招聘
Benefits & Perks
•Healthcare
•401k
Required Skills
Incident Response
Log Analysis
Malware Analysis
Windows OS
TCP/IP
This position is part of Abb Vie’s Information Security & Risk Management (ISRM) team. We are here to put our partners in a position to succeed. We do it by providing the knowledge, tools, and support they need to effectively use data and technology while also effectively managing risk.
Abb Vie Information Security is looking for a highly motivated, diligent, and skillful defender to join the Cyber Security Incident Response Team (CSIRT). The CSIRT, working within the Cyber Security Operations (CSO) function, is responsible for responding, investigating, containing, eradicating, and remediating security incidents. Join us as a Senior Security Analyst I, Incident Response to support and improve our efforts to defend against adversaries and help our business continue to have remarkable impacts on people’s lives.
This highly technical role will be primarily responsible for responding to cyber security incidents escalated by the Cyber Security Operations Center (CSOC); driving containment, eradication, and recovery efforts; assisting in improving Abb Vie’s threat detection capabilities; investigating ad-hoc cases; conducting threat hunts; and being a major contributor during critical cyber security incidents.
The ideal candidate must have prior experience with performing cyber security investigations, including performing triage and analyzing large data sets, as well as in depth knowledge of the latest threats, tactics, and techniques used by adversaries – and how to identify them.
Responsibilities:
- Act as a Tier 3 escalation point for cyber security incidents at Abb Vie, executing response plans and coordinating activity as needed
- Identify process improvement opportunities and develop subsequent plans of action to resolve gaps with minimal management intervention or direction
- Interpret and summarize technical information for presentation to non-technical business contacts (i.e. executive incident summaries)
- Develop, integrate, improve cyber security incident response “playbooks” and documentation for the team
- Identify capability gaps and assist in developing those capabilities or implementing technology as needed
- Examine log, system, and malware data to assess incident scope and impact
- Prepare formal reports on incident findings
- Drive improvements in cyber security incident detection
- Drive improvements in cyber security incident response automation capabilities
- Act as a first responder for cyber security incidents during normal business/off-hours and on-call
- Participate and conduct threat hunts as needed
- Act as Incident Commander for Priority 3 incidents, and Priority 2 incidents as required
- Assist and drive cyber security awareness and education initiatives, as needed
Basic Qualifications
- Demonstrated competency in log analysis or investigative activities in roles such as incident response, threat intelligence, security testing, or threat/vulnerability response.
- Knowledgeable on multiple technologies and systems that support CSOC and CSIRT services (e.g. SOAR, SIEM, IPS/IDS, EDR, etc.)
- Expert level understanding of incident response terminology and methodologies
- Advanced level understanding of Windows OS artifacts, TCP/IP networking, malware behaviors
- Familiarity with ITIL concepts and services
- Ability to author clear and concise incident reports
- Ability to successfully, professionally, and respectfully interact with non-technical in-business contacts
- Ability to work independently without direction for day-to-day activities
- Willingness to be available, as needed, for major and critical incident response activities during off-hours; and be on-call as required
- Capable of learning new concepts and processes quickly, and adapting to a constantly changing environment
- Education & Experience
- Minimum of one of the following:Minimum of 8 years of IT experience with 6 years in a specialized information security role
- Bachelor’s Degree in computer science or related technical field and 6 years of IT experience
- Bachelor’s Degree in computer science or related technical field and 5 years of specialized information security experience
- Master’s Degree in computer science or related technical field and 4 years of specialized information security experience
Desired Qualifications
- Prior experience participating in major/critical or complicated cyber security incidents
- Experience with incident response methodologies within enterprise cloud environments
- Experience analyzing and pivoting on large sets of data, with the ability to identify patterns, anomalies, and outliers
- Familiarity with digital forensics concepts and tools, malware reversal concepts and techniques, and data loss and data protection concepts and processes
- Familiarity with various scripting languages (e.g. PowerShell, Python, JavaScript)
- Certifications consisting of any of the following: GIAC Forensic Examiner (GCFE), GIAC Forensic Analyst (GCFA), GIAC Reverse Engineering Malware (GREM), GIAC Network Forensic Analyst (GNFA), GIAC Advanced Smartphone Forensics (GASF)
- 4-year college degree in computer science or related technical field is preferred
Abb Vie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more, visit https://www.abbvie.com/join-us/equal-employment-opportunity-employer.html
US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:
https://www.abbvie.com/join-us/reasonable-accommodations.html
Abb Vie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas – immunology, oncology, neuroscience, and eye care – and products and services in our Allergan Aesthetics portfolio. For more information about Abb Vie, please visit us at www.abbvie.com. Follow @abbvie on X, Facebook, Instagram, YouTube, LinkedIn and Tik Tok.
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs

Cybersecurity Intern - IAM
Visa · Singapore

SOC Incident Responder (Vice President)
Citigroup · SINGAPORE, Singapore

Security Engineer II, End Point Detection & Response
JPMorgan Chase · Singapore, SG

Cybersecurity Intern
Visa · Singapore

Cyber Fraud Analyst - Security Operation Center (SOC) Assistant Vice President
Citigroup · singapore
About AbbVie

AbbVie
PublicPharmaceutical company.
10,001+
Employees
North Chicago
Headquarters
Reviews
3.7
1 reviews
Work Life Balance
3.0
Compensation
3.0
Culture
3.0
Career
3.5
Management
2.5
60%
Recommend to a Friend
Pros
Good resume experience for entry-level positions
Valuable work experience opportunity
Brand recognition benefits
Cons
Lack of explicit feedback on performance
Limited communication about role expectations
No clear guidance provided
Salary Ranges
88 data points
Junior/L3
Junior/L3 · Data Security Engineer
1 reports
$145,600
total / year
Base
$112,000
Stock
-
Bonus
-
$145,600
$145,600
Interview Experience
6 interviews
Difficulty
2.8
/ 5
Duration
14-28 weeks
Offer Rate
17%
Experience
Positive 0%
Neutral 33%
Negative 67%
Interview Process
1
Application Review
2
Recruiter Screen
3
Hiring Manager Interview
4
Panel Interview
5
Final Interview
6
Offer
Common Questions
Behavioral/STAR
Past Experience
Technical Knowledge
Culture Fit
News & Buzz
AbbVie Inc. $ABBV Stake Decreased by Keybank National Association OH - MarketBeat
Source: MarketBeat
News
·
5w ago
AbbVie 애브비 배당성장주 핵심!! 핵심제품 소개와 향후 포트폴리오에 대해 알아보자! 파이어족에게 강력히 추천하는 주식!!
News
·
5w ago
·
843
[ABBV] AbbVie 투자할 때 반드시 알아야 할 점
News
·
5w ago
·
228
AbbVie 애브비 미친 매출과 배당성장세!! 휴미라 특허 절벽에도 2028년 글로벌 빅파마 1위로 예상되는 이유!!
News
·
5w ago
·
2,944