Jobs · Information Technology · California

Senior Cybersecurity Specialist

Abbott · Pleasanton, CA · Yesterday
Information Technology$99k–$199k/yrFull-time

About the role

This Senior Cybersecurity Specialist position can work remotely within the U.S. They assist Compliance and Information Security in providing internal control assessment, auditing, and monitoring, risk management, and mitigation. This role works to identify risks and ensure compliance with industry standards, relevant laws, and regulations, and industry best practices.

Responsibilities

  • Work with a variety of cross-functional teams to ensure compliance with standards, laws, regulations, and policies
  • Support external and internal audit activities such as gap assessments, remediation, planning and coordination, evidence collection and validation, walkthroughs, and reporting
  • Ensure compliance of business continuity management policies and procedures in accordance with applicable regulatory requirements
  • Develop and maintain information security standards, guidelines, and procedures
  • Align with industry guidelines to implement secure design policies and procedures
  • Determine security violations and inefficiencies by conducting periodic reviews
  • Implement and maintain security controls
  • Conduct threat and risk analysis and analyze the business impact of new and existing systems and technologies to eliminate risk, performance, and capacity issues
  • Aid in incident response as events are escalated, including triage, remediation, and documentation
  • Implement security improvements by assessing current situation; evaluating trends; anticipating requirements
  • Maintain quality service by following organization standards
  • Contribute to team effort by accomplishing related results as needed
  • Attend regular project and implementation meetings and serve as the security consultant to help guide secure practices
  • Keep up to date with the current and proposed security changes impacting regulatory, privacy, and security industry best practice guidance
  • Maintain technical knowledge by attending educational workshops

Qualifications

  • Bachelor’s Degree in a related field or an equivalent combination of education and work experience
  • Minimum 5 years cybersecurity or mobile and embedded software cybersecurity experience with a strong preference for compliance experience
  • Experience in Audit and certification process
  • Strong analytical skills to analyze laws, regulations, and translate security requirements into appropriate security programs, projects, controls, and training
  • Excellent oral and written communication skills for interaction with all levels of management and staff including the ability to communicate regulatory requirements, security objectives, policies, and standards in business terms
  • Strong team player with the ability to communicate effectively within cross-functional groups and perform peer reviews of work products and documents
  • Excellent organizational skills and critical attention to detail and deadlines with the ability to handle multiple tasks simultaneously
  • Hold one or more cybersecurity certifications (e.g., CISSP, CISA, CISM, CCSP, etc.)
  • Self-motivated, well-organized, and able to position controls in anticipation of threats
  • Track record of acting with integrity, producing high-quality deliverables, ability to take action upon receiving feedback, seeking to innovate, learn fast, and be adaptable
  • Understanding of ISO 27001 and NIST cybersecurity frameworks
  • Advanced experience applying AI into everyday tasks including utilizing AI skills and automations, AI agents, MCP servers

PREFERRED

  • Medical device product security experience
  • Business Continuity & Quality Management Experience
  • Experience with data privacy regulations to include US HIPAA and EU GDPR
  • Risk Management and risk assessment experience
  • Development process and security process knowledge
  • Up-to-date understanding of a wide range of incident response, system configuration, vulnerability management and hardening guidelines
  • Understanding of vulnerability management and penetration-testing
  • Understanding of software development lifecycle (SLDC) and secure design principles
  • Understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model and common security elements
  • Understanding of OWASP, CVSS, the MITRE ATT&CK framework
  • Familiarity with AWS cloud configurations
  • Understanding of containerization, specifically Kubernetes

Benefits

Learn more about our health and wellness benefits, which provide the security to help you and your family live full lives : www.abbottbenefits.com

Similar jobs