Privileged Access Management - Platform Engineering Lead
- Full-time
- Salary Min: 109500
- Salary Max: 208500
- Workday Global Grade: 18
- Compensation: USD 109500 - USD 208500 - yearly
Company Description
About AbbVie
AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on LinkedIn, Facebook, Instagram, X and YouTube.
Job Description
This position is part of AbbVie's Information Security & Risk Management (ISRM) team within Business Technology Solutions. The Identity & Access Management (IAM) team is responsible for the development, implementation, and oversight of the organization's IAM strategy, ensuring secure, efficient, and compliant access to systems and data. The PAM function is a cornerstone of this program, protecting the most sensitive accounts and credentials across the enterprise. Our team operates at the cutting edge of identity security—managing not just legacy password and credential vaulting, but modern concepts including cloud entitlements, secrets management, just-in-time access, and controls for non-human and AI agentic identities.
Take the next step in your career with an organization that strategically invests in the long-term health of the company, its technology and its people. The AbbVie Business Technology Solutions (BTS) team shapes the digital transformation necessary for our treatments to positively impact patients' lives. In the role of Privileged Access Management – Platform Lead, you'll tackle complex, high-stakes challenges at the intersection of security engineering and enterprise strategy—owning and evolving a critical platform while anticipating where privileged access management is heading in a world of cloud, AI, and agentic automation.
In this role, you'll be responsible for:
- Owning and executing the PAM product roadmap, balancing current operational needs with longer-term strategic goals for privileged access and secrets management across the enterprise
- Proactively identifying and prioritizing use cases for human and non-human privileged access—including service accounts, non-human identities (NHI), agentic/automated workflows, and secure secrets management for cloud and DevOps environments
- Anticipating evolving business, security, and technology trends—including AI-driven and agentic access scenarios—and translating them into actionable product features, policies, and program initiatives
- Overseeing the design, optimization, and engineering of workflows for privileged account vaulting, lifecycle management, just-in-time (JIT) access, session monitoring, and automated credential rotation across hybrid environments
- Driving integration of PAM with related platforms such as IAM, IGA, SIEM, cloud providers (AWS, Azure, GCP), and CI/CD pipelines to support secure automation and enterprise agility
- Leading, mentoring, and developing a high-performing PAM engineering team, fostering a culture of innovation and continuous improvement in a rapidly evolving threat landscape
- Monitoring PAM platform maturity, industry trends, and emerging standards to continuously sharpen the program's strategic direction
- Serving as the internal subject matter expert (SME) for privileged access—advising security, architecture, compliance, and business teams on PAM capabilities, gaps, and best practices
- Responding to and remediating audit findings related to privileged access controls and secrets management
- Managing budget planning, resource allocation, and vendor relationships for all PAM technologies and solutions
- Developing and maintaining documentation, standards, and operating procedures that make PAM understandable and adoptable across the organization
Qualifications
- Bachelor's degree with 7 years of experience, OR Masters Degree and 6 years of experience OR PhD and 2 years of experience
- Hands-on experience implementing and operating enterprise Privileged Access Management solutions
- Proven product ownership or program management experience with enterprise PAM platforms (e.g., BeyondTrust)
- Deep technical knowledge of privileged account governance, credential vaulting, session management, and secrets management across hybrid on-premises and cloud environments
- Strong engineering experience integrating PAM with IAM/IGA, directory services, SIEM, cloud platforms, and DevOps ecosystems
- Demonstrated expertise in non-human identity (NHI) controls, agentic access, just-in-time (JIT) access, and privileged access automation
- Ability to translate complex business, security, and regulatory requirements—including emerging AI-driven scenarios—into actionable platform features and roadmap priorities
- Effective stakeholder management and communication skills across both technical and executive audiences
- Proven ability to lead teams, drive continuous improvement, and manage strategic transformation in a fast-moving threat environment
Beneficial:
- Familiarity with cloud-native IAM and secrets management services (e.g., AWS Secrets Manager, Azure Key Vault, HashiCorp Vault)
- Experience with scripting and automation (e.g., PowerShell, Python) to support PAM workflow engineering
- Knowledge of compliance frameworks and audit requirements related to privileged access (SOX, PCI-DSS, HIPAA, NIST)
- Industry certifications such as CISSP, CyberArk Defender/Sentry, BeyondTrust certified professional, or equivalent
- Experience in the pharmaceutical or life sciences industry
Tools and skills you will use in this role:
- Enterprise PAM platforms: BeyondTrust
- Credential vaulting, secrets management, session monitoring, and JIT access tooling
- Cloud platforms and IAM capabilities (AWS, Azure, GCP), including cloud-native secrets and entitlement management
- DevOps and CI/CD ecosystem integrations (e.g., Jenkins, GitHub Actions, Azure DevOps)
- Scripting and automation (PowerShell, Python)
- Non-human identity and agentic access controls and frameworks
- Audit and compliance reporting for privileged access
- Product/program management methodologies
- Strong analytical, problem-solving, and executive communication skills
Additional Information
Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:
- The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future.
- We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.
- This job is eligible to participate in our long-term incentive programs.
Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company’s sole and absolute discretion, consistent with applicable law.
AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more, visit https://www.abbvie.com/join-us/equal-employment-opportunity-employer.html
US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:
https://www.abbvie.com/join-us/reasonable-accommodations.html