Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Application Solution Architect (Remote) image - Rise Careers
Job details

Security Application Solution Architect (Remote) - job 3 of 5

Company Description

AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas – immunology, oncology, neuroscience, and eye care – and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on TwitterFacebookInstagramYouTube and LinkedIn

Job Description

The Information Security Application Solution Architect is a member of the Information Security team and works closely with other members of the team to develop and implement a comprehensive information security program.  This includes defining security policies, processes, and standards.  We are seeking a highly skilled architect to collaborate with application development teams, ensuring secure design, coding, configuration, and deployment of technology solutions. The architect will not only focus on common security mechanisms like encryption and authentication but will also dive into application-level risks, session management, securing configuration files, secrets management, and risk identification in system configurations. This role requires a deep understanding of secure application development practices, including the security of API interactions and cloud application environments. 

This position can be virtually from anywhere in the U.S.

Major Duties and Responsibilities: 

  • Work with in-business IT customers, including application architects and engineers to evaluate application software and infrastructure designs, for the purpose of defining/designing application controls aligned with enterprise standards. 
  • Generate detailed application specific security controls design and documentation for each business application under review 
  • Develop re-usable implementation guidance and design patterns based on previous engagements to scale the service 
  • Work with information security leadership to develop strategies and plans to enforce security requirements and address identified risks in the infrastructure and applications. 
  • Establish collaborative working relations with business application architecture staff to ensure that solutions align with security architecture and business strategy. 
  • Support security aspects of business & IT initiatives by assisting in architecture, design, implementation, deployment, and operational transition of innovative & secure technology solutions. 
  • Work with information security leadership to develop strategies and plans to enforce security requirements and address identified risks in the infrastructure. 
  • Research, evaluate, design, test, recommend and plan the implementation of new or updated information security technologies. 
  • Establish collaborative working relations with the Information Technology functions to ensure that solutions align with security architecture and business strategy. 
  • Play an advisory role in application development or acquisition projects to assess security requirements and controls and to ensure that security controls are implemented as planned.  Complete remediation activities and initiate actions to ensure that compliance and security gaps are successfully addressed. 
  • Research and assess new information security threats and recommend remedial actions. 
  • Foster an information security culture through education, skill development, and implementation of effective information security processes and practices. 
  • Understand and adhere to corporate standards regarding applicable Corporate and Divisional Policies, including code of conduct, safety, GxP compliance, data security, and the software development lifecycle 
  • Matures and leverages relationships with affiliates, subsidiaries, vendors, and industry peers in accordance with Abbvie Values, Vendor Management Office, and Purchasing to further the mission, vision and goals of the organization. 

Specifically, we’re looking for experience: 

  • Design the security architecture for applications, ensuring all components meet best practices and regulatory compliance. 
  • Work closely with software development, DevOps, and operations teams to integrate security into the software development lifecycle (SDLC). 
  • Lead efforts in identifying potential threats through application threat modeling and propose design changes to mitigate risks. 
  • Understanding the following concepts is a plus; identity management, federated identity services, incident management, access control, , application vulnerability testing, public key infrastructure, Windows, and Unix/Linux, public cloud infrastructure and services 
  • Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project. 
  • Significant SOX and HIPAA experience in dealing with IT general controls (ITGC), demonstrated through hands-on audit, remediation, and/or computer system validation.   
  • Excellent understanding of current Information Security & Architecture trends and their impact on business strategies including: key Information Security vendors and solutions, audit organizations and influential market research firms. 
  • Excellent communications and influencing skills with strong ability to balance differing stakeholder interests through sound analysis and persuasion. 
  • Strong people skills, collaborative ability to work with IT stakeholders inside and outside of the organization, able to mentor team members with diverse backgrounds. 
  • Ability to formulate network security architecture vision and translate vision into execution. 
  • Thorough understanding of Information Security frameworks and good practices (e.g. ISO, NIST), and proven ability to strike a balance between an academic and pragmatic approach. 

