Transforming Lives.
Redefining Possibilities.

Sr. Analyst, InfoSec Governance Risk & Compliance (Remote)

Job Details

Req ID:
R010588
Locations:
Palo Alto, CA; Philadelphia, PA -- [Remote/Home-Based]
Category:
Information Technology

If you are a current Jazz employee please apply via the Internal Career site.

Jazz Pharmaceuticals is a global biopharma company whose purpose is to innovate to transform the lives of patients and their families. We are dedicated to developing life-changing medicines for people with serious diseases — often with limited or no therapeutic options. We have a diverse portfolio of marketed medicines, including leading therapies for sleep disorders and epilepsy, and a growing portfolio of cancer treatments. Our patient-focused and science-driven approach powers pioneering research and development advancements across our robust pipeline of innovative therapeutics in oncology and neuroscience. Jazz is headquartered in Dublin, Ireland with research and development laboratories, manufacturing facilities and employees in multiple countries committed to serving patients worldwide. Please visit www.jazzpharmaceuticals.com for more information.

Jazz Pharmaceuticals is seeking an experienced Senior Analyst in Security Governance, Risk, and Compliance. Reporting to the Senior Manager of Security Assurance and Compliance within the Security GRC team, the Senior Analyst will help support the global oversight of the company’s Security Governance, Risk, and Compliance program. 

We welcome an innovative individual that embraces challenges and offers creative solutions. This Senior Analyst is expected to possess strong process management and communication skills, and subject matter expertise. 

Job Responsibilities and Requirements:

Essential Functions/Responsibilities: 

  • Support information security risk management programs. 

  • Be the advocate for information security risk management, engage with stakeholders, support the identification of security risks and risk exceptions to treatment. 

  • Ensure identified security risks impacting the company are effectively evaluated and communicated.  

  • Collaborate with stakeholders on remediation and risk mitigation activities, including tracking and progress of action plans across compliance, policy, and process gap remediation activities and risk mitigation activities in partnership with internal business partners. 

  • Manage dashboards that deliver practical, meaningful security risk metrics to internal and external stakeholders. 

  • Participate in technical design, process reviews, and support stakeholders in risk identification. 

  • Assist in building a security-focused culture through partnership and collaboration with the business, information services, and other risk-related (e.g., Quality, Legal, Compliance, etc.) teams to deliver value and improve the security posture of Jazz. 

  • Drive Security Compliance through a quantitative risk framework. 

  • Conduct and automate gap assessments for IaaS, PaaS and SaaS. 

  • Drive Security Compliance visibility 

  • Support a security advocacy program 

Required Knowledge, Skills, and Abilities: 

  • A minimum of 3-5 years' experience supporting security (technical and non-technical) risks  

  • Excellent written and verbal communication skills; ability to convey security concepts to non-technical audiences (e.g. senior and executive management, internal customers) 

  • Ability to articulate and demonstrate a risk-relevant approach for Information Security Risk Management 

  • Basic understanding of IT Systems, Network Security Concepts, Cloud Security concepts, Virtualization, Threat and Vulnerability Management, etc. 

  • Ongoing familiarity with emerging and prevalent technologies and IT systems 

  • Strong analytical, risk-based problem solving and critical thinking skills and the ability to support decisions that balance Information security while also enabling business objectives 

  • Ability to work independently on assigned tasks with minimal direction and/or supervision 

  • Familiarity with Security Risk Frameworks such as FAIR, OCTAVE or CRAMM 

  • Solid understanding and experience with securing IaaS, PaaS and SaaS 

  • Understanding of secure code development frameworks and practices 

Qualifications:

  • Security certifications are a strong plus (CISA, CISSP, CRISC, CISM or equivalent) 

  • Demonstrated ability to collaborate with technical and non-technical teams 

  • Experience in working in a global cross-functional project team, along with strong technical expertise preferred 

  • Experience in automation 

  • Experience in security frameworks such as ISO 27001, 27002, 27005; NIST 

  • Bachelor's degree preferred 

  • Strong attention to details, highly organized 

  • Excellent verbal and written communication skills 

  • Strong work ethic with a flexible and adaptable approach 

  • Must be self-motivated and comfortable in a fast-paced, demanding and dynamic work environment. 

Jazz Pharmaceuticals is an equal opportunity/affirmative action employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any characteristic protected by law.

FOR US BASED CANDIDATES ONLY

Jazz Pharmaceuticals, Inc. is committed to fair and equitable compensation practices and we strive to provide employees with total compensation packages that are market competitive. For this role, the full and complete base pay range is: $100,000.00 - $150,000.00

Individual compensation paid within this range will depend on many factors, including qualifications, skills, relevant experience, job knowledge, and other pertinent factors. The goal is to ensure fair and competitive compensation aligned with the candidate's expertise and contributions, within the established pay framework and our Total Compensation philosophy. Internal equity considerations will also influence individual base pay decisions. This range will be reviewed on a regular basis.

At Jazz, your base pay is only one part of your total compensation package. The successful candidate may also be eligible for a discretionary annual cash bonus or incentive compensation (depending on the role), in accordance with the terms of the Company's Global Cash Bonus Plan or Incentive Compensation Plan, as well as discretionary equity grants in accordance with Jazz's Long Term Equity Incentive Plan.

The successful candidate will also be eligible to participate in various benefits offerings, including, but not limited to, medical, dental and vision insurance, 401k retirement savings plan, and flexible paid vacation. For more information on our Benefits offerings please click here: https://careers.jazzpharma.com/benefits.html.

Apply