Abbott
Iam Architect
This IAM Architect position can work remotely within the U.S. IAM Architect is a key contributor with comprehensive knowledge in identity and access management (IAM), capable of executing highly complex or specialized projects that enhance both customer and enterprise identity systems. This role is responsible for providing expertise to the R&D team on Security strategy and Technology to build safe, secure products. The IAM Architect applies established practices and may introduce significant innovations to evolve the IAM architecture. Responsibilities include developing, communicating, implementing, enforcing, and monitoring security controls to protect the organization's technology assets from unauthorized modification, disclosure, or destruction. Additionally, the IAM Architect contributes to the product security program and supports product security risk assessments, security testing, certifications, security event handling, metrics & monitoring, external communications and education and training. What You'll Do: Develop and maintain technical expertise pertaining to cyber security and effectively transfer knowledge to applicable stakeholders within the organization. Perform all procedures necessary to ensure the safety of identity and access management systems and protect systems from intentional or inadvertent access or destruction. Ensure that the user community understands and adheres to necessary procedures to maintain security. May require familiarity with domain structures, user authentication, and digital signatures. Conduct accurate evaluation of the level of security required. Requires an understanding of cloud architecture and configuration. Has in-depth knowledge of identity providers and Internet architecture. Must be able to weigh business needs against security concerns and articulate issues to management. May coach or provide guidance to lower-level security professionals. Participate in the development and integration of the company-wide cybersecurity program, including incident response, mitigation strategies, and consistent event handling. Assist in performing risk assessments of both existing and new Abbott medical devices. Anticipate business and industry regulatory issues to provide recommendations and solutions to potential issues or vulnerabilities. Assist with scheduling and facilitate penetration testing efforts. Manage and monitor security remediation efforts to successful completion. Works closely with internal business partners to incorporate security mitigations into new implementation during planning phases while driving a continued focus on efficiency. Develops and effectively executes project plans, work breakdown structure and task dependencies, communication plans, etc. as needed. Maintain positive and cooperative communications and collaboration with all levels of employees, customers, contractors, and vendors. Perform other related duties as assigned, contributing to broader team and organizational goals. Qualifications: Bachelor's Degree in Computer Science, MIS or related field. Minimum 8 years of experience in a product security or cybersecurity role is preferred. Understanding of product security and the relationship between threat, vulnerability, and potential customer risk in the context of risk management. Familiarity with FDA cybersecurity guidelines for Abbott's products. Knowledge of national and international regulatory compliances and frameworks such as NIST Cybersecurity Framework, ISO 27001, EU DPD, HIPAA/HITECH. Certifications such as CISA, CISM, CRISC, CISSP, CPP or CFE are preferred. Deep knowledge/expertise of latest security technologies and tools used within the product/cybersecurity domain, such as PKI, firewalls, IDS/IPS, 2-factor authentication etc. is required. Ability to translate complex IT Security problems and issues into simple business terms/business impact. The base pay for this position is $97,300.00
$194,700.00. In specific locations, the pay range may vary from the range posted.
This IAM Architect position can work remotely within the U.S. IAM Architect is a key contributor with comprehensive knowledge in identity and access management (IAM), capable of executing highly complex or specialized projects that enhance both customer and enterprise identity systems. This role is responsible for providing expertise to the R&D team on Security strategy and Technology to build safe, secure products. The IAM Architect applies established practices and may introduce significant innovations to evolve the IAM architecture. Responsibilities include developing, communicating, implementing, enforcing, and monitoring security controls to protect the organization's technology assets from unauthorized modification, disclosure, or destruction. Additionally, the IAM Architect contributes to the product security program and supports product security risk assessments, security testing, certifications, security event handling, metrics & monitoring, external communications and education and training. What You'll Do: Develop and maintain technical expertise pertaining to cyber security and effectively transfer knowledge to applicable stakeholders within the organization. Perform all procedures necessary to ensure the safety of identity and access management systems and protect systems from intentional or inadvertent access or destruction. Ensure that the user community understands and adheres to necessary procedures to maintain security. May require familiarity with domain structures, user authentication, and digital signatures. Conduct accurate evaluation of the level of security required. Requires an understanding of cloud architecture and configuration. Has in-depth knowledge of identity providers and Internet architecture. Must be able to weigh business needs against security concerns and articulate issues to management. May coach or provide guidance to lower-level security professionals. Participate in the development and integration of the company-wide cybersecurity program, including incident response, mitigation strategies, and consistent event handling. Assist in performing risk assessments of both existing and new Abbott medical devices. Anticipate business and industry regulatory issues to provide recommendations and solutions to potential issues or vulnerabilities. Assist with scheduling and facilitate penetration testing efforts. Manage and monitor security remediation efforts to successful completion. Works closely with internal business partners to incorporate security mitigations into new implementation during planning phases while driving a continued focus on efficiency. Develops and effectively executes project plans, work breakdown structure and task dependencies, communication plans, etc. as needed. Maintain positive and cooperative communications and collaboration with all levels of employees, customers, contractors, and vendors. Perform other related duties as assigned, contributing to broader team and organizational goals. Qualifications: Bachelor's Degree in Computer Science, MIS or related field. Minimum 8 years of experience in a product security or cybersecurity role is preferred. Understanding of product security and the relationship between threat, vulnerability, and potential customer risk in the context of risk management. Familiarity with FDA cybersecurity guidelines for Abbott's products. Knowledge of national and international regulatory compliances and frameworks such as NIST Cybersecurity Framework, ISO 27001, EU DPD, HIPAA/HITECH. Certifications such as CISA, CISM, CRISC, CISSP, CPP or CFE are preferred. Deep knowledge/expertise of latest security technologies and tools used within the product/cybersecurity domain, such as PKI, firewalls, IDS/IPS, 2-factor authentication etc. is required. Ability to translate complex IT Security problems and issues into simple business terms/business impact. The base pay for this position is $97,300.00
$194,700.00. In specific locations, the pay range may vary from the range posted.