We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Senior Director, Chief Information Security Officer

Avanir Pharmaceuticals, Inc
United States, New Jersey, Princeton
Jan 17, 2025

Location: Princeton or Rockville Employment Type: Full Time

About Us

Otsuka is a global healthcare company driven by the corporate philosophy: "Otsuka people creating new products for better health worldwide." We are committed to researching, developing, manufacturing, and marketing innovative products, with a strong focus on pharmaceutical treatments for diseases and nutraceutical products to maintain everyday health. Our pharmaceutical efforts emphasize developing and commercializing therapies in Neuroscience, Nephrology, and Immunology, along with research programs targeting various unmet specialty disease areas.

Job Description

The Senior Director, Chief Information Security Officer (CISO), will lead the development, implementation and management of Otsuka America Pharmaceutical, Inc.'s (OAPI's) and Otsuka Pharmaceutical Development and Commercialization, Inc.'s (OPDC's) cybersecurity risk management framework.

Reporting directly to the Vice President & US Chief Compliance Officer (CCO), the CISO will bolster Otsuka's Second Line of Defense by identifying and mitigating potential cybersecurity risks, ensuring regulatory compliance, and driving a culture of proactive security awareness. The successful leader in this role is a consummate learner and teacher who can understand an increasingly complex landscape and translate learnings into concrete solutions and actions needed to protect the organization.

Key Responsibilities

  • Strategic Leadership and Risk Management
  • Advance and implement a comprehensive cybersecurity risk management framework for OAPI and OPDC, to proactively identify, evaluate, and mitigate potential risks.
  • Continuously assess:
  • the strength and effectiveness of the OAPI and OPDC cybersecurity risk management framework, and where necessary, implement CCO-endorsed framework enhancements; and
  • the skills and capabilities needed for the present and future operational excellence of the Information Security team.
  • Survey and summarize changes or trends in cybersecurity laws, regulations, and accreditation standards (including, but not limited to, those directly impacting the healthcare industry), providing frequent and succinct updates to the CCO and, where applicable, proactively proposing cybersecurity risk framework enhancements to mitigate risk to the organization.
  • Work closely with the Vice President & Chief Information Officer (CIO) and the CIO's leadership team to ensure cross-functional alignment and consistency with broader IT business objectives and activities.
  • Provide cybersecurity advice, guidance, and support to other Otsuka companies as needed, including ex-US affiliates.

Policy, Standards, and Control Framework

  • Develop, implement, and enforce enterprise-wide security policies, standards, and frameworks to ensure compliance with regulatory requirements (e.g., HIPAA, GDPR, FDA, ISO 27001).
  • Collaborate with regulatory bodies during audits, compliance reviews, and investigations, ensuring transparency and alignment with legal requirements.
  • Support data privacy and protection efforts, helping to imbed privacy principles into information security practices and processes.

Security Operations and Capabilities

  • Lead the Security Operations Center (SOC) and continuously monitor, detect, and respond to potential security incidents.
  • Directly supervise the OAPI and OPDC Information Security team (a component of US Ethics & Compliance) with management responsibility for at least five FTE reports.
  • Oversee and optimize critical security functions, including, but not limited to:
  • Vulnerability Management
  • Application Security
  • Network Security
  • Security Information and Event Management (SIEM)
  • Data Loss Prevention (DLP)
  • Develop and implement robust incident response plans, including penetration testing and CCO-approved cyber investigations and forensic analyses.
  • Ensure continuous improvement of organizational threat detection, response, and remediation capabilities through advanced technologies (including AI-driven tools and platforms) and best practices.

Education and Awareness

  • Develop and provide cybersecurity training and awareness programs for OAPI and OPDC employees.
  • Clearly articulate cybersecurity risks, strategies, and initiatives to technical and non-technical audiences at all levels of the organization.
  • Promote organization-wide adoption of security best practices in partnership with IT and the business.

