Associate Director - Security Strategy & Analytics (Hybrid)

Posted 29 Days Ago
Be an Early Applicant
Mettawa, IL, USA
Hybrid
142K-269K Annually
Senior level
Healthtech • Pharmaceutical
The Role
Lead security metrics, reporting, and analytics while shaping ISRM strategy and roadmaps. Manage a metrics team, own reporting platforms and data lake, translate risk and threat insights into executive-level communications, and track security maturity against frameworks like NIST CSF to inform investments and remediation.
Summary Generated by Built In
Company Description

About AbbVie

AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on LinkedIn, Facebook, Instagram, X and YouTube.

Job Description

The Associate Director, Information Security Strategy & Analytics is a senior people leader who partners with the ISRM leadership team and CISO to define and document the function's strategic direction while leading the team responsible for security reporting and analytics. This role translates business priorities, risk insights, and hard security data into insights that drive strategic decisions, while owning the platforms and reporting capabilities that make those strategies measurable. 

This role has three defining requirements: seasoned security practitioner depth, the ability to communicate strategy and data clearly and credibly to executive audiences, and a proven track record leading technical or analytical teams. 

Responsibilities:

  • Lead the metrics and reporting team, including hiring, performance management, talent development, and defining the team's portfolio, processes, and ways of working. 
  • Partner with security domain leaders to develop impactful cross-functional reporting that gives leadership clear insight into security posture, operational health, and program value. 
  • Collaborate with ISRM leadership and portfolio management to define ISRM's strategic direction, including strategic priorities, target state, and multi-year roadmap, grounded in threat and risk insights, key metrics, business priorities, and delivery realities. 
  • Own ISRM's strategic narrative by developing and maintaining strategy documentation, executive communications, and leadership presentations that clearly articulate direction and value to stakeholders and partners. 
  • Lead the process of translating ISRM's strategic priorities into annual planning inputs, including LRP and capital planning submissions, ensuring investment rationale is clearly tied to execution roadmaps. 
  • Own and mature ISRM's data lake and reporting platforms, ensuring they deliver consistent, accurate, and timely data to support leadership decision-making. 
  • Own and mature the semi-annual cyber business review process, delivering periodic cybersecurity performance reporting to business executives. 
  • Track ISRM's security maturity progress against frameworks such as NIST CSF, ensuring assessment results are reflected in strategic priorities, roadmap inputs, and remediation planning. 

Qualifications

Required:

  • Bachelor's Degree and 9 years of experience; OR Master's Degree and 8 years of experience; OR PhD and 4 years of experience. 
  • Respective years of relevant technical security roles (e.g., security architecture, security engineering, cyber defense). 
  • 4+ years of leadership experience, including direct management of senior individual contributors in technical or analytical functions. 
  • Demonstrated experience in information security strategy, security program leadership, or security transformation within a large, complex organization. 
  • Strong experience developing and/or maintaining complex, cross-functional reporting targeted at executive leadership. 
  • Exceptional executive communication and stakeholder engagement skills, with demonstrated ability to present and influence at the CISO and senior leadership level. 
  • Exceptional written communication skills, with demonstrated experience producing both executive-level security reporting and strategic documents (roadmaps, decision papers, governance narratives) that inform and influence senior leadership. 
  • Strong working knowledge of corporate security domains (e.g., security architecture, AppSec, security operations, GRC, TPRM) and the ability to build trust with the leaders of those programs. 
  • Experience with security maturity frameworks such as NIST CSF, including translating findings into strategic priorities and remediation plans. 

Preferred:

  • 6+ years in relevant technical security roles (e.g., security architecture, security engineering, cyber defense). 
  • Experience in a security strategy, chief-of-staff, transformation, or metrics leadership role. 
  • Hands-on experience with software development, data engineering, or security engineering. 
  • Experience supporting globally distributed teams and stakeholders. 
  • Experience developing multi-year security roadmaps, service strategies, operating model materials, or investment cases. 

Additional Information

Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law: ​

  • The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future. ​
  • We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.​
  • This job is eligible to participate in our long-term incentive programs. 

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company’s sole and absolute discretion, consistent with applicable law.​

AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community.  Equal Opportunity Employer/Veterans/Disabled. 

US & Puerto Rico only - to learn more, visit https://www.abbvie.com/join-us/equal-employment-opportunity-employer.html

US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:

https://www.abbvie.com/join-us/reasonable-accommodations.html

Skills Required

  • Bachelor's Degree and 9 years experience OR Master's Degree and 8 years OR PhD and 4 years
  • Relevant technical security experience (security architecture, security engineering, cyber defense) for the respective years listed
  • 4+ years of leadership experience, including direct management of senior individual contributors in technical or analytical functions
  • Experience in information security strategy, security program leadership, or security transformation within a large, complex organization
  • Strong experience developing and/or maintaining complex, cross-functional reporting targeted at executive leadership
  • Exceptional executive communication and stakeholder engagement skills, ability to present and influence at CISO and senior leadership level
  • Exceptional written communication skills producing executive-level security reporting and strategic documents (roadmaps, decision papers, governance narratives)
  • Strong working knowledge of corporate security domains (security architecture, AppSec, security operations, GRC, TPRM)
  • Experience with security maturity frameworks such as NIST CSF and translating findings into strategic priorities and remediation plans
  • 6+ years in relevant technical security roles (preferred)
  • Experience in a security strategy, chief-of-staff, transformation, or metrics leadership role
  • Hands-on experience with software development, data engineering, or security engineering
  • Experience supporting globally distributed teams and stakeholders
  • Experience developing multi-year security roadmaps, service strategies, operating model materials, or investment cases

AbbVie Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about AbbVie and has not been reviewed or approved by AbbVie.

  • Retirement Support Retirement programs are portrayed as a standout, with a dollar‑for‑dollar 401(k) match up to 6% and an additional annual company contribution based on age and service. Feedback suggests this materially boosts perceived total compensation for many U.S. employees.
  • Parental & Family Support Paid parental and caregiver leave are emphasized, including up to 12 weeks of fully paid parental leave for all parents and 4 weeks of paid caregiver leave in the U.S. Feedback suggests these policies are a meaningful differentiator for employees balancing family needs.
  • Leave & Time Off Breadth Time off is described as extensive, with tiered vacation that scales with tenure, 17 company holidays, and two paid volunteer days in the U.S. Feedback suggests the breadth of leave contributes notably to overall benefits satisfaction.

AbbVie Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: North Chicago, IL
56,000 Employees
Year Founded: 2013

What We Do

AbbVie is a global biopharmaceutical company focused on creating medicines and solutions that put impact first — for patients, communities, and our world. We aim to address complex health issues and enhance people's lives through our core therapeutic areas: immunology, oncology, neuroscience, eye care, aesthetics and other areas of unmet need.

Similar Jobs

ServiceNow Logo ServiceNow

Enterprise Account Exec (Armis/Veza)

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Chicago, IL, USA
29000 Employees
114K-165K Annually

ServiceNow Logo ServiceNow

Principal Customer Success Executive - Manufacturing Vertical

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Chicago, IL, USA
29000 Employees

Zoro Logo Zoro

Sr Mgr, Returns & Operations

eCommerce • Information Technology • Retail • Industrial
Hybrid
2 Locations
651 Employees
115K-193K Annually

Samsara Logo Samsara

Third-Party Risk Management Analyst

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
United States
4000 Employees
111K-167K Annually

Similar Companies Hiring

Sailor Health Thumbnail
Healthtech • Social Impact • Telehealth
New York City, NY
20 Employees
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account