Senior Cybersecurity Specialist
JOB DESCRIPTION:
We’re focused on helping people with diabetes manage their health with life-changing products that provide accurate data to drive better-informed decisions. We’re revolutionizing the way people monitor their glucose levels with our new sensing technology.
Working at Abbott
At Abbott, you can do work that matters, grow, and learn, care for yourself and family, be your true self and live a full life. You’ll also have access to:
Career development with an international company where you can grow the career you dream of.
Employees can qualify for free medical coverage in our Health Investment Plan (HIP) PPO medical plan in the next calendar year
An excellent retirement savings plan with high employer contribution
Tuition reimbursement, the Freedom 2 Save student debt program and FreeU education benefit - an affordable and convenient path to getting a bachelor’s degree.
A company recognized as a great place to work in dozens of countries around the world and named one of the most admired companies in the world by Fortune.
A company that is recognized as one of the best big companies to work for as well as a best place to work for diversity, working mothers, female executives, and scientists.
THE OPPORTUNITY
This Senior Cybersecurity Specialistposition can work out remotely within the U.S.
Senior Cybersecurity Specialist assists Compliance and Information Security in providing internal control assessment, auditing and monitoring, risk management and mitigation. This role will work to identify risk and ensure compliance with industry standards, relevant laws and regulations, and industry best practices. This position also assists in maintaining and developing appropriate policies, procedures, and documentation to maintain compliance with local, state, and federal laws. Reviews and evaluates compliance issues and concerns within the organization. The candidate is also expected to have a strong work ethic, leverage analytical and critical thinking to work independently on complex tasks, have the ability to follow instructions, have strong listening and communication skills, and be flexible to support a dynamic work environment.
What You’ll Work On
Work with a variety of cross-functional teams to ensure compliance with standards, laws, regulations, and policies
Work towards readiness, certification and recertification of international frameworks (e.g. France HDS, Germany C5, Spain ENS, China CPCS, France MES, UK CE+)
Support external and internal audit activities such as gap assessments, remediation, planning and coordination, evidence collection and validation, walkthroughs, and reporting
Ensure compliance of business continuity management policies and procedures in accordance with applicable regulatory requirements
Develop and maintain information security standards, guidelines, and procedures
Align with industry guidelines to implement secure design policies and procedures
Determine security violations and inefficiencies by conducting periodic reviews
Implement and maintain security controls
Conduct threat and risk analysis and analyze the business impact of new and existing systems and technologies to eliminate risk, performance, and capacity issues
Assist with incident response as events are escalated, including triage, remediation, and documentation
Implement security improvements by assessing current situation; evaluating trends; anticipating requirements
Maintain quality service by following organization standards
Contribute to team effort by accomplishing related results as needed
Attend regular project and implementation meetings and serve as the security consultant to help guide secure practices
Keep up to date with the current and proposed security changes impacting regulatory, privacy and security industry best practice guidance
Maintain technical knowledge by attending educational workshops
Qualifications:
Bachelor’s Degree in a related field or an equivalent combination of education and work experience
Minimum 5 years cybersecurity or Mobile and embedded software cybersecurity experience with a strong preference for compliance experience
Experience in Audit and certification process
Demonstrated knowledge of General IT Controls, including Information Security, Information System Operations, Vendor Management, Business Continuity, Networks, Database, System Software, Hardware, and Application Development controls
Strong analytical skills to analyze laws, regulations and translating the security requirements into appropriate security programs, projects, controls, and training
Ability to effectively communicate business risk as it relates to cybersecurity
Demonstrated excellent oral and written communication skills for interaction with all levels of management and staff including the ability to communicate regulatory requirements, security objectives, policies, and standards in business terms
Strong team player with the ability to communicate effectively within cross-functional groups and perform peer reviews of work products and documents
Excellent organizational skills and critical attention to detail and deadlines with the ability to handle multiple tasks simultaneously
Hold one or more cybersecurity certifications (e.g., CISSP, CISA, CISM, CCSP, etc.)
Self-motivated, well-organized and able to position controls in anticipation of threats.
Track record of acting with integrity, produce high quality deliverables, ability to take action upon receiving feedback, seeking to innovate, learn fast and be adaptable
Understanding of ISO 27001 and NIST cybersecurity frameworks
Advanced experience applying AI into everyday tasks including utilizing AI Skills and Automations, AI agents, MCP servers
PREFERRED:
- Medical device product security experience
- Business Continuity & Quality Management
- Experience with data privacy regulations to include US HIPAA and EU GDPR
- Risk Management and risk assessment experience
- Development process and security process knowledge
- Up-to-date understanding of a wide range of incident response, system configuration, vulnerability management and hardening guidelines
- Understanding of vulnerability management and penetration-testing
- Understanding of software development lifecycle (SLDC) and secure design principles
- Understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model and common security elements
- Understanding of OWASP, CVSS, the MITRE ATT&CK framework
- Familiarity with AWS cloud configurations
- Understanding of containerization, specifically Kubernetes
Learn more about our health and wellness benefits, which provide the security to help you and your family live full lives: www.abbottbenefits.com
Follow your career aspirations to Abbott for diverse opportunities with a company that can help you build your future and live your best life. Abbott is an Equal Opportunity Employer, committed to employee diversity.
Connect with us at www.abbott.com, on Facebook at www.facebook.com/Abbott and on Twitter @AbbottNews and @AbbottGlobal
#software
The base pay for this position is
$99,300.00 – $198,700.00In specific locations, the pay range may vary from the range posted.
JOB FAMILY:
Information Risk & Quality Assurance
DIVISION:
ADC Diabetes Care
LOCATION:
United States > California : Remote
ADDITIONAL LOCATIONS:
WORK SHIFT:
Standard
TRAVEL:
Yes, 5 % of the Time
MEDICAL SURVEILLANCE:
Not Applicable
SIGNIFICANT WORK ACTIVITIES:
Continuous sitting for prolonged periods (more than 2 consecutive hours in an 8 hour day), Keyboard use (greater or equal to 50% of the workday)Abbott is an Equal Opportunity Employer of Minorities/Women/Individuals with Disabilities/Protected Veterans.
EEO is the Law link - English: http://webstorage.abbott.com/common/External/EEO_English.pdf
EEO is the Law link - Espanol: http://webstorage.abbott.com/common/External/EEO_Spanish.pdf
More jobs at Abbott
- Manager, Brand Applications (Packaging) — United States - Illinois - Abbott Park
- Microbiologist I — United States - Minnesota - Plymouth
- Manufacturing Lead — United States - Minnesota - New Brighton
- Director, Quality & Regulatory Affairs — United States - California - Livermore