Abbott

Senior Cybersecurity Specialist

Abbott
HealthcareSingaporeFull-time1 months ago

About the role

AI summarised

The Senior Cybersecurity Specialist at Abbott Nutrition is responsible for protecting digital assets and infrastructure, focusing on secure architectures, risk assessments, threat modeling, and compliance with standards like ISO 27001 and NIST. This role collaborates with IT, Engineering, and Operations teams to maintain cybersecurity in manufacturing environments, requiring 5+ years of experience in regulated industries and certifications such as CISSP or CISM.

HealthcareFull-timeGeneral

Key Responsibilities

  • Conduct cybersecurity risk assessments for software, systems, and network infrastructure.
  • Perform threat modeling using tools such as STRIDE.
  • Conduct and support vulnerability assessments and penetration testing.
  • Ensure compliance with relevant standards and regulations (e.g., ISO 27001, NIST SP 800-82, FDA, HIPAA, GDPR, PCI DSS, etc).
  • Monitor and interpret changes in global cybersecurity regulations and standards, integrating them into Abbott Nutrition policies and procedures.
  • Support internal and external audits, including remediation coordination at Abbott Nutrition sites.
  • Collaborate with engineering and development teams to design secure system architectures.
  • Guide teams in applying cybersecurity controls throughout the software development lifecycle (SDLC).
  • Monitor cybersecurity threats and develop mitigation strategies.
  • Respond to and investigate cybersecurity incidents, identifying root causes and recovery actions.
  • Utilize and manage security technologies including: Firewalls, Intrusion Detection/Prevention Systems (IDS/IPS), Endpoint protection, Data Loss Prevention (DLP), SIEM systems, Log aggregation tools.
  • Support the deployment and operational use of Governance, Risk, and Compliance (GRC) platforms.

Requirements

  • Bachelor's Degree in Computer Science, Engineering, Information Security, or related field.
  • 5+ years of experience in cybersecurity, preferably in regulated industries such as food, beverage, healthcare, or medical devices.
  • Experience with cloud security, network protocols (SSL/TLS, VPNs, IPsec), and secure cloud-based applications.
  • Familiarity with regulatory compliance (SOX, HIPAA, GDPR, FDA cybersecurity guidance).
  • Proficiency in threat modeling, risk management, vulnerability management, and incident response.
  • Experience securing both software and hardware systems in manufacturing environments.
  • Strong understanding of cybersecurity frameworks (ISO 27001, NIST, SOC 2, HITRUST, NIST SP 800-82).
  • CISSP, CISM, or equivalent certification preferred.