Associate Director - Security Strategy & Analytics (Hybrid)

AbbVieMettawa, IL
$141,500 - $268,500Hybrid

About The Position

The Associate Director, Information Security Strategy & Analytics is a senior people leader who partners with the ISRM leadership team and CISO to define and document the function's strategic direction while leading the team responsible for security reporting and analytics. This role translates business priorities, risk insights, and hard security data into insights that drive strategic decisions, while owning the platforms and reporting capabilities that make those strategies measurable. This role has three defining requirements: seasoned security practitioner depth, the ability to communicate strategy and data clearly and credibly to executive audiences, and a proven track record leading technical or analytical teams.

Requirements

  • Bachelor's Degree and 9 years of experience; OR Master's Degree and 8 years of experience; OR PhD and 4 years of experience.
  • Respective years of relevant technical security roles (e.g., security architecture, security engineering, cyber defense).
  • 4+ years of leadership experience, including direct management of senior individual contributors in technical or analytical functions.
  • Demonstrated experience in information security strategy, security program leadership, or security transformation within a large, complex organization.
  • Strong experience developing and/or maintaining complex, cross-functional reporting targeted at executive leadership.
  • Exceptional executive communication and stakeholder engagement skills, with demonstrated ability to present and influence at the CISO and senior leadership level.
  • Exceptional written communication skills, with demonstrated experience producing both executive-level security reporting and strategic documents (roadmaps, decision papers, governance narratives) that inform and influence senior leadership.
  • Strong working knowledge of corporate security domains (e.g., security architecture, AppSec, security operations, GRC, TPRM) and the ability to build trust with the leaders of those programs.
  • Experience with security maturity frameworks such as NIST CSF, including translating findings into strategic priorities and remediation plans.

Nice To Haves

  • 6+ years in relevant technical security roles (e.g., security architecture, security engineering, cyber defense).
  • Experience in a security strategy, chief-of-staff, transformation, or metrics leadership role.
  • Hands-on experience with software development, data engineering, or security engineering.
  • Experience supporting globally distributed teams and stakeholders.
  • Experience developing multi-year security roadmaps, service strategies, operating model materials, or investment cases.

Responsibilities

  • Lead the metrics and reporting team, including hiring, performance management, talent development, and defining the team's portfolio, processes, and ways of working.
  • Partner with security domain leaders to develop impactful cross-functional reporting that gives leadership clear insight into security posture, operational health, and program value.
  • Collaborate with ISRM leadership and portfolio management to define ISRM's strategic direction, including strategic priorities, target state, and multi-year roadmap, grounded in threat and risk insights, key metrics, business priorities, and delivery realities.
  • Own ISRM's strategic narrative by developing and maintaining strategy documentation, executive communications, and leadership presentations that clearly articulate direction and value to stakeholders and partners.
  • Lead the process of translating ISRM's strategic priorities into annual planning inputs, including LRP and capital planning submissions, ensuring investment rationale is clearly tied to execution roadmaps.
  • Own and mature ISRM's data lake and reporting platforms, ensuring they deliver consistent, accurate, and timely data to support leadership decision-making.
  • Own and mature the semi-annual cyber business review process, delivering periodic cybersecurity performance reporting to business executives.
  • Track ISRM's security maturity progress against frameworks such as NIST CSF, ensuring assessment results are reflected in strategic priorities, roadmap inputs, and remediation planning.

Benefits

  • paid time off (vacation, holidays, sick)
  • medical/dental/vision insurance
  • 401(k)
  • long-term incentive programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service