Full-Time

Application & Platform Security Architect

AbbVie

AbbVie

10,001+ employees

Global biopharmaceutical company developing medicines

Compensation Overview

$141.5k - $268.5k/yr

Austin, TX, USA

Remote

Bachelor's, Master's, PhD

Category
IT & Security
Required Skills
Kubernetes
Microsoft Azure
SonarQube
Threat modeling
Docker
Microservices
SAML
AWS
Risk Management
Cryptography
DevOps
Serverless
OAuth
Google Cloud Platform

Get referred to AbbVie

See people who can refer or advise you

Requirements
  • Bachelor19s degree and 9 years of experience OR Masters Degree and 8 years OR PhD and 4 years of experience in information security and/or related functions (IT Audit, Risk Management or Security Architecture)
  • Must have demonstrated exceptional ability to assess and communicate information security concepts and practices, with both business and IT stakeholders.
  • Requires in-depth knowledge of the systems development life cycle, client areas functions and systems, and systems applications programs development technological alternatives.
  • Proven implementation of creative technology solutions that advance the business.
  • Relevant work experience is important for successful performance of this role due to the complexity of our global IT Security environment.
  • Strong understanding of application security principles, including OWASP Top 10, SANS/CWE Top 25, and secure coding practices.
  • Expertise in secure session management, token handling, and authentication mechanisms (OAuth, SAML, OpenID Connect).
  • Knowledge of cryptographic practices, encryption protocols, and PKI management.
  • Experience with containerization (Docker, Kubernetes) and cloud platforms (AWS, Azure, GCP).
  • Familiarity with tools for code analysis (e.g., SonarQube, Veracode) and vulnerability scanning (e.g., Burp Suite, Nessus).
  • Understanding of DevSecOps practices, including securing CI/CD pipelines.
  • Self-starter with the ability to work independently and manage multiple projects simultaneously.
  • Strong problem-solving and analytical skills with the ability to identify security risks and propose effective solutions.
  • Ability to work collaboratively in cross-functional teams and influence technical teams towards secure implementations.
  • Understanding of cloud computing principles, including virtualization, containerization, microservices, and serverless computing; Risk Management, container security, Kubernetes security, IAM security, network security, auditing, encryption, secrets management and data protection, securing CI/CD.
  • Advanced knowledge of Identity Security concepts, least-privilege, separation of duties, and Zero trust design principles.
  • Understanding of federation technologies (WS-Fed, OAuth, OpenID connect, SAML ) and of encryption technologies (encryption types and protocols/standards).
  • Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project.
  • Significant SOX and HIPAA experience in dealing with IT general controls (ITGC), demonstrated through hands-on audit, remediation, and/or computer system validation.
  • Excellent understanding of current Information Security & Architecture trends and their impact on business strategies including key Information Security vendors and solutions, audit organizations, and influential market research firms.
  • Excellent communications and influencing skills with strong ability to balance differing stakeholder interests through sound analysis and persuasion.
  • Strong people skills, collaborative ability to work with IT stakeholders inside and outside of the organization, able to mentor team members with diverse backgrounds.
  • Thorough understanding of Information Security frameworks and good practices (e.g., ISO, NIST), and proven ability to strike a balance between an academic and pragmatic approach.
Responsibilities
  • Define reusable security architecture patterns and guardrails to enable consistent, secure implementation across high-risk business applications.
  • Drive secure-by-design initiatives by integrating security considerations early in the software architecture lifecycle and influencing enterprise architecture direction.
  • Represent security architecture in design authority boards and technical review councils, advocating for risk-based security controls.
  • Work with in-business IT customers, including application architects and engineers to evaluate application software and infrastructure designs, for the purpose of defining/designing application controls aligned with enterprise standards.
  • Define application-specific security control architectures and produce design artifacts to guide secure implementation of business-critical systems.
  • Develop re-usable implementation guidance and design patterns based on previous engagements to scale the service.
  • Work with information security leadership to develop strategies and plans to enforce security requirements and address identified risks in the infrastructure and applications.
  • Act as a security architecture liaison to IT delivery and engineering teams, embedding security principles into technical delivery and architecture review forums.
  • Support security aspects of business & IT initiatives by assisting in architecture, design, implementation, deployment, and operational transition of innovative & secure technology solutions.
  • Work with information security leadership to develop strategies and plans to enforce security requirements and address identified risks in the infrastructure.
  • Research, evaluate, design, test, recommend and plan the implementation of new or updated information security technologies.
  • Establish collaborative working relations with the Information Technology functions to ensure that solutions align with security architecture and business strategy.
  • Play an advisory role in application development or acquisition projects to assess security requirements and controls and to ensure that security controls are implemented as planned. Complete remediation activities and initiate actions to ensure that compliance and security gaps are successfully addressed.
  • Research and assess new information security threats and recommend remedial actions.
  • Foster an information security culture through education, skill development, and implementation of effective information security processes and practices.
  • Understand and adhere to corporate standards regarding applicable Corporate and Divisional Policies, including code of conduct, safety, GxP compliance, data security, and the software development lifecycle.
  • Matures and leverages relationships with affiliates, subsidiaries, vendors, and industry peers in accordance with AbbVie Values, Vendor Management Office, and Purchasing to further the mission, vision, and goals of the organization.
  • Design the security architecture for applications, ensuring all components meet best practices and regulatory compliance.
  • Work closely with software development, DevOps, and operations teams to integrate security into the software development lifecycle (SDLC).
  • Lead efforts in identifying potential threats through application threat modeling and propose design changes to mitigate risks.
Desired Qualifications
  • Information security qualifications such as CISSP are preferred but not required.
  • Understanding the following concepts is a plus; identity management, federated identity services, incident management, access control, application vulnerability testing, public key infrastructure, Windows, and Unix/Linux, public cloud infrastructure, and services.

