远程工作雷达

安全工程师 – 网络安全态势、卫生与人工智能

Security Engineer – Cybersecurity Posture, Hygiene & AI

AI开发工程限定地区(需当地身份)
公司AbbVie
薪资$84,500 - $162,000/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

加入一个包容且协作的技术团队,每天都能发挥你的才能。作为艾伯维业务技术解决方案(BTS)的高级安全工程师——网络安全态势、卫生与AI赋能,你将有机会参与一家领先的生物制药公司的数字化转型,帮助打造能够改善患者及其社区的解决方案。
该职位可在美国任何地方远程办公。
作为信息安全风险管理(ISRM)架构团队的一员,高级安全工程师在塑造和指导组织的安全策略、架构和实践方面发挥关键作用,重点关注网络安全态势、卫生状况,以及有效且负责任地利用AI来提升大规模的安全成果。
职责
· 为经验较少的团队成员提供技术领导、指导和咨询,以提升整体网络安全态势和卫生计划

  • 通过确保在解决发现的配置偏差时采用基于风险的方法,优先处理修复工作
  • 编写脚本,利用范围内的应用程序API提取网络安全卫生和态势数据,以验证配置设置
  • 创建仪表板和警报,向关键利益相关者通报配置偏差和所需的修复活动
  • 与工程师和关键利益相关者合作,根据内部要求记录CIS基线
  • 与内部网络安全团队合作,识别将系统纳入网络安全态势和卫生计划的机会
  • 推动平台合规性,确保本地和托管资产持续监控配置偏差
  • 运用对人工智能(AI)和机器学习概念的扎实理解,包括模型如何训练、在哪些场景有效,以及在哪些情况下需要人工验证,特别是在网络安全用例中
  • 确保在态势和卫生工作流中适当且负责任地使用AI,包括验证AI生成的见解,防止过度依赖自动化,并确认输出符合已建立的安全基线和风险容忍度
  • 为经验较少的团队成员提供技术领导、指导和咨询,以提升整体网络安全态势和卫生计划
  • 理解并遵守有关适用企业及部门标准的公司规定
查看英文原文

Come to work each day with an inclusive and collaborative technology team. As a Senior Security Engineer – Cybersecurity Posture, Hygiene & AI Enablement in AbbVie Business Technology Solutions (BTS), you will have opportunities to contribute to the digital transformation of a leading biopharma company, helping to create solutions that impact patients and their communities for the better.
This position can be based virtually anywhere in the U.S.
As a member of the Information Security Risk Management (ISRM) Architecture team, the Senior Security Engineer plays a crucial role in shaping and guiding the organization’s security strategy, architecture, and practices, with a focus on cybersecurity posture, hygiene, and the effective and responsible use of AI to improve security outcomes at scale.
Responsibilities
· Provide technical leadership, mentoring, and consultation with less experienced team members to improve the overall cybersecurity posture and hygiene program

  • Prioritize remediation efforts by ensuring a risk-based approach is followed when addressing discovered configuration drift
  • Develop scripts to leverage in-scope application APIs to extract cybersecurity hygiene and posture data to verify configuration settings
  • Create dashboards and alerts to inform key stakeholders of configuration drift and required remediation activities
  • Partner with engineers and key stakeholders to document CIS baselines based on internal requirements
  • Collaborate with internal cybersecurity teams to identify opportunities for incorporating systems into the cybersecurity posture and hygiene program
  • Drive platform compliance to ensure on-premises and hosted assets are continuously monitored for configuration drift
  • Apply a strong working understanding of artificial intelligence (AI) and machine learning concepts, including how models are trained, where they are effective, and where human validation is required, particularly in cybersecurity use cases
  • Ensure AI is used appropriately and responsibly within posture and hygiene workflows, including validating AIgenerated insights, preventing overreliance on automation, and confirming outputs align with established security baselines and risk tolerance
  • Provide technical leadership, mentoring, and consultation with less experienced team members to improve overall cybersecurity posture and hygiene program
  • Understand and adhere to corporate standards regarding applicable Corporate and Divisional Policies, including Code of Conduct, safety, GxP compliance, data security, and the software development lifecycle

Bachelor’s Degree with 5 years’ experience; Master’s degree with 4 years’ experience in information security and/or related functions (IT Audit, Risk Management, or Security Architecture)
· Strong understanding of current cybersecurity tool capabilities as they pertain to continuous monitoring for configuration drift, including tools such as Tenable, CrowdStrike, and Windows Defender

  • Proficiency in using Splunk to perform data analysis and security monitoring effectively
  • Proven ability to leverage scripting languages such as Python, Bash, and PowerShell to interface with in-scope applications using available APIs
  • Expert knowledge of operating systems, networking protocols, system administration, XasaService models, applications, and security technologies
  • Proficient understanding of cybersecurity frameworks, including the CIS Critical Security Controls (CIS 18), NIST CSF, and NIST 80053
  • Excellent written and oral communication skills
  • Strong problem-solving and analytical skills with the ability to identify security risks and propose effective solutions
  • Professional cybersecurity and relevant industry certifications (CISSP, CEH, CompTIA Security+, CCSP, GSEC) are highly desirable
  • Highly autonomous and productive, capable of performing responsibilities with minimal direction or oversight

Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law: ​​
​​

  • The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future.​​
  • We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.​​
  • This job is eligible to participate in our short-term incentive programs. ​​

​​
Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company’s sole and absolute discretion, consistent with applicable law. ​
AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community.  Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more, visit
US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:

AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas – immunology, oncology, neuroscience, and eye care – and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on X, Facebook, Instagram, YouTube, LinkedIn and Tik Tok.
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位