Senior Director, Information Security Policy, Risk, and Compliance

ElevateBio
Durham, NC Full Time
POSTED ON 6/28/2023 CLOSED ON 7/15/2023

What are the responsibilities and job description for the Senior Director, Information Security Policy, Risk, and Compliance position at ElevateBio?

The Role:

Reporting to the Head of Information Security, the Senior Director of Policy, Risk, and Compliance is responsible for managing all aspects of cybersecurity risk including policy and governance, risk management, regulatory compliance, awareness and outreach, business continuity, and data governance and protection.

The successful candidate will be an innovative and strategic thinker with excellent communication skills and a desire to collaborate across the enterprise to design solutions that support our business as we continue to scale and grow.

This is an ideal role for someone who wants to work as part of a small team to build, run, and evolve the cybersecurity infrastructure in a growing, well-funded startup company that prioritizes its employees’ growth and development, and to share leadership as the company grows.

Here’s What You’ll Do:

  • Collaborate with business units to ensure that security is aligned with business goals and results
  • Lead awareness and outreach, including training, phishing exercises, phishing reporting, our newsletter, and special events
  • Own the information security policies and governance processes
  • Implement and operate a data governance program with supporting data protections
  • Lead information security risk management including vendor assessment and vulnerability management
  • Lead compliance with regulatory and other frameworks, including 21CFR11, Annex 11, SOX, GDPR, NIST CSF, CIS Critical Controls, SOC2, and ISO27001
  • Build and maintain close and effective working relationships with stakeholders across the business including Legal, Quality, and Regulatory
  • Track industry developments to maintain a thorough understanding of current and future directions and trends
  • Actively participate in technology and information security conferences and professional organizations
  • Assist with incident response as required

Requirements:

  • 10 years of progressive experience in information security
  • Strong communications and collaboration skills
  • Proven ability to ask better questions, listen to the answers, and solve the right problems
  • Demonstrated capability to synthesize and summarize information including impacts and recommendations
  • Experience defining, managing, and measuring outcomes for complex projects
  • Proficient in quantitative and qualitative analysis and data-driven decision-making
  • Ability to influence collective action without direct authority

 

Research Information Security Compliance Specialist
RTI International -
Durham, NC
Senior Director - Special Education Policy
Wake County Public School System -
Cary, NC
Senior Information Security Specialist
Envestnet -
Raleigh, NC

For Employer
Looking for Real-time Job Posting Salary Data?
Keep a pulse on the job market with advanced job matching technology.
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

Sign up to receive alerts about other jobs with skills like those required for the Senior Director, Information Security Policy, Risk, and Compliance.

Click the checkbox next to the jobs that you are interested in.

  • Cloud Security Skill

    • Income Estimation: $163,196 - $208,515
    • Income Estimation: $178,977 - $226,472
  • Cybersecurity Skill

    • Income Estimation: $87,232 - $114,424
    • Income Estimation: $92,405 - $117,541
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at ElevateBio

ElevateBio
Hired Organization Address Waltham, MA Contractor
ElevateBio is a technology-driven cell and gene therapy company, accelerating access to the cutting-edge technologies an...
ElevateBio
Hired Organization Address Waltham, MA Part Time
ElevateBio is a technology-driven cell and gene therapy company, accelerating access to the cutting-edge technologies an...
ElevateBio
Hired Organization Address Waltham, MA Contractor
ElevateBio is a technology-driven cell and gene therapy company, accelerating access to the cutting-edge technologies an...
ElevateBio
Hired Organization Address Waltham, MA Contractor
ElevateBio is a technology-driven cell and gene therapy company, accelerating access to the cutting-edge technologies an...

Not the job you're looking for? Here are some other Senior Director, Information Security Policy, Risk, and Compliance jobs in the Durham, NC area that may be a better fit.

VP, Information Security & Risk Governance

Apple Growth Partners, Raleigh, NC

VP, Information Security & Risk Governance

Local Government Federal Credit Union, Raleigh, NC