Cybersecurity Risk Program Manager

hace 1 mes


Barcelona, Barcelona, España F. Hoffmann-La Roche Gruppe A tiempo completo

At Roche, we are passionate about transforming patients' lives and we are fearless in both decision and action - we believe that good business means a better world.

Data security and privacy are key success factors in our digital transformation and essential to reach our ambitions.

You are inspired to contribute to the overall Roche Diagnostics vision by applying end-to-end Division-wide product security and privacy operations to keep our products and services secure throughout the entire lifecycle.

You believe in the potential of science, technology, data and insights to improve the standard of care for humankind and you are eager to help navigate through unchartered territory to lift this potential.

The Position

The Cybersecurity Risk Program Manager will drive the design, building and execution of a risk management governance program, including risk assessments, risk modeling, risk treatment strategies, reporting and monitoring including:

  • Conduct risk assessments by analyzing current risks and identifying potential risks that are affecting the business and product groups.
  • Prepare reports of identified and assessed risks to the management.
  • Support the process for determining appropriate risk tolerance across our risk profile.
  • Provide thought partnership, risk analytics (e.g. return on Risk Mitigation investments), and recommendations around remediation, risk mitigation, or process improvement to risk owners, Compliance or other control-related functions, as well as Leadership.
  • Consult and coordinate with global Privacy, Risk, Security and Compliance teams on the creation and monitoring of risk mitigation or treatment plans.
Minimum Qualifications:

Bachelor degree in a field with a strong emphasis on information security, computer, communication, or related majors; master degree as a plus.

1+ years cybersecurity and/or privacy program management experience and exposure to large-scale systems in a fast-paced environment.

Audit and/or compliance related roles experience in multinational environments.

Experience in using data and metrics to define business strategy and gain executive support for new visions.

Preferable related experience in the healthcare, diagnostics, and/or pharmaceutical industry.

Knowledge of cybersecurity standards and privacy relevant legislation (GDPR, HIPAA...).

Demonstrate data analytical skills, creativity, and experience working with attention to detail.

Excellent verbal/written communication & data presentation skills; proven ability to effectively communicate with both business and technical teams.

Ability to work in and with globally distributed and multi-cultural teams.

Best in class attitude; challenge status constructively and contribute to improvements; results-oriented; ability to influence; solution-oriented mindset.

Preferred Qualifications:

Experience working in a software development environment

Valuable certifications:

ISO 27001 Lead Auditor, CISA, CISM, CISSP, GIAC, OSCP, SSCP or equivalent certification.

Proven ability to influence change at all levels within an organization.

Expert planner with business process definition experience and a strong IT aptitude.

Working knowledge or willingness to quickly learn the content and requirements of various laws, regulations, industry guidance, and company compliance policies, particularly related to privacy, data disclosure, and cybersecurity.

Experience maintaining open, candid, and trusting work relationships.

Ability to \"Zoom Out\" (see the big picture and give strategic direction) as well as to \"Zoom in\" (to provide more granularity when exchanging with a wide range of experts).

Strong business acumen; sensitive to business needs; view change as an opportunity; eager to work in a fast-paced environment.

Strong organizational skills and ability to prioritize and manage multiple projects simultaneously.



  • Barcelona, Barcelona, España F. Hoffmann-La Roche Gruppe A tiempo completo

    At Roche, we are committed to transforming patients' lives through innovative medical solutions. To achieve this goal, we need a dedicated Cybersecurity Risk Program Manager to drive our risk management governance program.The ideal candidate will be responsible for designing, building, and executing a risk management governance program that includes risk...


  • Barcelona, Barcelona, España F. Hoffmann-La Roche A tiempo completo

    At Roche, we are passionate about transforming patients' lives and we are fearless in both decision and action - we believe that good business means a better world.Data security and privacy are key success factors in our digital transformation and essential to reach our ambitions.You are inspired to contribute to the overall Roche Diagnostics vision by...


  • Barcelona, Barcelona, España Wallbox A tiempo completo

    **About Us**We are a global leader in electric vehicle charging and energy management systems, operating in 96 countries. Our mission is to revolutionize the way the world uses energy. We have our headquarters in Barcelona and manufacturing facilities in Spain and the US.We are committed to excellence, as evident from our listing on the New York Stock...


  • Barcelona, Barcelona, España Bunge Iberica SA A tiempo completo

    Cybersecurity Governance ManagerEstimated Salary: 90000 - 120000 EUR per year.Bunge Iberica SA seeks an experienced Cybersecurity Governance Manager to oversee the development and implementation of effective cybersecurity policies and procedures. The ideal candidate will have a strong background in IT risk management and governance, with expertise in NIST,...


  • Barcelona, Barcelona, España F. Hoffmann-La Roche Gruppe A tiempo completo

    At Roche, we are passionate about transforming patients' lives and we are fearless in both decision and action - we believe that good business means a better world.Data security and privacy are key success factors in our digital transformation and essential to reach our ambitions.You are inspired to contribute to the overall Roche Diagnostics vision by...


  • Barcelona, Barcelona, España Td Synnex A tiempo completo

    **Company Overview**TD SYNNEX is a Fortune 500 global corporation operating in over 100 countries. We value our diverse workforce of 22,000 employees and are committed to providing top-notch cybersecurity solutions.**About the Role**We are seeking an experienced Cybersecurity Risk Management Specialist to join our team. In this role, you will be responsible...


