

  • FDA premarket and postmarket cybersecurity guidance alignment

  • Secure Product Design Framework development

  • Total product lifecycle (TPLC) security cost modeling

  • Regulatory strategy across FDA, EU MDR, and related frameworks

Industry Involvement

  • Presented a capability-driven product cybersecurity maturity model at H-ISAC.

  • Active member of the H-ISAC Medical Device Security Council and Vulnerability Management Working Group, the HSCC Cyber Updating and Patching Task Group and CyBorG Task Group, and NEMA/DICOM WG-14 on security.

Education & Credentials

  • MS in Cybersecurity (Governance, Risk Management & Compliance), DePaul University.

  • MBA and BS in Information Technology, University of Phoenix.

  • Strategic Change Management Certificate, Northwestern Kellogg.

  • Certified CSSLP and CEH.

Contact Me

Whether you're exploring a product security program build-out, want to talk through maturity assessment approaches, or just want to connect on medical device cybersecurity and regulatory strategy, I'm happy to hear from you.