
Senior Director, Cyber Security
Posted 15 hours ago

Posted 15 hours ago
This is a fully remote position, open to applicants in Alabama, +23 more states.
• Provide support for customer assurance, audits, and regulatory evaluations related to healthcare, life sciences, GxP, or other regulated product and technology environments.
• Formulate and implement the cyber security strategy, roadmap, and operating model to mitigate enterprise risk and enhance Clarivate’s security posture.
• Direct cyber security initiatives encompassing security operations, incident response, vulnerability management, security engineering, governance, risk, and compliance.
• Collaborate with Technology, Product, Engineering, Privacy, Legal, Compliance, Procurement, and business leaders to integrate security requirements into products, platforms, processes, and vendor relationships.
• Supervise monitoring, escalation, investigation, and response activities for security incidents.
• Propel the enhancement of security controls, policies, standards, procedures, dashboards, metrics, and reporting.
• Assess current and emerging cyber threats, pinpoint security gaps, and prioritize remediation efforts.
• Facilitate audit, certification, customer assurance, and regulatory tasks by ensuring security practices are well-documented, measurable, and subject to continuous improvement.
• Build and lead a high-performing cyber security team, focusing on resource planning, capability development, coaching, and prioritization of work.
• Articulate cyber risk, program performance, incident trends, and strategic recommendations to executive and senior leadership.
• Collaborate across global time zones and assist with urgent security incidents or critical business events outside standard hours when necessary.
• Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent relevant experience.
• Over 12 years of experience in cyber security within healthcare, life sciences, or other highly regulated sectors.
• More than 5 years of experience in leading cyber security teams, programs, or cross-functional security initiatives.
• Familiarity with GxP, FDA regulations, 21 CFR Part 11, HIPAA, computerized system validation, and data integrity principles.
• Proven experience in defining and executing enterprise cyber security strategy, roadmaps, controls, and operating models.
• Background in overseeing security operations, incident response, vulnerability management, threat monitoring, security engineering, or cyber risk management.
• Proficiency in ISO 27001, SOC 2, NIST, CIS Controls, or similar standards.
• Experience in translating cyber risk, security metrics, and technical concepts into actionable recommendations for senior leadership and business stakeholders.
• Possession of relevant security certifications such as CISSP, CISM, CISA, CRISC, CCSP, or equivalent experience.
• Experience working in a global, matrixed organization with intricate technology environments and regulated customer demands.
• Knowledge of cloud security across AWS, Azure, GCP, or hybrid cloud settings.
• Familiarity with SIEM, EDR/XDR, IAM, DLP, vulnerability management, third-party risk, or other enterprise security technologies.
• Experience in supporting secure software development, product security, customer security assurance, or security-by-design initiatives.
• Proven track record in leading incident readiness, tabletop exercises, penetration testing, red team/blue team activities, or post-incident improvement initiatives.
• Availability outside standard business hours to assist with urgent security incidents, escalations, or critical business events as required.
• Eligibility for incentive or bonus earnings.
• Flexibility to collaborate across global time zones as necessary.
CrowdStrike
Triumph Enterprises, Inc.
LaunchDarkly
Staffbase
Get handpicked remote jobs straight to your inbox weekly.