  • Barcelona, Barcelona, España Td Synnex A tiempo completo

    About the RoleAs a Cybersecurity GRC Specialist at TD SYNNEX, you will play a crucial part in implementing the organization-wide Risk Management Framework (RMF), Assurance, and Information Security Management System (ISMS) to support the establishment and improvement of the information security program.The purpose of this position is to provide domain...


  • Barcelona, Barcelona, España F. Hoffmann-La Roche A tiempo completo

    The Cybersecurity Risk Program Manager will drive the design, building and execution of a risk management governance program, including risk assessments, risk modeling, risk treatment strategies, reporting and monitoring:Conduct risk assessments by analyzing the current risks and identifying potential risks that are affecting the business and product...


  • Barcelona, Barcelona, España Bunge Iberica Sa A tiempo completo

    About the Role:Bunge Iberica Sa is seeking a highly skilled Cybersecurity Policy Manager to join our team. As a key member of our Business Technology (BT) Security and Risk Management team, you will be responsible for managing the governance of our Cybersecurity Policy and Standards framework and the Cybersecurity Outreach and Awareness program.Main...


  • Barcelona, Barcelona, España Empresa Reconocida A tiempo completo

    Job DescriptionWe are seeking a highly skilled Cybersecurity Senior Analyst to join our team at Empresa Reconocida, a multinational company leading the digital transformation of energy management and automation.Key Responsibilities:Implement and coordinate cybersecurity action plans to protect our digital footprint.Raise and control cybersecurity awareness,...


  • Barcelona, Barcelona, España TD SYNNEX A tiempo completo

    About the Role:As a key member of the TD SYNNEX team, you will play a critical role in implementing and maintaining the organization's information security program. Your expertise will be instrumental in ensuring the effective management of cybersecurity risks and compliance with relevant regulations and standards.Key Responsibilities:Develop and implement a...


  • Barcelona, Barcelona, España Clarivate A tiempo completo

    Job OverviewWe are seeking a seasoned Cybersecurity Risk and Compliance Lead to join our team at Clarivate. In this role, you will be responsible for leading our cybersecurity risk management program and ensuring we maintain the highest level of security and compliance.You will have the opportunity to work with a dynamic team that spans across the company,...


  • Barcelona, Barcelona, España F. Hoffmann-La Roche A tiempo completo

    About the RoleAt Roche, we are passionate about transforming patients' lives and we are fearless in both decision and action - we believe that good business means a better world.Data security and privacy are key success factors in our digital transformation and essential to reach our ambitions.Your Key ResponsibilitiesConduct risk assessments by analyzing...


  • Barcelona, Barcelona, España Wallbox A tiempo completo

    Wallbox is a leading company in the electric vehicle charging and energy management systems market, with a presence in 96 countries. We are seeking a highly experienced Security Manager to join our team.The successful candidate will be responsible for the comprehensive management of governance, risk, and compliance in terms of information security, including...


  • Barcelona, Barcelona, España Bunge Iberica Sa A tiempo completo

    Job DescriptionBunge Iberica Sa is seeking a highly skilled Cybersecurity Policy Governance and Outreach Manager to join our team. The successful candidate will be responsible for managing the governance of the Cybersecurity Policy and Standards framework and of the Cybersecurity Outreach and Awareness program.Main Responsibilities:Manage the performance of...


  • Barcelona, Barcelona, España Bunge Iberica Sa A tiempo completo

    About the Role:We are seeking a highly skilled Cybersecurity Policy Governance and Outreach Manager to join our team at Bunge Iberica Sa. As a key member of our Business Technology (BT) Security and Risk Management team, you will be responsible for managing the governance of our Cybersecurity Policy and Standards framework and the Cybersecurity Outreach and...


  • Barcelona, Barcelona, España F. Hoffmann-La Roche Gruppe A tiempo completo

    About the RoleAt Roche, we are passionate about transforming patients' lives and we are fearless in both decision and action - we believe that good business means a better world. That is why we come to work each day. We commit ourselves to scientific rigor, unassailable ethics, and access to medical innovations for all. We do this today to build a better...


  • Barcelona, Barcelona, España F. Hoffmann-La Roche A tiempo completo

    About the RoleAt Roche, we are passionate about transforming patients' lives and we are fearless in both decision and action - we believe that good business means a better world. That is why we come to work each day. We commit ourselves to scientific rigor, unassailable ethics, and access to medical innovations for all.Data security and privacy are key...


  • Barcelona, Barcelona, España Sita - Société Internationale De Télécommunications A tiempo completo

    About the RoleSITA - Société Internationale De Télécommunications is seeking a Cybersecurity Risk Management Specialist to contribute to the success of our cybersecurity team. In this role, you will be responsible for maintaining and enhancing the IT risk management framework, managing IT exceptions, and supporting third-party vendor risk assessments and...


  • Barcelona, Barcelona, España SITA - Société Internationale de Télécommunications A tiempo completo

    About the JobSITA is seeking a Cybersecurity Senior Risk Analyst to contribute to its IT risk management practice within the EISO team.Key ResponsibilitiesMaintain and enhance the IT risk management framework.Manage IT exceptions and support third-party vendor risk assessments and monitoring.Support business and IT projects to assess risks and make objective...