04 ago
|
Jobtailor
|
Madrid
ph3Responsibilities /h3 ul liContribute to the development and execution of the global cybersecurity strategy aligned with ALS’s corporate objectives and international regulatory frameworks (GxP, ISO 27001, NIST, GDPR, 21 CFR Part 11). /li liManage third‑party risk assessments for technology vendors, partners, and digital supply chain providers. /li liLead global risk management initiatives, including threat assessment, vulnerability management, and mitigation plans for IT and OT environments. /li liOversee security across hybrid infrastructures, including laboratory information systems (LIMS, ELN, CDS), cloud platforms, and industrial control systems (SCADA, PLCs). /li liCoordinate integral incident response, ensuring timely communication, investigation, and remediation of security events. /li liReview current security policies in place across the laboratories of the group to assess current practice and local requirements. /li liDefine corporate security policies and standards to support harmonisation and consistency of practice locally. /li liPartner with global and regional teams to ensure compliance with corporate policies, GxP, data protection, and privacy regulations. /li liLead security awareness and training programs tailored to scientific, technical, and operational personnel. /li liCollaborate with Quality, RD, Production,
and Legal to embed security by design into systems and processes. /li liMonitor and report cybersecurity KPIs and maturity metrics to Chief Information Security Officer executive committees. /li liLead and coordinate responses to RFIs, security questionnaires, and due‑diligence requests regarding IT security and compliance. /li /ul h3Requirements /h3 ul liBachelor’s or Master’s degree in Computer Science, Information Security, Telecommunications, or a related field. /li liAdvanced training or postgraduate studies in cybersecurity or technology risk management. /li liRecognized certifications such as CISM, CISSP, ISO 27001 Lead Implementer/Auditor, GICSP, NIST CSF Practitioner are highly valued. /li liMinimum 8 years of professional experience in cybersecurity, with 3–5 years in a leadership or global coordination role. /li liProven experience in pharmaceutical, biotechnology, or scientific research environments. /li liStrong knowledge of regulated environments (GxP) and industrial/OT security (ISA/IEC 62443). /li liExperience managing security across cloud platforms (AWS, Azure, GCP) and hybrid infrastructures. /li liDemonstrated ability to manage complex, multinational security programs. /li /ul /p #J-18808-Ljbffr
📌 Global Cybersecurity Lead – Pharmaceutical Division (Madrid)
🏢 Jobtailor
📍 Madrid