AbbVie is a global biopharmaceutical company that develops and sells medicines to treat serious health conditions. Its portfolio spans immunology, oncology, virology, neuroscience, and aesthetics, with products designed to modulate the immune system, target disease pathways, or support medical aesthetics. AbbVie compounds its products through a heavy emphasis on research and development, investing billions to build a steady pipeline of new therapies. Its medicines are brought to market by selling to healthcare providers, hospitals, and clinics, and in some cases directly to patients via prescriptions. The company differentiates itself through a wide, globally distributed product line, substantial R&D investment, and a commitment to sustainability and patient care, including science-based targets. AbbVie’s goal is to improve patient outcomes by delivering effective treatments for unmet medical needs while pursuing long-term, responsible growth across healthcare markets.

Company Size

10,001+

Company Stage

IPO

Headquarters

North Chicago, Illinois

Founded

1888

Get referred to AbbVie

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • AbbVie raised 2026 revenue guidance to $67.6 billion after Q2 2026.
  • FDA review of SKYRIZI Crohn's subcutaneous induction targets a late-2026 approval.
  • WCLC 2026 data showed ABBV-1480 90% response in squamous NSCLC.

What critics are saying

  • HUMIRA revenue fell 36.1% in Q2 2026 as biosimilars keep taking share.
  • The Apogee deal cuts 2026 EPS by $0.14 and adds debt financing.
  • Epcoritamab missed the July 23, 2026 DLBCL endpoint, threatening future B-cell franchise growth.

What makes AbbVie unique

  • SKYRIZI and RINVOQ drove $8.8 billion of Q2 2026 immunology revenue.
  • Botox Cosmetic and Juvederm generated $973 million in Q2 2026 aesthetics sales.
  • Apogee purchase adds late-stage IL-13 and TSLP programs for eczema and asthma.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Flexible Work Hours

Professional Development Budget

Growth & Insights and Company News

Headcount

6 month growth

3%

1 year growth

3%

2 year growth

3%
Yahoo Finance
Aug 21st, 2026
AbbVie stock moves independently from market with 0.22 correlation driven by immunology drugs

AbbVie stock shows a correlation of just 0.22 to the S&P 500 over five years, meaning most of its movements stem from company-specific factors rather than broader market trends. The pharmaceutical firm's immunology segment generated nearly $8.8 billion of its $17 billion in second-quarter 2026 revenue, led by SKYRIZI at $5.5 billion and RINVOQ at over $2.5 billion. These treatments for chronic diseases have prices negotiated with payers, not consumers. AbbVie has delivered an annualised return of 21.5% with 23.5% volatility over five years, compared to the S&P 500's 12.9% return at 17.2% volatility. The company converts 28.3% of revenue into free cash flow, nearly double the S&P 500 median of 14.5%.

Grafa
Aug 21st, 2026
AbbVie reports 90% response in lung cancer study.

