Associate Director - Security Strategy & Analytics (Hybrid)

AbbVie Mettawa, us Full-time Updated 24 August 2026
Pharma

Job description

About AbbVie AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at&#xa0; www.abbvie.com . Follow @abbvie on&#xa0; LinkedIn, &#xa0; Facebook ,&#xa0; Instagram ,&#xa0; X &#xa0;and&#xa0; YouTube. The Associate Director, Information Security Strategy & Analytics is a senior people leader who partners with the ISRM leadership team and CISO to&#xa0;define and document&#xa0;the function's strategic direction while leading&#xa0;the&#xa0;team responsible for&#xa0;security&#xa0;reporting and analytics. This role translates business priorities, risk insights, and&#xa0;hard security data&#xa0;into&#xa0;insights that drive&#xa0;strategic decisions,&#xa0;while owning the platforms and reporting capabilities that make those strategies measurable.&#xa0; This role has&#xa0;three&#xa0;defining requirements: seasoned security practitioner depth, the ability to communicate strategy&#xa0;and data&#xa0;clearly and credibly to executive audiences,&#xa0;and&#xa0;a proven track&#xa0;record&#xa0;leading technical or analytical teams.&#xa0; Responsibilities: Lead the&#xa0;metrics and reporting team, including hiring, performance management, talent development, and defining the team's portfolio, processes, and ways of working.&#xa0; Partner with security domain leaders to develop&#xa0;impactful&#xa0;cross-functional reporting that gives leadership clear insight into security posture, operational health, and program value.&#xa0; Collaborate with ISRM&#xa0;leadership and portfolio management to define ISRM's strategic direction, including strategic priorities, target state, and multi-year roadmap, grounded in threat and risk insights, key metrics, business priorities, and delivery realities.&#xa0; Own ISRM's strategic narrative&#xa0;by&#xa0;developing and&#xa0;maintaining&#xa0;strategy documentation, executive communications, and leadership presentations that clearly articulate direction&#xa0;and value&#xa0;to stakeholders and partners.&#xa0; Lead the process of translating ISRM's strategic priorities into annual planning inputs, including LRP and capital planning submissions, ensuring investment rationale is clearly tied to execution roadmaps.&#xa0; Own and mature ISRM's data lake and reporting platforms, ensuring they deliver consistent,&#xa0;accurate, and&#xa0;timely&#xa0;data to support leadership decision-making.&#xa0; Own and mature the&#xa0;semi-annual&#xa0;cyber business review process, delivering periodic cybersecurity performance reporting to business executives.&#xa0; Track ISRM's security maturity progress against frameworks such as NIST CSF, ensuring assessment&#xa0;results&#xa0;are reflected in strategic priorities, roadmap inputs, and remediation planning.&#xa0; Required: Bachelor's Degree and 9 years of experience; OR Master's Degree and 8 years of experience; OR PhD and 4 years of experience.&#xa0; Respective years of relevant technical security roles (e.g., security architecture, security engineering, cyber defense).&#xa0; 4+ years of&#xa0;leadership experience, including direct management of&#xa0;senior&#xa0;individual contributors in technical or analytical functions.&#xa0; Demonstrated experience in information security strategy, security program leadership, or security transformation within a large, complex organization.&#xa0; Strong experience developing and/or&#xa0;maintaining&#xa0;complex, cross-functional reporting&#xa0;targeted at executive leadership.&#xa0; Exceptional executive communication and stakeholder engagement skills, with&#xa0;demonstrated&#xa0;ability to present and influence at the CISO and senior leadership level.&#xa0; Exceptional written communication skills, with&#xa0;demonstrated&#xa0;experience producing both executive-level security reporting and strategic documents (roadmaps, decision papers, governance narratives) that inform and influence senior leadership.&#xa0; Strong working knowledge of corporate security domains (e.g., security architecture, AppSec, security operations, GRC, TPRM)&#xa0;and the ability to build trust with&#xa0;the&#xa0;leaders of those programs.&#xa0; Experience with security maturity frameworks such as NIST CSF, including translating findings into strategic priorities and remediation plans.&#xa0; Preferred: 6+ years in relevant technical security roles (e.g., security architecture, security engineering, cyber defense).&#xa0; Experience in a security strategy, chief-of-staff, transformation, or&#xa0;metrics&#xa0;leadership role.&#xa0; Hands-on experience with software development, data&#xa0;engineering, or security engineering.&#xa0; Experience supporting globally distributed teams and stakeholders.&#xa0; Experience developing multi-year security roadmaps, service strategies, operating model materials, or investment cases.&#xa0; Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or&#xa0;local law:&#xa0;​ The compensation range described below is the range of possible base pay compensation that the Company&#xa0;believes in&#xa0;good faith it will pay for this role at the time&#xa0;of this posting based on the job grade for this position.&#xa0;Individual&#xa0;compensation paid within this range will depend on many factors including geographic location, and&#xa0;we&#xa0;may&#xa0;ultimately&#xa0;pay&#xa0;more or less than the posted range. This range may be&#xa0;modified&#xa0;in the&#xa0;future.&#xa0;​ We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick),&#xa0;medical/dental/vision&#xa0;insurance and 401(k) to eligible&#xa0;employees.​ This job is eligible to&#xa0;participate&#xa0;in our long-term incentive&#xa0;programs.&#xa0; Note: No amount of pay&#xa0;is considered to be&#xa0;wages or compensation until such amount is earned, vested, and&#xa0;determinable.&#xa0;The amount and availability of any bonus,&#xa0;commission, incentive, benefits, or any other form of&#xa0;compensation and benefits&#xa0;that are allocable to a particular employee&#xa0;remains&#xa0;in the Company's sole and&#xa0;absolute&#xa0;discretion unless and until paid and&#xa0;may be&#xa0;modified&#xa0;at the Company’s sole and absolute discretion, consistent with&#xa0;applicable law.​ AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.&#xa0; US & Puerto Rico only - to learn more, visit&#xa0; https://www.abbvie.com/join-us/equal-employment-opportunity-employer.html US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more: <a href="https://www.abbvie.com

Stand out for this role

NoxPharm tailors your CV to this exact job description — matching the keywords recruiters and ATS systems screen for. Built for pharma & life sciences.

Tailor my CV now — free to try