Lead Analyst - Information Security
WEMEA - Spain - Remote
AmerisourceBergen
AmerisourceBergen fosters a positive impact on healthcare around the world by advancing the development and delivery of pharmaceuticals and healthcare products.Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Job DetailsPRIMARY DUTIES AND RESPONSIBILITIES:
- Perform assessments of system, service & vendor security & risk mgmt. arrangements, scoping resilience & compliance improvement initiatives;
- Drive & follow up on technical & logical info security & service continuity improvement & remediation actions;
- Do info security & risk mgmt. due diligence for all local IT & business initiatives addressing data mgmt. & protection needs;
- Act as a ‘hands-on’ expert deploying central infosec solutions locally w/ coordination of other IT and business stakeholders;
- Conduct security awareness & education sessions to IT and business teams on regular and case-by-case basis.
- Leads security planning and analysis activities and provides strategic and tactical direction on information security policies, procedures, standards, and compliance
- Defines processes and procedures for the information security governance program, reports any process gaps to management, and recommends possible solutions
- Manages security incidents and events to protect corporate IT assets, including intellectual property, personal information, regulated data
- Develops and manages identity, access management, and Enterprise security functions
- Develops and implement strategies to align information security with business objectives and goals, protecting the integrity, confidentiality, and availability of data
- Manages, reviews, and responds to critical security alerts, escalations and incidents, identifies their root causes and ensures proper closure
- Consults with other business and technical staff on potential business impacts of proposed changes to the security environment
- Develops, refines, and implements enterprise-wide security policies, procedures, and standards across multiple platform and application environments to meet compliance responsibilities
- Participates in the development and maintenance of a global risk framework
- Provides ongoing knowledge transfer to other team members and clients on security products and standards
- Guides, coaches, and mentors Analysts I/II/III in company’s information security policies and best practices
- Oversees the evaluation of new technology in data communications and network security to determine their application within the company, along with their effectiveness and compatibility with existing systems, and oversees the implementation of new or improved network and security services
- Serves in an advisory role in application development and infrastructure projects to assess security requirements and ensure their implementation
- Leads security operations team in troubleshooting and resolving escalated security incidents
- Participates and evaluates the disaster recovery test plans and suggests necessary solutions to improve them
- Provides information security management with risk assessments and security briefings to advise them of critical issues that may affect customer or information security objectives
- Interfaces with business and IT leaders communicating security issues and responding to requests for assistance and information
- Acts as a liaison between internal audit and IT to ensure commitments are met and controls are properly implemented
Evaluates security controls, mechanisms, and goals in comparison to best practices
.
Additional information
- Preference of studies: Computer Science Engineering degree.
- Security Certificate such as Isaca CISM or Isaca CISA is a plus.
- Languages: Fluency in English and Spanish is required.
- This job can be done remotely across Spain region.
- Flexibility in travelling when required is needed.
- There are real possibilities of growing within the role inside the company.
- Soft skills: proactivity, work smart efficiency, high level of empathy, collaboration and assertiveness.
What Cencora offersBenefit offerings outside the US may vary by country and will be aligned to local market practice. The eligibility and effective date may differ for some benefits and for team members covered under collective bargaining agreements.
Full timeAffiliated CompaniesAffiliated Companies: World Courier de Espana, S.A.Equal Employment OpportunityCencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.
The company’s continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.
Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email hrsc@cencora.com. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: CISA CISM Compliance Computer Science Governance ISACA Network security Risk assessment
Perks/benefits: Career development Health care Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.