waypointjobs

AbbVie

Supervisor, Global Technology Audit

chicago, IL

Check who can apply and the requirements below before continuing.

About this opportunity

AbbVie lists this Supervisor, Global Technology Audit opportunity in chicago, Illinois. Review the employer’s description below for duties, qualifications and application requirements.

Job description

Company Description

nAbout AbbVie

nAbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at Follow @abbvie on LinkedIn, ( Facebook, Instagram ( , X ( and YouTube. (

nJob Description

nSummary

nThe Supervisor, Global Technology Audit serves as the Internal Audit subject matter expert for cybersecurity risk, security architecture, threat management, and technical security controls.

nThe incumbent is responsible for executing complex technology audit work with a high degree of technical independence and expert-level domain judgement. This role leads defined audit components as Functional Coordinator (FC) and may serve as Overall Coordinator (OC) for less complex engagements, applying threat-informed, risk-based thinking to assess control design and operating effectiveness across cybersecurity, infrastructure, cloud, identity, and emerging technology domains. The Supervisor functions as the technical subject matter resource on assigned engagements capable of independently evaluating security architecture and interpreting technical artifacts. This role coaches Senior Auditors on technical rigor and professional skepticism, and contributes to audit methodology development, technical testing procedure design, and continuous improvement of audit quality.

nCandidates are expected to develop and sustain deep practitioner-level expertise in one or more high-risk technology domains, providing technical continuity, audit program ownership, and domain leadership over a longer tenure in the function. The incumbent partners with Cybersecurity, Infrastructure, Cloud Engineering, Digital Technology, Compliance, and Business stakeholders to assess cybersecurity risks, evaluate control effectiveness, and provide independent assurance over the organization's security posture.

nResponsibilities

nAudit Leadership:

nnnLead end-to-end execution of complex technology audit engagements as Functional Coordinator (FC), with full accountability for scoping, fieldwork, evidence assessment, and findings development in cybersecurity, infrastructure, cloud, and IT general controls domains.

n

nnServe as the technical subject matter resource for assigned anchor domains, independently evaluating control design and operating effectiveness in areas including cloud security architecture, identity and access management, vulnerability and patch management, network security, endpoint detection and response, and privileged access governance.

n

n nCybersecurity Assessments:

nnnLead complex cybersecurity audits, assessments, and advisory reviews across enterprise technology environments.

n

nnDevelop risk assessments, audit programs, testing strategies, and report deliverables for cybersecurity-related engagements.

n

nnIndependently evaluate the design and operating effectiveness of technical, administrative, and detective security controls.

n

nnIdentify emerging cyber risks, control deficiencies, and opportunities to strengthen the organization's control environment.

n

n nTechnical Security Assessments:

nnnReview and assess:

n

nnSecurity architecture and infrastructure controls

n

nnIdentity and Access Management (IAM)

n

nnPrivileged Access Management (PAM)

n

nnCloud security configurations and governance

n

nnNetwork security and segmentation

n

nnEndpoint protection controls

n

nnVulnerability management programs

n

nnSecurity monitoring and threat detection capabilities

n

nnIncident response and cyber resilience processes

n

nnAssess technical evidence including architecture diagrams, firewall rules, IAM configurations, SIEM detections, vulnerability scan results, cloud security configurations, and security control implementations.

n

n nThreat-Informed Assurance:

nnnUtilize MITRE ATT&CK and industry frameworks to evaluate preventive and detective control coverage against relevant threat tactics, techniques, and procedures (TTPs).

n

nnAssess the effectiveness of security controls against the enterprise threat landscape and risk profile.

n

nnEvaluate detection, response, and recovery capabilities across key cyber threat scenarios.

n

n nGovernance & Risk Management:

nnnEvaluate cybersecurity governance frameworks, policies, standards, and oversight mechanisms.

n

nnAssess enterprise cybersecurity risk management and third-party cybersecurity risk practices.

n

nnEvaluate alignment with industry frameworks and regulatory requirements.

n

n nAdvisory & Strategic Support:

nnnProvide cybersecurity expertise during technology transformation, cloud adoption, and emerging technology initiatives.