Qualifications

  • Bachelor’s degree and 9 years of experience OR Master’s Degree and 8 years of experience OR PhD and 4 years of experience in information security and/or related functions (IT Audit, Risk Management or Security Architecture).
  • During recent history, candidate must have demonstrated exceptional ability to assess and communicate information security concepts and practices, with both business and IT stakeholders. 
  • Requires in-depth knowledge of the systems development life cycle, client area’s functions and systems, and systems applications programs development technological alternatives. 
  •  Proven implementation of creative technology solutions that advance the business.
  • Relevant work experience is important for successful performance of this role due to the complexity of our global IT Security environment.   
  • Information security qualification such as CISSP is preferred.  
  • Strong understanding of application security principles, including OWASP Top 10, SANS/CWE Top 25, and secure coding practices. 
  • Expertise in secure session management, token handling, and authentication mechanisms (OAuth, SAML, OpenID Connect). 
  • Knowledge of cryptographic practices, encryption protocols, and PKI management. 
  • Experience with containerization (Docker, Kubernetes) and cloud platforms (AWS, Azure, GCP). 
  • Familiarity with tools for code analysis (e.g., SonarQube, Veracode) and vulnerability scanning (e.g., Burp Suite, Nessus). 
  • Understanding of DevSecOps practices, including securing CI/CD pipelines 
  • Self-starter with the ability to work independently and manage multiple projects simultaneously. 
  • Strong problem-solving and analytical skills with the ability to identify security risks and propose effective solutions. 
  • Ability to work collaboratively in cross-functional teams and influence technical teams towards secure implementations. 

Additional Information

Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law: ​

  • The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future.​

  • We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.​

  • This job is eligible to participate in our short-term incentive programs. ​

  • This job is eligible to participate in our long-term incentive programs​

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company’s sole and absolute discretion, consistent with applicable law. 

AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives, serving our community and embracing diversity and inclusion.  It is AbbVie’s policy to employ qualified persons of the greatest ability without discrimination against any employee or applicant for employment because of race, color, religion, national origin, age, sex (including pregnancy), physical or mental disability, medical condition, genetic information, gender identity or expression, sexual orientation, marital status, status as a protected veteran, or any other legally protected group status.

US & Puerto Rico only - to learn more, visit https://www.abbvie.com/join-us/equal-employment-opportunity-employer.html 

US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:

https://www.abbvie.com/join-us/reasonable-accommodations.html

AbbVie Glassdoor Company Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
AbbVie DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of AbbVie
AbbVie CEO photo
Richard A. Gonzalez
Approve of CEO
What You Should Know About Security Application Solution Architect (Remote), AbbVie

The Security Application Solution Architect role at AbbVie is an exciting opportunity for technology enthusiasts looking to make a real impact in information security. As a part of our dedicated Information Security team, you'll be diving deep into developing robust policies and standards to protect valuable data. This position is fully remote, allowing you to work flexibly from anywhere in the U.S. Your primary responsibility will involve close collaboration with application development teams to ensure that our technological solutions are not just functional but also secure. You'll be focusing on various essential aspects of application security, including encryption, authentication, and risk assessment in system configurations. What sets this role apart is the chance to lead the charge in identifying potential application threats while designing effective solutions to mitigate those risks. We’re looking for someone with extensive experience in secure application development practices and a solid understanding of the modern security landscape. Your expertise will directly influence our applications’ design, coding, and deployment processes. Additionally, you’ll be responsible for researching and implementing innovative technologies to stay ahead of emerging threats. If you’re passionate about making technology safe and secure, this position at AbbVie could be your next career adventure!

Frequently Asked Questions (FAQs) for Security Application Solution Architect (Remote) Role at AbbVie
What are the primary responsibilities of a Security Application Solution Architect at AbbVie?

A Security Application Solution Architect at AbbVie is responsible for developing and implementing a comprehensive information security program. You will collaborate with application development teams, design security controls, assess risks, and ensure that all applications meet established security standards.

Join Rise to see the full answer
What qualifications do I need to apply for the Security Application Solution Architect position at AbbVie?

To be considered for the Security Application Solution Architect role at AbbVie, candidates typically need a Bachelor’s degree with 9 years of experience or a Master's degree with 8 years of experience in information security. Relevant certifications, such as CISSP, are also preferred.

Join Rise to see the full answer
How does AbbVie support the career development of a Security Application Solution Architect?

