PitchMeAI
AbbVie

Cloud Security Engineer (Remote)

AbbVie · North Chicago, IL

This listing has closed — view similar roles below.

  • On site
  • Full-time
  • $120,000 / year
  • North Chicago, IL

Job highlights

  • Design and execute cloud security strategy.
  • Secure AWS/Azure IaaS environments.
  • Implement automated security guardrails.
  • Mentor junior cloud engineers.
  • Monitor cloud resources for compliance.

About the role

About AbbVie

AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas – immunology, oncology, neuroscience, and eye care – and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on X, Facebook, Instagram, YouTube, LinkedIn and Tik Tok.

Job Description

As a member of the Information Security Risk Management architecture team, the Cloud Security Engineer plays a crucial role in shaping and guiding the organization's security strategy, architecture, and practices, with a focus on cloud computing technology. The Cloud Security Engineer will collaborate with security architects and cloud engineers to design, execute, and govern a comprehensive cloud environment.

This role can be virtual anywhere in the U.S.

Responsibilities

  • Serve as a cloud security technical expert to develop and execute cloud security policies and procedures
  • Collaborate with cloud technology teams across the enterprise to ensure the integrity and security of our digital assets in AWS/Azure IaaS environments
  • Demonstrate high proficiency across a wide range of cloud security technologies to establish guardrails to prevent or automatically remediate common security misconfigurations
  • Provide technical leadership, mentor, and consult with less experienced cloud engineers to implement necessary security controls and threat protection
  • Act as a Cloud security subject matter expert by continually reviewing environments for opportunities to reduce risk when possible
  • Build automation to monitor cloud resources for compliance with existing standards and alert for configuration drift
  • Consult with cloud engineers to successfully implement design requirements from cloud security architects
  • Provide governance and consulting to ensure established controls remain effective
  • Contribute to advancement of own function by studying start-of-the-art tools, techniques, and computing equipment; participate in educational opportunities and professional organizations.
  • Highly autonomous and productive in performing activities, requiring only minimal direction from or interaction with supervisor
  • Excellent communication and influencing skills with the ability to balance differing stakeholder interests through sound analysis and persuasion
  • Understand and adhere to corporate standards regarding applicable Corporate and Divisional Policies, including code of conduct, safety, GxP compliance, data security, and the software development cycle

Qualifications

  • Bachelor’s Degree with 6 years’ experience; Master’s degree with 5 years’ experience; PhD with 0 years’ experience in information security and/or related functions (IT Audit, Risk Management, or Security Architecture)
  • Strong knowledge of scripting languages, including Python, Bash, and/or PowerShell
  • Experience developing AWS Service and Resource Control Policies (SCP and RCP) to effectively manage permissions across the enterprise
  • Expertise in AWS services including EC2, S3, RDS, Lambda, CloudFormation, VPC, and IAM.
  • Experience with Infrastructure as Code (IaC) tools including CloudFormation, Terraform, or Ansible.
  • Knowledge of DevOps practices and tools, including CI/CD pipelines, automation tools, and Docker/Kubernetes for containerization
  • Excellent written and oral communication skills
  • Strong problem-solving and analytical skills with the ability to identify security risks and propose effective solutions
  • Professional cybersecurity and relevant industry certifications (CISSP, AWS Solution Architect, AWS Security, CSA CCSK, SANS GCLD, etc.) are highly desirable

Additional Information

Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:

The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time ofthis posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future. We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees. This job is eligible to participate in our short-term incentive programs.

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of anybonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's soleand absolute discretion unless and until paid and may be modified at the Company’s sole and absolute discretion, consistent with applicable law.

AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.

US & Puerto Rico only - to learn more, visit https://www.abbvie.com/join-us/equal-employment-opportunity-employer.html

US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more: https://www.abbvie.com/join-us/reasonable-accommodations.html

Key skills/competency

  • Cloud Security Engineering
  • AWS Security
  • Azure Security
  • DevOps
  • Infrastructure as Code
  • Python Scripting
  • Security Architecture
  • Risk Management
  • Information Security
  • Threat Protection

Skills & topics

  • Cloud Security Engineer
  • Cloud Security
  • AWS
  • Azure
  • DevOps
  • IaC
  • Python
  • Bash
  • PowerShell
  • Information Security
  • Risk Management
  • Security Architecture
  • Remote

How to get hired

  • Customize your resume: Highlight cloud security, AWS/Azure, scripting (Python, Bash, PowerShell), and IaC experience.
  • Tailor your application: Emphasize your understanding of DevOps, CI/CD, and containerization technologies.
  • Prepare for technical questions: Brush up on AWS services (EC2, S3, Lambda) and security policies (SCP, RCP).
  • Showcase problem-solving: Be ready to discuss how you identify and mitigate security risks in cloud environments.
  • Highlight certifications: Mention relevant certifications like CISSP, AWS Security, or CCSK if you have them.

Technical preparation

Master AWS/Azure security services.,Practice scripting with Python, Bash, PowerShell.,Build IaC templates with Terraform/CloudFormation.,Understand CI/CD pipelines and containerization.

Behavioral questions

Describe a complex cloud security challenge.,How do you influence stakeholders on security?,Share an instance of risk reduction.,How do you stay updated on new tools?

Frequently asked questions

What are the key cloud platforms for this Cloud Security Engineer role at AbbVie?
This Cloud Security Engineer role at AbbVie focuses on securing AWS and Azure IaaS environments. You'll be working with a variety of AWS services like EC2, S3, RDS, Lambda, CloudFormation, VPC, and IAM.
What scripting languages are essential for the Cloud Security Engineer position at AbbVie?
For this Cloud Security Engineer role at AbbVie, strong knowledge of scripting languages such as Python, Bash, and/or PowerShell is essential for developing security policies and automation.
Does AbbVie require specific certifications for their Cloud Security Engineer role?
While not strictly required, professional cybersecurity certifications such as CISSP, AWS Solution Architect, AWS Security, CSA CCSK, or SANS GCLD are highly desirable for the Cloud Security Engineer position at AbbVie.
What level of experience is expected for the Cloud Security Engineer position at AbbVie?
AbbVie typically seeks candidates with a Bachelor's Degree and 6 years of experience, a Master's degree with 5 years of experience, or a PhD with 0 years of experience in information security or related fields for this role.
What is the work arrangement for the Cloud Security Engineer role at AbbVie?
The Cloud Security Engineer role at AbbVie is a remote position, with the flexibility to work virtually anywhere in the U.S.
What are the main responsibilities of a Cloud Security Engineer at AbbVie?
As a Cloud Security Engineer at AbbVie, you will develop and execute cloud security policies, collaborate with cloud technology teams, implement security controls, build automation for compliance monitoring, and provide expert consultation on cloud security architecture.
How does AbbVie approach Infrastructure as Code (IaC) for security?
AbbVie utilizes Infrastructure as Code (IaC) tools like CloudFormation, Terraform, or Ansible. As a Cloud Security Engineer, you'll be involved in ensuring these IaC practices adhere to security best practices and implement necessary controls.
What are the expected communication skills for this role at AbbVie?
Excellent written and oral communication skills are vital for this Cloud Security Engineer role. You'll need to effectively communicate complex security concepts, influence stakeholders, and consult with various teams.