Overview
Cyber Security Business Analyst (DLP focus) - role at Novartis. Location: Prague, Czech Republic;
Barcelona, Spain;
(12 days/month in office). Internal job title: Sr. Specialist DDIT ISC Cyber Security Business Analyst. The role is based in Prague/Barcelona. Novartis is unable to offer relocation support for this role;
please only applyif this location is accessible for you.
About The Role
The Cyber Security Business Analyst (DLP focus) will drive the design of reliable, accurate Data Loss Prevention (DLP) and other security rules to protect critical Novartis information. They will partner with senior business managers to understand data usage and risks, translate insights into clear DLP rule design concepts, and collaborate with engineering teams to implement them within Microsoft Purview. This is a medior-level position intended to challenge and grow technical information security skillsets.
Key Responsibilities
* Stakeholder Engagement: Conduct interviews with senior business managers to understand and document data flows, risks, and operational constraints.
* Rule Design & Documentation: Translate business insights into functional specifications for DLP and/or Insider risk rules in Microsoft Purview, including logic, exceptions, and deployment guidance.
* Testing & Tuning: Define acceptance criteria, run pilots, analyze false positives/negatives, and refine rules.
* Recommend policy adjustments to reduce noise while preserving protection;
perform periodic rule tuning and lifecycle management based on alert trends and business feedback.
* Lifecycle Management: Maintain a repository of rule designs and ensure traceability from business requirements to technical controls.
Essential Requirements
* University working and thinking level, degree in business/technical/scientific area or comparable education/experience.
* 2+ years in information security or business analysis.
* Hands-on experience with Microsoft Purview DLP.
* Familiarity with M365 services (SharePoint, OneDrive, Teams, Exchange).
* Experience conducting business interviews and translating requirements into functional specifications.
* Strong analytical and stakeholder management skills.
* Ability to work independently in a fast-paced environment.
Preferred Requirements
* Exposure to broader Microsoft security stack (Defender for Endpoint/Cloud Apps, Insider Risk, Information Protection, Entra ID, Conditional Access) and integrations.
* Familiarity with incident response workflows and SOAR/SIEM integrations.
* Experience in a pharmaceutical, life sciences, or another highly regulated industry.
* Certifications: Microsoft Information Protection Administrator, CIPM/CIPP, CISSP, CCSK, or equivalent.
Commitment To Diversity & Inclusion
We are committed to building an outstanding, inclusive work environment and diverse teams representative of the patients and communities we serve.
Benefits (CZ Only)
Monthly pension contribution matching your individual contribution up to 3% of your gross monthly base salary;
Risk Life Insurance (full cost covered by Novartis);
5-week holiday per year(1 week above Labour Law requirement);
4 paid sick days withinone calendar year in case of sickness without a medical sickness report;
Cafeteria employee benefit program – choice of benefits from Benefit Plus Cafeteria in the amount of 12,500 CZK per year;
Meal vouchers in amountof 105 CZK for each working day (full tax covered by company);
Transportation Allowance;
MultiSport Card.
Why Novartis?
Our purpose is to reimagine medicine to improve and extend people’s lives. Our vision is to become the most valued and trusted medicines company in the world. Learn more about Novartis strategy and people and culture at
Join Our Network
If this role is not suitable to your experience or career goals but you wish to stay connected, join the Novartis Network:
Accessibility And Accommodation
Novartis is committed to providing reasonable accommodation to all individuals. For accommodation requests, please send an email with your request and the job requisition number.
Additional Links
Join our Novartis Network or learn about benefits and rewards:
#J-18808-Ljbffr