We are looking for a hands-on Associate Director to grow and mature our information security program, expanding our security posture into the software development lifecycle, and embedding cloud security practices across our internally developed SaaS environment.
Requirements
- Drive and mature the company-wide information security program and strategy
- Act as the primary internal authority on information security operations
- Develop security metrics and reporting for technical and executive stakeholders
- Serve as a working technical mentor to security analysts
- Own ISO 27001 certification and maintenance
- Directly manage controls rationalization across frameworks
- Lead and execute the vendor and third-party risk management program
- Establish and maintain information security controls in alignment with life sciences regulatory requirements
- Partner with the Software, cloud security, and DevOps teams
- Actively participate in security operations across the corporate IT environment
- Define cloud security governance standards and policies
- Own and continuously improve the company-wide security awareness and training program
Benefits
- Industry leading competitive pay
- Company paid healthcare
- Flexible spending accounts
- Voluntary life insurance
- 401K matching
- Uncapped vacation