n

nnMonitor evolving cyber threats, attack techniques, regulatory developments, and industry best practices.

n

nnSupport development of Internal Audit methodologies related to cybersecurity assurance and technical risk assessments.

n

n nStakeholder Engagement & Leadership:

nnnPresent audit results, risk themes, and recommendations to management and senior leadership.

n

nnServe as a trusted advisor while maintaining Internal Audit independence.

n

nnMentor audit staff and contribute to development of technical cybersecurity audit capabilities across the Internal Audit function.

n

n nQualifications

nRequired Qualifications

nnnBachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Systems, Information Security, or related field from an accredited university.

n

nn5+ years of experience in cybersecurity audits, technology risk, IT audit, or cloud audit.

n

nnCISSP, CISM, or CISA

n

nnStrong written and verbal communication skills with the ability to translate complex technical risks into business-focused recommendations.

n

nnExperience presenting findings and recommendations to senior management.

n

n nPreferred Qualifications

nnnCCSP, AWS Security Specialty, or CRISC with demonstrated technical specialization

n

nnStrong understanding of:

n

nnSecurity architecture and engineering

n

nnNetwork security

n

nnCloud security

n

nnIdentity and Access Management

n

nnSecurity monitoring and incident response

n

nnVulnerability management

n

nnAbility to independently analyze technical security artifacts and determine control design and operating effectiveness without reliance on auditee interpretation.

n

nnWorking knowledge of MITRE ATT&CK and threat-informed control assessments.

n

nnExperience leading audits, risk assessments, or technical security reviews involving multiple stakeholders.

n

nnExperience auditing cloud environments including Azure, AWS, or GCP.

n

nnExperience assessing security operations, threat detection, incident response, or cyber resilience programs.

n

nnKnowledge of NIST CSF, NIST 800-series publications, CIS Controls, ISO 27001, and other cybersecurity frameworks.

n

nnExperience supporting or leading assessments involving AI, cloud, third-party risk management, or emerging technology risks.

n

n nAdditional Information

n​Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law: ​

nnnThe compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future. ​

n

nnWe offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.​

n

nnThis job is eligible to participate in our short-term incentive programs. ​

n

n nNote: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company's sole and absolute discretion, consistent with applicable law. ​

nAbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community.  Equal Opportunity Employer/Veterans/Disabled.

nUS & Puerto Rico only - to learn more, visit

nUS & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:

n nSalary: $96,500

Worksite address

chicago, IL, 60290, US

Who can apply

Review the original listing for work authorization, qualifications and employer requirements.

Ready for your next step?Apply on the official website
Apply on WhatJobs ↗

Explore related searches

Current related jobs

Intermountain Health

WhatJobs

Rotor Wing Pilot in Command

page, AZ

Salary not specified

Job Description: As an Air Ambulance Pilot, you are the critical link in delivering rapid, life-saving transportation for patients in need. You…

Listing review due 2026-10-06View job

Home Instead

WhatJobs

Caregiver - No Experience Needed

oakdale, PA

See pay details in description

Start a meaningful career helping seniors in your community. At Home Instead , we’ll give you the tools, training, and support you need to succee…

Listing review due 2026-10-06View job

FOX Rehabilitation

WhatJobs

Speech Language Pathologist - Clarinda, IA

clarinda, IA

Salary not specified

Speech Language Pathologist – Clarinda, IA   FOX Rehabilitation is growing in Clarinda, IA, and surrounding locations, and we’re looking for pa…

Listing review due 2026-10-06View job

FOX Rehabilitation

WhatJobs

Speech Language Pathologist - Oakville, MO

sappington, MO

Salary not specified

Speech Language Pathologist – Oakville, MO FOX Rehabilitation is growing in Oakville, MO, and we’re looking for passionate, licensed Speech L…

Listing review due 2026-10-06View job

FOX Rehabilitation

WhatJobs

Speech Language Pathologist - Springfield, IL

chatham, IL

Salary not specified

Speech Language Pathologist – Springfield, IL   FOX Rehabilitation is growing in Springfield, IL, and surrounding locations, and we’re looking …

Listing review due 2026-10-06View job