Governance Risk & Compliance Specialist (Life Sciences, Remote)

Søborg, Zealand
Posted 1 week, 6 days ago
Information Technology (IT)

About the role

Job summary

The Governance Risk & Compliance Specialist will play a crucial role in embedding information security within the organization by implementing and managing an Information Security Management System (ISMS). This position involves translating security requirements into actionable processes while ensuring compliance with relevant regulations.

Qualifications

  • Several years of experience in information security, particularly within the life sciences sector.
  • Proven track record in implementing and operating an ISMS using recognized frameworks (e.g., ISO, NIST CSF, CIS Controls).
  • Strong stakeholder management skills with the ability to communicate effectively at various organizational levels.
  • Experience in conducting and documenting risk assessments, preferably using OneTrust.
  • Familiarity with Third Party Risk Management practices, including vendor security assessments and contractual requirements.
  • Foundational understanding of technical concepts related to identity, endpoints, cloud, and networking.
  • Interest in leveraging AI tools for productivity while understanding their security implications.

Responsibilities

  • Coordinate and enhance the ISMS across the organization, ensuring compliance with NIS2 and FDA's 21 CFR Part 11.
  • Advise stakeholders by translating security risks into business impacts and providing clear recommendations.
  • Develop and maintain information security policies and standards, ensuring they are practical and adopted in daily operations.
  • Establish a structured approach to Third Party Risk Management, focusing on vendor assessments and risk scoring.
  • Drive compliance with NIS2 by mapping obligations to controls and preparing governance reports for management.
  • Support disaster recovery and business continuity planning, including documentation and exercise facilitation.
  • Foster security awareness through targeted communication and presentations tailored to diverse audiences.

Skills

  • Strong organizational and collaborative skills, with a proactive approach to stakeholder engagement.
  • Excellent communication skills for facilitating workshops and presenting to various audiences.
  • Curiosity and a mindset geared towards continuous improvement in security practices.

Education

  • Relevant degree in information security, risk management, or a related field is preferred.

Tools

  • Experience with OneTrust for risk management and compliance tracking.
  • Familiarity with AI tools to enhance productivity.
Full Access

Ready to apply for this role?

Full Access gives you the company name, full job description, and a direct link to apply. The summary above helps you explore the role.

Share this job