AbbVie reports 90% response in lung cancer study. * AbbVie reported a 90% objective response rate for ABBV-1480 plus platinum chemotherapy in squamous advanced NSCLC at the selected 10 mg/kg dose. * The same dose produced a 75.9% response rate in non-squamous disease and was selected as the recommended Phase 3 dose. * AbbVie will also present data for Temab-A and ABBV-706 across NSCLC and small cell lung cancer at the 2026 World Conference on Lung Cancer. AbbVie (NYSE:ABBV) reported Phase 1b lung cancer data showing objective response rates of 90% in squamous and 75.9% in non-squamous advanced NSCLC with ABBV-1480 plus platinum chemotherapy. At the 10 mg/kg dose, 27 of 30 patients with squamous disease and 22 of 29 with non-squamous disease achieved objective responses, according to the company. AbbVie said the findings support further evaluation of ABBV-1480 in advanced NSCLC and selected the 10 mg/kg regimen as the recommended Phase 3 dose. The company will present additional clinical results for telisotuzumab adizutecan, or Temab-A, in first-line non-squamous and EGFR-mutated NSCLC at the 2026 World Conference on Lung Cancer. AbbVie will also report ABBV-706 data in relapsed or refractory small cell lung cancer, including new safety analyses covering 240 patients. The company's conference presentations include real-world evidence evaluating SEZ6 as a potential therapeutic target in small cell lung cancer. The updates form part of AbbVie's clinical development program across non-small cell and small cell lung cancers, with several investigational therapies being evaluated across different treatment settings. Frequently asked questions. ABBV signals

Yahoo Finance
Aug 19th, 2026
AbbVie stock eyes breakout as Skyrizi dosing decision could unlock $24.5B revenue growth

AbbVie stock has returned 24.5% over the past three months, trading near its 52-week high. The pharmaceutical company's growth hinges on a pending regulatory decision for SKYRIZI, an immunology treatment that generates nearly a third of guided revenue. SKYRIZI sold $5.5 billion in Q2 2026, up 24% operationally. AbbVie guides the drug to $21.7 billion for 2026 against total company revenue of approximately $67.6 billion. The company has raised its 2026 guidance twice by $600 million combined. A subcutaneous induction option for Crohn's disease awaits regulatory approval this fall. Management expects the new dosing method to meaningfully accelerate SKYRIZI sales, though the commercial impact won't materialise until early 2027 due to contract timelines. Clinical trial results showed endoscopic response and remission rates 25 points above placebo.

BBC
Aug 19th, 2026
UK's Smith+Nephew CFO John Rogers to step down for external role.

UK's Smith+Nephew CFO John Rogers to step down for external role. August 19, 2026 The departure follows Smith+Nephew's decision weeks ago to cut its annual revenue growth forecast after second-quarter sales missed expectations due to weak U.S. knee and hip implant demand and pressure on skin substitute pricing International News via Reuters: Smith+Nephew said on Wednesday its finance chief John Rogers would step down at the end of September to take up an external position in the United States, ending his roughly two-and-a-half-year tenure with the medical products company. Here are some more details: - The departure follows Smith+Nephew's decision weeks ago to cut its annual revenue growth forecast after second-quarter sales missed expectations due to weak U.S. knee and hip implant demand and pressure on skin substitute pricing. - Smith+Nephew said it had appointed Senior Vice President Finance and Group Controller Pierre Palassian as interim chief financial officer until a permanent replacement was appointed. - Palassian, who joined Smith+Nephew in 2017, previously held senior roles at AbbVie and Abbott Laboratories. - Rogers, who took up the CFO role in early 2024, had relocated to the United States in 2025 for operational efficiencies. - Shares in the FTSE 100 company have gained nearly 14% during Rogers' tenure as CFO. - Smith+Nephew said Rogers would receive no severance payment, and that his outstanding incentive and share awards would lapse on September 30 under leaver rules. Reporting by Neeshita Beura in Bengaluru; Editing by Subhranshu Sahu - Advertisement - August 19, 2026 - Advertisement -

Yahoo Finance
Aug 15th, 2026
AbbVie shows strong cash flow margin of 34.8% but faces tepid revenue growth

AbbVie, the biopharmaceutical company spun off from Abbott Laboratories in 2013, has risen 9.7% to $249.64 per share over the past six months. The company generates $64.39 billion in revenue over the past 12 months, benefiting from significant economies of scale in its operations. AbbVie's free cash flow margin averaged 34.8% over the last five years, amongst the best in the healthcare sector. This strong cash generation enables reinvestment and capital returns to investors. However, the company's five-year annualised revenue growth of 3.7% remains tepid compared to sector peers. Despite this weakness, AbbVie's shares trade at 16.3 times forward price-to-earnings ratio. The company develops and markets medications for autoimmune diseases, cancer, neurological disorders, and other complex health conditions.