Company Overview
Abbott is a global leader in healthcare, dedicated to helping people live healthier, fuller lives at every stage. Our innovative solutions span diagnostics, medical devices, nutrition, and branded generic medicines, making a meaningful impact across the healthcare spectrum. With a team of 114,000 professionals, we serve communities in over 160 countries, driving advancements that improve lives worldwide.
What You’ll Work On
- Collaborate with cross-functional teams to implement and configure cybersecurity tools across the enterprise.
- Assess emerging technologies and design secure architectures to support their implementation.
- Provide guidance to business units, application development teams, and third-party vendors to ensure compliance with cybersecurity requirements while enabling business operations.
- Assist leadership in developing cybersecurity strategies, policies, and standards to safeguard company data and technology assets.
- Participate in project and implementation meetings as a security consultant, advising on best practices for secure development and deployment.
- Stay informed on evolving security regulations, privacy laws, and industry best practices.
- Contribute to the development of a risk-based cybersecurity program that meets regulatory requirements and aligns with industry-leading standards.
- Work with cross-functional teams to ensure compliance with legal and regulatory frameworks.
- Analyze and design secure solutions for the adoption of new technologies.
Required Qualifications
- 6 to 10 years of experience in cybersecurity or a related field.
- Bachelor’s degree in Information Security, Computer Science, or equivalent experience.
- Strong knowledge of General Computer Controls, including Information Security, IT Operations, Vendor Management, Business Continuity, Networking, Databases, System Software, Hardware, and Application Development controls.
- Excellent teamwork and communication skills, with the ability to collaborate across functional groups and review technical documentation.
- Strong organizational skills, with keen attention to detail, deadlines, and the ability to manage multiple tasks efficiently.
- Expertise in industry standards such as NIST Cybersecurity Framework, ISO 27001/2, SOC2, HITRUST, and FedRAMP security standards.
- Understanding of global regulatory compliance frameworks, including NIST, ISO, SOX, GDPR, HIPAA, and FDA requirements.
- Familiarity with cybersecurity frameworks such as OWASP, CVSS, and MITRE ATT&CK.
- Self-motivated and highly organized.
Preferred Qualifications
- Exceptional oral and written communication skills, with the ability to convey security objectives, policies, and standards in business terms to all levels of management and staff.
- CISM certification (or equivalent) is highly preferred.
- Experience in medical device security.
- Knowledge of threat modeling methodologies and their practical application.
- Background in audit and risk management.