AbbVie is a leading biopharma company dedicated to discovering and delivering innovative medicines. They are seeking a Security Engineer to enhance their cybersecurity posture, hygiene, and AI enablement, contributing to the digital transformation and security strategy of the organization.
Responsibilities:
- Design, develop, and implement security controls and solutions that enhance AbbVie’s security hygiene
- Ensure that security measures are effectively integrated into IT systems and applications
- Collaborate with IT, network, and other relevant departments to align security measures with organizational goals and compliance requirements
- Partner with platform and application teams to establish clear security baseline requirements, following the Center for Internet Security Critical Security Controls (CIS 18). This partnership ensures that security best practices are integrated into development and deployment processes
- Utilize existing enterprise tools dedicated to vulnerability management, asset inventory, and cyber hygiene to ensure that all assets meet established security baseline requirements
- Develop custom integrations using APIs or other scripting tools for high-risk applications to enable proactive monitoring of critical security controls
- Demonstrate a foundational understanding of how artificial intelligence (AI) and machine learning technologies work, including their strengths, limitations, and common enterprise use cases, particularly as they relate to cybersecurity
- Leverage AI-enabled tools and capabilities to improve security posture and hygiene outcomes, such as enhancing visibility, identifying configuration drift, prioritizing risk, or accelerating analysis and decision-making
- Lead posture and hygiene efforts to effectively drive and complete initiatives successfully. This includes coordinating stakeholders, setting clear objectives, and maintaining sustained focus on improving the organization’s security posture
- Manage documentation such as baselines, Standard Operating Procedures (SOPs), policies, and work instructions in accordance with AbbVie requirements, ensuring accuracy, currency, and alignment with organizational standards
Requirements:
- Bachelor's degree in a relevant field and at least 5 years of relevant experience OR Master's degree in a relevant field and at least 4 years of experience
- Possess a strong understanding of the Center for Internet Security Critical Security Controls, specifically the CIS 18 framework
- Strong working knowledge in configuring common operating systems, including Windows Servers, Windows Desktops, and Red Hat Linux, among others
- Proficient in scripting languages, including Python, Bash, and/or PowerShell
- Excellent written and oral communication skills
- Strong problem-solving and analytical skills, with the ability to identify security risks and propose effective solutions
- Strong people skills, with the ability to collaborate effectively with IT stakeholders inside and outside of the organization
- Understand and adhere to corporate standards regarding applicable Corporate and Divisional Policies, including Code of Conduct, safety, GxP compliance, data security, and the software development lifecycle