Welcome Back

Google icon Sign in with Google
OR
I agree to abide by Pharmadaily Terms of Service and its Privacy Policy

Create Account

Google icon Sign up with Google
OR
By signing up, you agree to our Terms of Service and Privacy Policy
Instagram
youtube
Facebook

Associate Director, Business Information Security Expert (Infrastructure Group)

Novartis
Novartis
12-16 years
Not Disclosed
10 June 12, 2025
Job Description
Job Type: Full Time Education: B.Sc./M.Sc/B.Pharm/M.Pharm/Life Science Skills: Causality Assessment, Clinical SAS Programming, Communication Skills, CPC Certified, GCP guidelines, ICD-10 CM Codes, CPT-Codes, HCPCS Codes, ICD-10 CM, CPT, HCPCS Coding, ICH guidelines, ICSR Case Processing, Interpersonal Skill, Labelling Assessment, MedDRA Coding, Medical Billing, Medical Coding, Medical Terminology, Narrative Writing, Research & Development, Technical Skill, Triage of ICSRs, WHO DD Coding

 

Job Summary

Novartis is hiring an experienced Associate Director – Business Information Security Expert to lead information security compliance across its operations in Prague. This is a pivotal role requiring deep expertise in risk management, GDPR, GxP, and information security frameworks such as ISO 27001 and NIST. Candidates with 12-16 years of experience in pharma/healthcare IT security are encouraged to apply.


Key Responsibilities

  • Develop, implement, and maintain info security policies ensuring industry and regulatory compliance.

  • Conduct audits, risk assessments, and security analyses to detect vulnerabilities.

  • Collaborate with business units to integrate security practices across operations.

  • Provide expert guidance on cybersecurity threats and risk mitigation.

  • Lead incident response efforts and manage remediation strategies.

  • Deliver organization-wide security awareness and training programs.

  • Host regular Risk Committee Meetings and Annual Risk Identification Workshops.

  • Stay updated on GDPR, GxP, and global security regulations.


Required Skills & Qualifications

  • Bachelor’s/Master’s in Computer Science, IT, or related field.

  • 12-16 years’ experience in information security, GDPR, GxP compliance.

  • Strong infrastructure knowledge.

  • Certifications: CISSP, CISA, or CCSP (at least one required).

  • Expertise in ISO 27001, NIST, GDPR, HIPAA.

  • Proficient in risk analysis, security audits, and compliance processes.

  • Excellent communication and stakeholder management skills.


Preferred Skills

  • Experience with SIEM, DLP, IDS/IPS, vulnerability management.

  • Knowledge of cloud security best practices.

  • Familiarity with global data privacy regulations.

  • Proven track record in security assessments and audits.


Perks & Benefits (Czech Republic)

  • Monthly pension contribution matching (up to 3% of base salary).

  • Full company-paid risk life insurance.

  • 5 weeks of annual holiday (1 week above legal requirement).

  • 4 paid sick days annually without medical certification.

  • Cafeteria benefits worth 12,500 CZK annually.

  • Daily meal vouchers (90 CZK/day).

  • Car allowance.

  • MultiSport Card.


Company Description

Novartis, a global healthcare leader, is committed to reimagining medicine to improve and extend people’s lives. With a strong focus on digital, data, and innovation, Novartis drives breakthroughs that impact millions worldwide. Learn more at Novartis Czech Republic.


Work Mode

Hybrid (Prague, Czech Republic / Hyderabad, India)


Call-to-Action

Ready to safeguard the future of healthcare IT security at Novartis? Apply now to become an integral part of our global transformation journey.