AbbVie encourages the professional growth of its employees, including Security Application Solution Architects, through a range of programs. These include ongoing education initiatives, workshops on the latest security technologies, and the chance to work on innovative projects across departments.

Join Rise to see the full answer
What kind of projects will a Security Application Solution Architect handle at AbbVie?

As a Security Application Solution Architect at AbbVie, you'll work on projects that involve evaluating application software for security compliance, designing application security controls, and collaborating with cross-functional teams to implement innovative security technologies and solutions.

Join Rise to see the full answer
Is experience with cloud security important for the Security Application Solution Architect role at AbbVie?

Yes, experience with cloud security is crucial for the Security Application Solution Architect position at AbbVie. The role involves securing cloud application environments, and familiarity with various cloud platforms like AWS, Azure, and GCP will be beneficial.

Join Rise to see the full answer
Common Interview Questions for Security Application Solution Architect (Remote)
What is your approach to application security in the software development lifecycle?

In addressing this question, emphasize the importance of integrating security practices throughout the software development lifecycle. Discuss specific methodologies, like DevSecOps, that promote collaboration between development and security teams to identify vulnerabilities early in the process.

Join Rise to see the full answer
Can you explain the OWASP Top 10 and its significance?

The OWASP Top 10 is a critical resource that lists the most common security risks in web applications. As a Security Application Solution Architect, it's important to understand these risks, such as injection flaws and cross-site scripting, to implement effective countermeasures.

Join Rise to see the full answer
How would you handle a security breach in an application you designed?

Discuss the importance of having an incident response plan in place. Emphasize your ability to conduct a thorough investigation, contain the breach, and implement corrective actions while communicating effectively with stakeholders throughout the process.

Join Rise to see the full answer
Describe your experience with threat modeling.

Threat modeling is essential in identifying potential security threats and vulnerabilities in applications. Share specific frameworks you’ve used, such as STRIDE or DREAD, and provide examples of how threat modeling informed the design of secure applications.

Join Rise to see the full answer
What tools do you recommend for code analysis and why?

Highlight tools like SonarQube for static code analysis and Veracode for dynamic analysis. Discuss their strengths in identifying vulnerabilities and ensuring adherence to coding standards, which are crucial in enhancing application security.

Join Rise to see the full answer
How do you keep up with the latest security trends and threats?

Share your methods for staying informed, such as subscribing to industry-leading publications, participating in forums, attending conferences, and taking relevant courses. Emphasize the importance of continuous learning in the rapidly evolving field of information security.

Join Rise to see the full answer
What is your experience with incident management and reporting?

Discuss your hands-on experience in managing security incidents, including the steps you took to investigate, respond, and remediate issues. Stress the importance of documentation and transparent reporting for continuous improvement.

Join Rise to see the full answer
Can you provide an example of a successful security initiative you've led?

Elaborate on a past project where you developed or improved security practices. Discuss the challenges faced, the strategies implemented, and the measurable impact the initiative had on the organization’s security posture.

Join Rise to see the full answer
What role does collaboration play in your work as a Security Application Solution Architect?

Collaboration is key! Explain how effectively working with development, operations, and security teams enhances overall security measures and ensures compliance. Share how you build relationships to encourage a security-first culture.

Join Rise to see the full answer
How do you approach educating teams about security best practices?

Educating teams about security best practices is vital. Describe how you develop training materials or workshops, facilitate knowledge sharing, and customize content to suit different levels of understanding within the organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User

Join AbbVie as a Manager for Procurement Communications and Integrated Management to enhance internal and external engagement strategies.

Photo of the Rise User
Posted 5 days ago

Drive creative innovation and strategic communication at AbbVie as a Director of Creative Communications while working closely with agency leadership and brand teams.

Photo of the Rise User
KIHOMAC Hybrid No location specified
Posted 4 days ago

A skilled Systems Administrator is needed to maintain and optimize our IT systems and provide top-tier support.

Photo of the Rise User
Posted 13 days ago
Mission Driven
Social Impact Driven
Passion for Exploration
Reward & Recognition

Join SpaceX as an Executive IT Support Specialist and deliver exceptional IT support to our executive team.

