Cybersecurity Compliance Specialist page is loaded
Cybersecurity Compliance Specialist
Candidatar-se locations Sant Cugat del Vallès time type Tempo integral posted on Publicado ontem time left to apply Data de término: 28 de julho de 2025 (10 dias restantes para se candidatar) job requisition id 202505-111716
Na Roche, você pode-se apresentar como você mesmo, abraçado pelas qualidades únicas que traz. Nossa cultura incentiva a expressão pessoal, o diálogo aberto e as conexões genuínas, onde você é valorizado e respeitado por quem você é, e permitindo que você prospere tanto pessoal como profissionalmente. É assim que pretendemos prevenir, deter e curar doenças e garantir que todos tenham acesso aos cuidados de saúde hoje e nas gerações futuras. Junte-se à Roche, onde cada voz é importante.
A posição
Join our dynamic team in Sant Cugat, Barcelona, where data security and privacy are pivotal to driving our digital transformation and achieving our ambitious goals. As a key player in Roche Diagnostics, you will apply end-to-end Division-wide product security and privacy operations to safeguard our products and services throughout their entire lifecycle. Your passion for science, technology, data, and insights will help us improve the standard of care for humankind. You will manage the information security system to ensure compliance with security and privacy regulations, define and audit controls, conduct management reviews, support high-quality documentation, and continuously optimize processes and tools. Your role also involves promoting security and privacy programs across the organization, including medical devices and cloud solutions, and effectively communicating cybersecurity and privacy concepts to non-technical users. Embark on this exciting journey where your expertise will make a significant impact and help navigate uncharted territories to unlock the full potential of our innovations.
Key Challenges
* Maintain the information security management system (ISMS) in order to ensure compliance against security and privacy laws, regulations and standards throughout the product lifecycle.
* Developing and supporting the implementation of a comprehensive product security and privacy risk management framework
* Defining, maintaining, and auditing security and privacy controls to meet compliance requirements
* Conducting periodic product management reviews to address risks, compliance issues, and metrics
* Supporting security audits for products, external and internal audits and certifications.
* Performing gap assessments to assess compliance against new laws, regulations or standards required by the business.
* Creating high-quality documentation for internal and external compliance
* Continuously optimizing security and privacy-related processes, playbooks, and tools
* Promoting security and privacy programs in various business areas, including medical devices and cloud solutions
* Communicating cybersecurity and privacy concepts to users with both technical and non-technical backgrounds
Who you are as our ideal candidate:
* BA/BS in Engineering, Computer Science or relevant area of study required.
* Security and privacy industry certifications such as ISO27001 Lead Auditor, CISSP, CISA, CRISC, CISM, etc.
Professional Experience:
* Demonstrated experience in supporting security and/or privacy audits and certification processes in large-scale systems in a fast-paced environment.
* Understanding of security and privacy standards, laws and regulations, like ISO 27000 family, SOC2, GDPR, etc.
* Minimum of 5+ years of experience in security and/or privacy audit and compliance related roles in multinational environments, especially in healthcare or regulated industries.
Other requirements:
* Ability to develop and continuously optimize processes, playbooks and tools.
* Strong organizational skills and ability to prioritize and manage multiple projects simultaneously.
* Ability to “zoom out” (see the big picture and give strategic direction) as well as to “zoom in” (provide more granularity and details when talking to experts).
* Best in class attitude; challenge status constructively and contribute to improvements; results oriented; ability to influence; solution oriented mindset; problem solving, flexibility and adaptability.
* Excellent interpersonal skills with high cross-cultural sensitivity; ability to collaborate and communicate across multiple international teams; commitment to working as a team player across Business Areas and Divisions.
* Fluent in English on a business level with excellent verbal and written skills; other languages welcome, but not required.
* Travel % required (if applicable): maximum 20%
Quem nós somos
Um futuro mais saudável nos leva a inovar. Juntos, mais de 100 mil funcionários em todo o mundo se dedicam ao avanço da ciência, garantindo que todos tenham acesso à saúde hoje e nas próximas gerações. Nossos esforços resultam em mais de 26 milhões de pessoas tratadas com nossos medicamentos e mais de 30 bilhões de testes realizados usando nossos produtos de diagnóstico. Nós nos capacitamos para explorar novas possibilidades, promover a criatividade e manter as nossas ambições altas, para fornecer soluções de saúde que mudem a vida e causem um impacto global.
Vamos construir juntos um futuro mais saudável.
A Roche é um empregador que pratica políticas de igualdade de oportunidades.
#J-18808-Ljbffr