- Salary
- $99k – $199k
- Location
- United States of America : Remote
- Workplace
- Onsite, Remote
- Type
- Full-time
- Department
- Engineering
- Seniority
- Senior
- Experience
- 7+ years
- Source
- Workday
Description
JOB DESCRIPTION:
We’re focused on helping people with diabetes manage their health with life-changing products that provide accurate data to drive better-informed decisions. We’re revolutionizing the way people monitor their glucose levels with our new sensing technology.
Working at Abbott
At Abbott, you can do work that matters, grow, and learn, care for yourself and family, be your true self and live a full life. You’ll also have access to:
Career development with an international company where you can grow the career you dream of.
Employees can qualify for free medical coverage in our Health Investment Plan (HIP) PPO medical plan in the next calendar year
An excellent retirement savings plan with high employer contribution
Tuition reimbursement, the Freedom 2 Save student debt program and FreeU education benefit - an affordable and convenient path to getting a bachelor’s degree.
A company recognized as a great place to work in dozens of countries around the world and named one of the most admired companies in the world by Fortune.
A company that is recognized as one of the best big companies to work for as well as a best place to work for diversity, working mothers, female executives, and scientists.
THE OPPORTUNITY
This Staff Cybersecurity Engineer position can work out remotely within the U.S.
The Staff Cybersecurity Engineer leads strategic cybersecurity initiatives that identify, prioritize, and resolve product security risks, vulnerabilities, and threats. This role drives mitigation and remediation strategies across complex, cross-functional product environments to ensure Abbott builds safe and secure products that comply with industry cybersecurity regulations and meet customer and patient security expectations.
What You’ll Work On
Drive strategic AI-enabled cybersecurity workflows through custom models, skills, and agentic development to reduce vulnerability risk, mature repeatable processes, and scale security decision support.
Lead product cybersecurity release readiness by delivering SBOMs, vulnerability remediation evidence, and release security documentation. Drive technical reviews with development teams to resolve vulnerabilities, validate controls, manage remediation progress, and communicate residual risk.
Lead vulnerability remediation and patch prioritization based on business impact, proof of exploit, regulatory expectations, and policy requirements, partnering with engineering, PMs, and product owners to drive timely risk reduction.
Architect systematic remediation strategies and preventive controls that reduce recurring vulnerabilities, including secure coding practices, dependency management, configuration hardening, and scalable governance across product and supporting applications.
Lead complex and ambiguous security problems to resolution by decomposing risk, aligning stakeholders on technical direction, removing blockers, and driving durable outcomes across large product and platform efforts.
Validate security fixes through hands-on testing, with depth in one or more product security domains such as web application testing using Burp Suite and Postman, hardware testing, or verification of iOS and Android mobile application vulnerability remediation.
Clearly communicate complex technical security concepts to executive leadership and cross-functional stakeholders, translating vulnerability findings, security controls, and security metrics into business-relevant risk insights and decision support.
Lead remediation efforts after security assessments identify weaknesses requiring attention. Drive advancement of the cyber threat and vulnerability management program to ensure consistent identification, analysis, response, monitoring, and resolution of cybersecurity threats, events, and vulnerabilities.
Leverage JIRA for security project and vulnerability management, building dashboards, reports, and automation workflows that improve remediation visibility, surface strategic metrics, and drive accountability across cross-functional teams.
Lead triage of findings from application, network-based, and agent-based security scanning tools (SAST, DAST, SCA, infrastructure scanners) to determine true security impact, validate exploitability, distinguish false positives, and communicate residual risk and remediation activities to technical and non-technical audiences.
Drive cross-functional execution of security goals and detailed implementation plans for security projects. Provide technical leadership, mentorship, and training on potential security risks, prevention strategies, and practical remediation approaches.
QUALIFICATIONS
Bachelor’s degree in computer science, Information Technology, Engineering, Security Systems, or related fields.
Minimum 7 years of relevant professional experience, including at least 5 years of experience in IT management system, cybersecurity, or other relevant experience with a strong preference for product security, including consumer-facing applications and services.
Demonstrated hands-on experience leading web, mobile, cloud infrastructure, and product security testing using DAST, SAST, SCA, SBOM generation tooling, and network- and agent-based vulnerability scanning tools.
Ability to lead multiple complex cybersecurity initiatives with strong organization skills.
Demonstrated critical thinking, analytical skills, judgment, and logic for resolving large, ambiguous problems in an environment with changing priorities.
Ability to lead effectively in cross-functional team environments, adapting to rapidly changing business and technological needs while driving stakeholders toward clear decisions and outcomes.
Excellent executive-facing documentation, communication, and interpersonal skills, with the ability to influence technical and non-technical stakeholders.
Preferred
Holds or is actively pursuing one or more industry-recognized cybersecurity certifications, such as CISSP, CISM, CEH, or equivalent.
Previous work experience in a product development cybersecurity role.
Familiarity with design of diagnostic equipment, medical devices, or other closely related products.
* Participants who complete a short wellness assessment qualify for FREE coverage in our HIP PPO medical plan. Free coverage applies in the next calendar year.
Learn more about our health and wellness benefits, which provide the security to help you and your family live full lives: www.abbottbenefits.com
Follow your career aspirations to Abbott for diverse opportunities with a company that can help you build your future and live your best life. Abbott is an Equal Opportunity Employer, committed to employee diversity.
Connect with us at www.abbott.com, on Facebook at www.facebook.com/Abbott and on Twitter @AbbottNews and @AbbottGlobal.
The base pay for this position is
$99,300.00 – $198,700.00In specific locations, the pay range may vary from the range posted.
JOB FAMILY:
Information Risk & Quality Assurance
DIVISION:
ADC Diabetes Care
LOCATION:
United States of America : Remote
ADDITIONAL LOCATIONS:
WORK SHIFT:
Standard
TRAVEL:
Yes, 5 % of the Time
MEDICAL SURVEILLANCE:
Not Applicable
SIGNIFICANT WORK ACTIVITIES:
Continuous sitting for prolonged periods (more than 2 consecutive hours in an 8 hour day), Keyboard use (greater or equal to 50% of the workday)Abbott is an Equal Opportunity Employer of Minorities/Women/Individuals with Disabilities/Protected Veterans.
EEO is the Law link - English: http://webstorage.abbott.com/common/External/EEO_English.pdf
EEO is the Law link - Espanol: http://webstorage.abbott.com/common/External/EEO_Spanish.pdf