Sr. Analyst, InfoSec Governance Risk & Compliance (Remote) at Jazz Pharmaceuticals
Philadelphia, PA 19103, USA -
Full Time


Start Date

Immediate

Expiry Date

04 Dec, 25

Salary

150000.0

Posted On

05 Sep, 25

Experience

3 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Risk Frameworks, Octave, Virtualization, Vulnerability, Executive Management, Automation, Consideration, Paas, Communication Skills, Iaas, Color, Information Security, Nist, Internal Customers, Iso

Industry

Information Technology/IT

Description

IF YOU ARE A CURRENT JAZZ EMPLOYEE PLEASE APPLY VIA THE INTERNAL CAREER SITE.

Jazz Pharmaceuticals is a global biopharma company whose purpose is to innovate to transform the lives of patients and their families. We are dedicated to developing life-changing medicines for people with serious diseases — often with limited or no therapeutic options. We have a diverse portfolio of marketed medicines, including leading therapies for sleep disorders and epilepsy, and a growing portfolio of cancer treatments. Our patient-focused and science-driven approach powers pioneering research and development advancements across our robust pipeline of innovative therapeutics in oncology and neuroscience. Jazz is headquartered in Dublin, Ireland with research and development laboratories, manufacturing facilities and employees in multiple countries committed to serving patients worldwide. Please visit www.jazzpharmaceuticals.com for more information.
Jazz Pharmaceuticals is seeking an experienced Senior Analyst in Security Governance, Risk, and Compliance. Reporting to the Senior Manager of Security Assurance and Compliance within the Security GRC team, the Senior Analyst will help support the global oversight of the company’s Security Governance, Risk, and Compliance program.
We welcome an innovative individual that embraces challenges and offers creative solutions. This Senior Analyst is expected to possess strong process management and communication skills, and subject matter expertise.

REQUIRED KNOWLEDGE, SKILLS, AND ABILITIES:

  • A minimum of 3-5 years’ experience supporting security (technical and non-technical) risks
  • Excellent written and verbal communication skills; ability to convey security concepts to non-technical audiences (e.g. senior and executive management, internal customers)
  • Ability to articulate and demonstrate a risk-relevant approach for Information Security Risk Management
  • Basic understanding of IT Systems, Network Security Concepts, Cloud Security concepts, Virtualization, Threat and Vulnerability Management, etc.
  • Ongoing familiarity with emerging and prevalent technologies and IT systems
  • Strong analytical, risk-based problem solving and critical thinking skills and the ability to support decisions that balance Information security while also enabling business objectives
  • Ability to work independently on assigned tasks with minimal direction and/or supervision
  • Familiarity with Security Risk Frameworks such as FAIR, OCTAVE or CRAMM
  • Solid understanding and experience with securing IaaS, PaaS and SaaS
  • Understanding of secure code development frameworks and practices

QUALIFICATIONS:

  • Security certifications are a strong plus (CISA, CISSP, CRISC, CISM or equivalent)
  • Demonstrated ability to collaborate with technical and non-technical teams
  • Experience in working in a global cross-functional project team, along with strong technical expertise preferred
  • Experience in automation
  • Experience in security frameworks such as ISO 27001, 27002, 27005; NIST
  • Bachelor’s degree preferred
  • Strong attention to details, highly organized
  • Excellent verbal and written communication skills
  • Strong work ethic with a flexible and adaptable approach
  • Must be self-motivated and comfortable in a fast-paced, demanding and dynamic work environment.
    Jazz Pharmaceuticals is an equal opportunity/affirmative action employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any characteristic protected by law.
Responsibilities

ESSENTIAL FUNCTIONS/RESPONSIBILITIES:

  • Support information security risk management programs.
  • Be the advocate for information security risk management, engage with stakeholders, support the identification of security risks and risk exceptions to treatment.
  • Ensure identified security risks impacting the company are effectively evaluated and communicated.
  • Collaborate with stakeholders on remediation and risk mitigation activities, including tracking and progress of action plans across compliance, policy, and process gap remediation activities and risk mitigation activities in partnership with internal business partners.
  • Manage dashboards that deliver practical, meaningful security risk metrics to internal and external stakeholders.
  • Participate in technical design, process reviews, and support stakeholders in risk identification.
  • Assist in building a security-focused culture through partnership and collaboration with the business, information services, and other risk-related (e.g., Quality, Legal, Compliance, etc.) teams to deliver value and improve the security posture of Jazz.
  • Drive Security Compliance through a quantitative risk framework.
  • Conduct and automate gap assessments for IaaS, PaaS and SaaS.
  • Drive Security Compliance visibility
  • Support a security advocacy program
Loading...