Information Security and Compliance Champion
Telangana (Sandoz), India
Novartis
Working together, we can reimagine medicine to improve and extend people’s lives.Job Description Summary
Supporting the implementation of product delivery projects and operation of products across Sandoz product domain (PD or Core Technology) with security related queries. Additionally, providing guidance on and tracking of remediation activities and providing of cyber security trend analysis and reporting on cybersecurity metrics to ISRM. Working closely with the Regional ISRM leads.
Job Description
Major accountabilities:
- Act as an information security and compliance champion for stakeholders within the product domain.
- Support the project delivery and product operations in line with the global Sandoz cyber security, information management strategy and business objectives (considering key threats, client requirements, regulatory requirements, and technology trends).
- Proactively scout for changes in region-specific cyber threats and regulatory requirements and regularly update stakeholders.
- Support the cyber security strategy implementation within the product domain.
- Guiding the business audit coordination team based on ISRM requirements as defined in the IMF framework.
- Promote the security awareness campaigns and tailor content and delivery to local / business specifics and legislative requirements.
- Collaborate with the product domain / regions / countries to ensure the implementation and operation of cyber risk management processes is in line with the cybersecurity risk and issue management framework and the global delivery of information security services.
- Manage the maintenance of executive and operational cybersecurity metric requirements for consolidated global reporting to provide the global lead of ISRM with actionable insights, KPIs and KRIs from the region.
- Performs Records Management on behalf of the supported PD / region / country. Coordinates physical binder handovers and retrievals with 3rd party service provider Iron Mountain and performs record disposition assessment.
Minimum Requirements:
Education:
- University degree or equivalent experience in Computer Science, Information Systems Management, Mathematics, Informatics, or other related fields
Work Experience and Skills:
- Previous experience in Information Security and Compliance; experience of risk management in a regulated environment
- Previous knowledge of cyber threats and regulatory requirements, ideally with previous experience in the Life Science industry
- Previous knowledge of industry standards such as ISO 27001, CIS Controls, NIST, Cyber Essentials
- Ability to engage effectively with employees, external partners, and other stakeholders
- Good communication and interpersonal skills
- Strong time management skills with the ability to multitask and remain calm during demanding situations
- Entrepreneurial mindset driven by curiosity, continuous improvement, and interest in technical advancements and trends
Languages :
- Fluent in written and spoken English
- Knowledge of one or more regional languages is expected
Skills Desired
Budget Management, Business Acumen, Performance Management, Planning, Risk Management, Service Delivery Management, Stakeholder Management, Waterfall Model* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Category:
Compliance Jobs
Tags: Compliance Computer Science ISO 27001 KPIs Mathematics NIST Risk management Security strategy Strategy
Region:
Asia/Pacific
Country:
India
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Security Specialist jobsSenior Cloud Security Engineer jobsInformation System Security Officer jobsSenior Security Analyst jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsInformation Security Manager jobsSystems Engineer jobsSenior Information Security Analyst jobsSenior Network Security Engineer jobsIT Security Engineer jobsCyber Security Specialist jobsIT Security Analyst jobsChief Information Security Officer jobsSecurity Specialist jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsInformation Systems Security Engineer jobsSenior Information Security Engineer jobsSenior Cyber Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsThreat Intelligence Analyst jobsSenior Software Engineer jobs
Java jobsEncryption jobsEDR jobsBash jobsTS/SCI jobsIDS jobsIPS jobsThreat detection jobsSQL jobsTerraform jobsSDLC jobsSplunk jobsMalware jobsTop Secret jobsFinance jobsDocker jobsForensics jobsSOC 2 jobsRMF jobsActive Directory jobsCompTIA jobsIntrusion detection jobsITIL jobsOWASP jobsGIAC jobs
DoDD 8570 jobsVPN jobsAnsible jobsHIPAA jobsOSCP jobsIT infrastructure jobsData Analytics jobsTCP/IP jobsUNIX jobsCCSP jobsCRISC jobsSAP jobsBanking jobsSANS jobsSOAR jobsSOX jobsJavaScript jobsMITRE ATT&CK jobsSecurity strategy jobsClearance Required jobsMachine Learning jobsZero Trust jobsDNS jobsJira jobsPolygraph jobs