Qualifications

  • Master's degree in Information Management, Cybersecurity, Computer Science, or a related field.
  • Certifications: CISSP, CISM, CICP, and Security+ (or equivalent certifications).
  • Minimum of 10 years of experience in Information Security, including at least 5 years in a leadership role directly supervising FTE employees and managing enterprise-level security programs.
  • Expert level understanding of security frameworks and compliance standards.
  • Crisis management experience.
  • Excellent leadership, communication, and project management skills, with experience building and managing teams - demonstrated experience as a player-coach who has elevated team performance.

Preferred Experience

  • Understanding of US healthcare industry laws and regulations.
  • Familiarity with DOJ and HHS-OIG guidance on corporate compliance programs.
  • Understanding of affiliate-level scope and responsibilities within a global organization

Competencies
Accountability for Results - Stay focused on key strategic objectives, be accountable for high standards of performance, and take an active role in leading change.
Strategic Thinking & Problem Solving - Make decisions considering the long-term impact to customers, patients, employees, and the business.
Patient & Customer Centricity - Maintain an ongoing focus on the needs of our customers and/or key stakeholders.
Impactful Communication -Communicate with logic, clarity, and respect. Influence at all levels to achieve the best results for Otsuka.
Respectful Collaboration - Seek and value others' perspectives and strive for diverse partnerships to enhance work toward common goals.
Empowered Development - Play an active role in professional development as a business imperative.

Come discover more about Otsuka and our benefit offerings; https://www.otsuka-us.com/careers-join-otsuka.

Disclaimer:

This job description is intended to describe the general nature and level of the work being performed by the people assigned to this position. It is not intended to include every job duty and responsibility specific to the position. Otsuka reserves the right to amend and change responsibilities to meet business and organizational needs as necessary.

Otsuka is an equal opportunity employer. All qualified applicants are encouraged to apply and will be given consideration for employment without regard to race, color, sex, gender identity or gender expression, sexual orientation, age, disability, religion, national origin, veteran status, marital status, or any other legally protected characteristic.

If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation, if you are unable or limited in your ability to apply to this job opening as a result of your disability. You can request reasonable accommodations by contacting Accommodation Request.

Statement Regarding Job Recruiting Fraud Scams

At Otsuka we take security and protection of your personal information very seriously. Please be aware individuals may approach you and falsely present themselves as our employees or representatives. They may use this false pretense to try to gain access to your personal information or acquire money from you by offering fictitious employment opportunities purportedly on our behalf.

Please understand, Otsuka will never ask for financial information of any kind or for payment of money during the job application process. We do not require any financial, credit card or bank account information and/or any payment of any kind to be considered for employment. We will also not offer you money to buy equipment, software, or for any other purpose during the job application process. If you are being asked to pay or offered money for equipment fees or some other application processing fee, even if claimed you will be reimbursed, this is not Otsuka. These claims are fraudulent and you are strongly advised to exercise caution when you receive such an offer of employment.

Otsuka will also never ask you to download a third-party application in order to communicate about a legitimate job opportunity. Scammers may also send offers or claims from a fake email address or from Yahoo, Gmail, Hotmail, etc, and not from an official Otsuka email address. Please take extra caution while examining such an email address, as the scammers may misspell an official Otsuka email address and use a slightly modified version duplicating letters.

To ensure that you are communicating about a legitimate job opportunity at Otsuka, please only deal directly with Otsuka through its official Otsuka Career website https://vhr-otsuka.wd1.myworkdayjobs.com/en-US/External.

Otsuka will not be held liable or responsible for any claims, losses, damages or expenses resulting from job recruiting scams. If you suspect a position is fraudulent, please contact Otsuka's call center at: 800-363-5670. If you believe you are the victim of fraud resulting from a job recruiting scam, please contact the FBI through the Internet Crime Complaint Center at: https://www.ic3.gov, or your local authorities.

Otsuka America Pharmaceutical Inc., Otsuka Pharmaceutical Development & Commercialization, Inc., and Otsuka Precision Health, Inc. ("Otsuka") does not accept unsolicited assistance from search firms for employment opportunities. All CVs/resumes submitted by search firms to any Otsuka employee directly or through Otsuka's application portal without a valid written search agreement in place for the position will be considered Otsuka's sole property. No fee will be paid if a candidate is hired by Otsuka as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails.

Applied = 0

(web-6f6965f9bf-j5kl7)