Demo

Cyber Security Operations Manager – Attack Surface Management

Abbott
Canada, MN Full Time
POSTED ON 4/25/2025
AVAILABLE BEFORE 5/21/2025

The Opportunity

Abbott is looking for a Cyber Security Operations Manager – Attack Surface Management (CSOM – ASM), will lead and develop a key element of the ASM program (Secure Baseline Implementation) driving excellence for the organization’s attack surface management program. Reporting to the Sr Manager Cyber Security Operations, the CSOM – ASM will be responsible for the successful operation of a program element which has global reach across all of Abbotts business divisions and forms a critical component of the organization’s cyber security program.

The role will require a self-starter with a proven ability to lead. The CSOM – ASM should be capable of working in a complex process driven environment with significant on prem and cloud footprint in what is a quality driven organization working in a highly regulated industry. The CSOM – ASM will be required to be comfortable working in a matrix organization due to the global nature of the ASM programs.

What You'll Work On :

  • Act as the SME on the ASM program for the cyber operations team within Abbott.
  • Enterprise Cyber Security Point of Contact for other Divisional Cyber Security Teams in relation to the ASM and ASM program.
  • Acts as subject matter expert for the team in relation to the selection of additional tools to enhance the current ASM program capabilities.
  • Supports the organizations move towards a risk-based vulnerability management program.
  • Drives reduction of organizational risk through vulnerability remediation. Responsible for compliance with applicable Corporate and Divisional Policies and procedures
  • Identify opportunities for improvement to the organizations ASM program both in terms of process and tools used.
  • Ensures the development of the ASM Team in terms of capabilities and maturity.
  • Manages change to the organizations ASM program for both processes and tools.
  • Manages the ASM interface into enterprise or cyber security initiatives ensuring quality of service to stakeholders.
  • Engage with stakeholders within different parts of the business to communicate technical topics to non-technical stakeholders.
  • Ability to consume large datasets to ensure that risks are identified in a timely manner.
  • Visualize process architecture and make accurate decisions in rapidly evolving situations.
  • Acquire and manage the necessary resources, including leadership support, financial resources, and key security personnel, to support ASM program goals and objectives.
  • Design and documentation of processes.

EDUCATION AND EXPERIENCE, YOU’LL BRING

Required Qualifications :

  • 5 – 6 years’ work experience preferably with experience in a large-scale attack surface management / vulnerability management team
  • Knowledge of national and international regulatory compliances and frameworks such as NIST Cybersecurity Framework, ISO 27001, EU DPD, HIPAA / HITECH
  • Demonstrated experience of working in a Matrix organization covering differing geographic areas on time zones.
  • Demonstrated organizational skills, attention to detail, the ability to handle multiple assignments simultaneously in a timely manner and be able to meet assigned deadlines and service levels.
  • Must have strong time management skills and an ability to thrive in a high cadence operation.
  • Must work well within a tight-knit team environment and be able to work with peers, customers, and partners to support the mission.
  • Education

  • BA / BS or higher in Information Security, Risk or IT Management, Computer Science, or related field; or equivalent experience.
  • Certifications such as CISM, CISSP, CEH, OSCP will be preferred.
  • Preferred Qualifications :

  • Knowledge of computer networking concepts and protocols, and network security methodologies.
  • Knowledge of cyber threats and vulnerabilities.
  • Knowledge of threat vectors and how they would contribute to risk-based decision making in assessing vulnerabilities.
  • Knowledge of specific operational impacts of cybersecurity lapses.
  • Knowledge of host / network access control mechanisms (e.g., access control list, capabilities lists).
  • Knowledge of different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks).
  • Knowledge of Vulnerability criticality rating methodologies
  • Cyber attackers (e.g., script kiddies, insider threat, non-nation state sponsored, and nation sponsored).
  • Cyber-attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).
  • Network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
  • Cloud technologies and platforms.
  • Risk-based vulnerability methodologies.
  • Business processes in relation to how Cyber Security Operations can impact on these.
  • An understanding of how the organizations attack surface influences 3rd party organizational assessments of Abbott.
  • Experience with Vulnerability scanning tools like Qualys, etc
  • Supervisory responsibilities :

  • Manage direct reports to drive the success of the organizations ASM programs.
  • Manage the onboarding of internal customers to the ASM program
  • MISC :

  • This is an onsite role located in IL / MN locations. This is NOT a remote role / opportunity.
  • It requires some international travel from time to time (Est 10%).
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Cyber Security Operations Manager – Attack Surface Management?

    Sign up to receive alerts about other jobs on the Cyber Security Operations Manager – Attack Surface Management career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $163,631 - $209,073
    Income Estimation: 
    $192,911 - $256,346
    Income Estimation: 
    $192,911 - $256,346
    Income Estimation: 
    $228,678 - $310,400
    Income Estimation: 
    $163,631 - $209,073
    Income Estimation: 
    $192,911 - $256,346
    Income Estimation: 
    $125,027 - $157,872
    Income Estimation: 
    $149,432 - $188,965
    Income Estimation: 
    $150,041 - $190,701
    Income Estimation: 
    $163,631 - $209,073
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Abbott

    Abbott
    Hired Organization Address Washington, DC Full Time
    Abbott is a global healthcare leader that helps people live more fully at all stages of life. Our portfolio of life-chan...
    Abbott
    Hired Organization Address South Portland, ME Full Time
    The Opportunity The Instrument Engineering Manager works out of our South Portland, Maine location within the IDDM Infec...
    Abbott
    Hired Organization Address New Haven, CT Full Time
    Abbott is a global healthcare leader that helps people live more fully at all stages of life. Our portfolio of life-chan...
    Abbott
    Hired Organization Address Liberty, SC Full Time
    Abbott is a global healthcare leader that helps people live more fully at all stages of life. Our portfolio of life-chan...

    Not the job you're looking for? Here are some other Cyber Security Operations Manager – Attack Surface Management jobs in the Canada, MN area that may be a better fit.

    AI Assistant is available now!

    Feel free to start your new journey!