372,956open jobs
9,661companies
50,233added this week
Browse all
Salary
$61k – $123k per year
Location
In office (Madison)
Seniority
Junior · 1+ year exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Abbott is a global healthcare company headquartered in Abbott Park, Illinois, and founded in 1888. The company develops and manufactures a wide range of products including medical devices for cardiovascular and diabetes care, diagnostic equipment, pediatric and adult nutritionals, and branded generic pharmaceuticals. It operates in over 160 countries with a workforce of approximately 114,000 employees, focusing on life-changing technologies across various stages of healthcare.
Abbott is a global healthcare leader that helps people live more fully at all stages of life. Our portfolio of life-changing technologies spans the spectrum of healthcare, with leading businesses and products in diagnostics, medical devices, nutritionals and branded generic medicines. Our 122,000 colleagues serve people in more than 160 countries.

JOB DESCRIPTION:

Working at Abbott

At Abbott, you can do work that matters, grow, and learn, care for yourself and your family, be your true self, and live a full life. You’ll also have access to:

  • Career development with an international company where you can grow the career you dream of.
  • Employees can qualify for free medical coverage in our Health Investment Plan (HIP) PPO medical plan in the next calendar year.
  • An excellent retirement savings plan with a high employer contribution
  • Tuition reimbursement, the Freedom 2 Save student debt program, and FreeU education benefit - an affordable and convenient path to getting a bachelor’s degree.
  • A company recognized as a great place to work in dozens of countries worldwide and named one of the most admired companies in the world by Fortune.
  • A company that is recognized as one of the best big companies to work for as well as the best place to work for diversity, working mothers, female executives, and scientists.

The Opportunity

The Offensive Security Analyst supports Abbott’s Enterprise Cybersecurity Operations, Red Team Operations program by executing authorized penetration tests, supporting adversary emulation and purple team exercises, and validating vulnerabilities across internal and external assets. Working within defined methodologies, scope, and Rules of Engagement, the analyst develops hands on offensive security expertise while producing clear, actionable findings that measurably improve Abbott’s security posture. The role emphasizes technical execution, continuous skill development, and safe, ethical testing within a regulated healthcare environment.

This position reports to the Manager of Red Team Operations within Enterprise Cybersecurity and supports offensive security testing across Abbott’s enterprise technology environment. Responsibilities emphasize hands on execution and technical skill development under senior oversight, with exposure to purple team operations, vulnerability validation, cloud and identity attack paths, and emerging threat areas. The analyst is expected to grow toward performing standard assessments with increasing independence.

Abbott operates in a regulated healthcare and medical device environment, so testing may involve sensitive data, including PHI, and patient adjacent or clinical systems. The analyst is expected to minimize captured sensitive data, store evidence only in approved locations, coordinate testing windows to limit operational impact, and comply with all applicable authorization, privacy, and regulatory requirements.

What You’ll Do

Offensive testing and adversary emulation

The analyst plans and executes authorized penetration tests against Abbott owned assets, including web applications, APIs, network infrastructure, and cloud environments, within approved scope and Rules of Engagement. This includes supporting purple team adversary emulation exercises by assisting with scenario development, executing ATT&CK mapped tactics, techniques, and procedures, validating detection and response coverage alongside defensive teams, and documenting lessons learned. The analyst supports red team and objective based engagements under senior direction and contributes to specialized assessments.

Vulnerability validation

The analyst performs vulnerability validation and exploit feasibility assessments to confirm real-world risk and reduce false positives before remediation prioritization. Individual weaknesses are analyzed and chained into meaningful attack paths mapped to MITRE ATT&CK, OWASP, and CWE, and the analyst develops and safely tests proof of concept exploits within authorized environments.

Reporting and communication

The analyst produces clear, structured assessment reports and executive summaries with supporting evidence, CVSS based severity justification, business risk context, and actionable remediation guidance. The role supports post engagement readouts, knowledge transfer sessions, and remediation discussions with application owners and IT teams, and translates technical findings for both technical and non-technical audiences.

Collaboration and program contribution

The analyst collaborates with the Incident Response, Threat Intelligence, Vulnerability Management, Detection Engineering, and Cybersecurity Architecture teams, and contributes to service metrics and dashboards that track testing coverage, vulnerability trends, and detection effectiveness over time. The role also contributes to team methodology, tooling, playbooks, and documentation held in SharePoint, Git, and wiki resources.

Professional conduct and development

The analyst operates strictly within authorization, scope, Rules of Engagement, and legal and ethical boundaries, exercising discretion when handling highly sensitive data, including PHI, and patient-adjacent or clinical systems. Complex, novel, or high risk findings are escalated promptly with appropriate documentation. The analyst continuously develops offensive security skills through self-directed learning, labs, and research, maintaining growing proficiency with standard tooling such as Burp Suite, Nmap, BloodHound, and content-discovery tools.

Education and Experience You’ll Bring

Required Qualifications

  • A bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field is expected, or equivalent practical experience and certifications.
  • Candidates typically bring one to three years of relevant cybersecurity experience, and internship, co-op, or applied academic and lab experience will be considered.
  • Working knowledge of Windows and Linux operating systems, networking fundamentals, and Active Directory concepts.
  • Familiarity with offensive security frameworks and standards such as MITRE ATT&CK, OWASP, PTES, CWE, and CVSS.
  • Exposure to scripting or automation such as Python, PowerShell, or Bash.