Photo of the Rise User
Posted 13 days ago

Invesco seeks a Senior AV Support Engineer to ensure seamless audiovisual experiences for clients and stakeholders in a dynamic corporate environment.

Trident Consulting Inc Hybrid San Francisco, California, United States
Posted 5 days ago

Join Trident Consulting as a Cassandra Admin and leverage your expertise in cloud technologies while working in a hybrid environment in San Francisco.

Photo of the Rise User
Amazon Web Services Hybrid US, Santa Clara County, CA; California, East Palo Alto, CA
Posted 2 days ago
Inclusive & Diverse
Diversity of Opinions
Dare to be Different
Growth & Learning

Join AWS as a Senior GenAI Solutions Architect to empower startups in the life sciences sector with cutting-edge generative AI solutions.

Photo of the Rise User

Join Crypto.com as a Backend Operations Support Engineer and play a key role in ensuring the reliability of our Card project while working in a flexible and innovative environment.

Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Customer-Centric
Social Impact Driven
Rapid Growth
Maternity Leave
Paternity Leave
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Paid Holidays
Paid Time-Off

Join Samsara as a Senior Security Operations Engineer, where you'll play a crucial role in incident response and cybersecurity operations.

Posted 2 days ago

Join WSU as an Information Systems Coordinator to enhance agricultural decision-making through high-quality weather data management.

AbbVie’s mission is to discover and deliver innovative medicines that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people’s lives across several key therapeutic areas: i...

2879 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 12, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
C
Someone from OH, Middletown just viewed Operations Analyst at Core Specialty Insurance
Photo of the Rise User
12 people applied to IT Intern - Seasonal at Carowinds
Photo of the Rise User
47 people applied to IT Intern at USAA
A
Someone from OH, Strongsville just viewed Graphic Design Intern at Anvil NorthWest
W
Someone from OH, Uhrichsville just viewed Director Operations at WVUMedicine
Photo of the Rise User
Someone from OH, Cincinnati just viewed Game Director, Scripps Sports at The E.W. Scripps Company
Photo of the Rise User
Someone from OH, Lorain just viewed 3D Modeler / Graphic Designer - Freelance at Twine
o
Someone from OH, Oxford just viewed Digital Media & Marketing Student Intern at osu
Photo of the Rise User
8 people applied to Junior Security Engineer at Epic
Photo of the Rise User
Someone from OH, Beachwood just viewed Dispensary Tech at Ayr Wellness
Photo of the Rise User
56 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Springfield just viewed Front Desk Clerk at Marriott International
L
Someone from OH, Akron just viewed Junior Graphic Designer at Little Spoon
Photo of the Rise User
Someone from OH, Columbus just viewed Licensing and Regulatory Compliance Analyst at Sportradar
Photo of the Rise User
Someone from OH, Mansfield just viewed US_EN_Operations_Warehouse Loader (Part Time) at Red Bull
Photo of the Rise User
Someone from OH, Dublin just viewed Salesforce Administrator at Multiverse
Photo of the Rise User
Someone from OH, Pickerington just viewed Salesforce Solution Analyst at GoodLeap
S
Someone from OH, Pickerington just viewed Salesforce Project Manager at Studio Science
Photo of the Rise User
Someone from OH, Dayton just viewed Medical Receptionist at LifeStance Health
Photo of the Rise User
13 people applied to SOC Analyst at Prosegur
Photo of the Rise User
59 people applied to Cyber Crime Analyst at TEKsystems
Photo of the Rise User
12 people applied to IT Support Intern at SoundCloud
C
Someone from OH, Massillon just viewed RN Ambulatory - Outpatient Infusion Therapy at CCF
Photo of the Rise User
Someone from OH, Columbus just viewed HR Business Partner (Maternity Cover) at Marshmallow
Photo of the Rise User
Someone from OH, Columbus just viewed Community Outreach Canvasser $24/Hr at Confidential
Photo of the Rise User
Someone from OH, Cincinnati just viewed Email Marketing Coordinator at Creative Circle
Photo of the Rise User
Someone from OH, Columbus just viewed UX Researcher, Amazon Autos at Amazon
Photo of the Rise User
Someone from OH, Cincinnati just viewed AI training and enablement at Writer