Preferred Qualifications

  • Foundational knowledge of web technologies, including HTTP and HTTPS, REST APIs, and authentication mechanisms, and of common vulnerability classes such as the OWASP Top 10.
  • Candidates should have hands-on familiarity with core offensive security tooling such as Burp Suite, Nmap, Metasploit, and Kali Linux, or demonstrable applied lab proficiency and clear intent to develop these skills.
  • Preferred certifications, or those a candidate is working toward, include OSCP, GPEN, GWAPT, or GXPN; OSWE, CRTP, or CBBH; and a recognized cloud security or cloud penetration testing certification such as an AWS or Azure security credential.
  • Misc: This is an onsite role at Abbott location Madison; WI This is not a remote role/opportunity.

Apply Now

  • Learn more about our health and wellness benefits, which provide the security to help you and your family live full lives:www.abbottbenefits.com
  • Follow your career aspirations to Abbott for diverse opportunities with a company that can help you build your future and live your best life. Abbott is an Equal Opportunity Employer, committed to employee diversity.
  • Connect with us at www.abbott.com, on Facebook at www.facebook.com/Abbott, and on Twitter @AbbottNews.

The base pay for this position is

$61,300.00 - $122,700.00

In specific locations, the pay range may vary from the range posted.

JOB FAMILY:

Information Risk & Quality Assurance

DIVISION:

BTS Business Technology Services

LOCATION:

United States > Madison : 1 Exact Lane

ADDITIONAL LOCATIONS:

WORK SHIFT:

Standard

TRAVEL:

Yes, 5 % of the Time

MEDICAL SURVEILLANCE:

Not Applicable

SIGNIFICANT WORK ACTIVITIES:

Continuous sitting for prolonged periods (more than 2 consecutive hours in an 8 hour day), Keyboard use (greater or equal to 50% of the workday)Abbott is an Equal Opportunity Employer of Minorities/Women/Individuals with Disabilities/Protected Veterans.EEO is the Law link - English: http://webstorage.abbott.com/common/External/EEO_English.pdfEEO is the Law link - Espanol: http://webstorage.abbott.com/common/External/EEO_Spanish.pdf
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
372,956 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Madison
$197k – $314k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • Washington
Go
Java
Python
AI/ML
Agentforce
AI Agents
Claude
Claude Code
Copilot
Cursor
OpenAI Codex
Prompt Engineering
DevOps
AWS
Azure
cert-manager
CI/CD
GCP
Git
GitHub
Istio
Kubernetes
Service Mesh
Cybersecurity
CWE
OWASP Top 10
SOC 2
Zero Trust
Marketing
Salesforce
Apply
$149k – $201k per year • In office • Full-Time • 10+ years exp • Herndon
Bash
C#
Java
Python
Java
Gradle
Maven
Python
Poetry
Databases
Apache Kafka
DevOps
Ansible
CI/CD
Configuration Management
Git
Helm
Jenkins
Kubernetes
Apply
$125k – $165k per year • Equity • In office • Full-Time • 3+ years exp • Bachelor's Degree • Fort Walton Beach
Bash
C++
C++
CMake
DevOps
CI/CD
Docker
Ubuntu
GitLab
Robotics
ArduPilot
Apply
$22k – $55k per year (Estimated) • In office • Contractor • Bachelor's Degree • Moscow
Bash
PowerShell
Python
Databases
ClickHouse
ElasticSearch
OpenSearch
DevOps
Zabbix
Cybersecurity
MITRE ATT&CK
OpenVAS
Apply
$22k – $41k per year (Estimated) • Remote • Moscow
Bash
Databases
Apache Kafka
PostgreSQL
Redis
DevOps
CI/CD
Docker
Git
GitLab
GitLab CI
GitOps
Grafana
Kubernetes
Prometheus
Yandex Cloud
Cybersecurity
HashiCorp Vault
Cryptography
Vault
Apply
$42k – $117k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Barcelona
Go
SQL
Databases
MySQL
PostgreSQL
DevOps
Amazon ECS
Docker
Docker Swarm
Git
Kubernetes
Apply
$55k – $92k per year (Estimated) • In office • Full-Time • 5+ years exp • High School Diploma • Warsaw
Cybersecurity
GDPR
Analytics
A/B Testing
Tableau
Design
Adobe XD
Figma
Sketch
Apply
$113k – $227k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • Lake Forest • Saint Paul • Chicago
Cybersecurity
CVSS
FedRAMP
GDPR
ISO 27001
MITRE ATT&CK
SOC 2
Apply
$86k – $156k per year • In office • Full-Time • 2+ years exp • Bachelor's Degree • Pleasanton
Apply
Remote • Full-Time • Bachelor's Degree • Mexico
Apply
$148k – $280k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Madison
Java
DevOps
AWS
Azure
CI/CD
Apply
$88k – $175k per year (Estimated) • Equity • Remote/Hybrid • Full-Time • 8+ years exp • Madison
Apply
$90k – $120k per year • Equity • Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Lincoln • Centennial • Madison
C#
SQL
C#
.NET
Databases
MS SQL
Apply
$75k – $110k per year • Equity • Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Lincoln • Centennial • Madison
SQL
Apply
$82k – $92k per year • In office • Full-Time • 2+ years exp • Bachelor's Degree • Madison
PHP
Python
Cybersecurity
HIPAA
Threat Modeling
Apply
See all jobs
This is one of many
372,956 more open roles from verified company boards, updated every day.