via Remote Rocketship
$150K - 220K a year
Lead cybersecurity strategy and operations to reduce enterprise risk and ensure compliance in regulated environments.
Requires 12+ years cybersecurity experience in regulated industries, leadership skills, and relevant certifications.
Job Description: • Support customer assurance, audits, and regulatory inspections involving healthcare, life sciences, GxP, or other regulated products and technology environments • Define and execute the cyber security strategy, roadmap, and operating model to reduce enterprise risk and strengthen Clarivate’s security posture • Lead cyber security programs across security operations, incident response, vulnerability management, security engineering, governance, risk, and compliance • Partner with Technology, Product, Engineering, Privacy, Legal, Compliance, Procurement, and business leaders to embed security requirements into products, platforms, processes, and vendor relationships • Oversee monitoring, escalation, investigation, and response processes for security incidents • Drive improvement of security controls, policies, standards, procedures, dashboards, metrics, and reporting • Evaluate current and emerging cyber threats, identify security gaps, and prioritize remediation activities • Support audit, certification, customer assurance, and regulatory activities by ensuring security practices are documented, measurable, and continuously improved • Develop and lead a high-performing cyber security team, including resource planning, capability development, coaching, and work prioritization • Communicate cyber risk, program performance, incident trends, and strategic recommendations to executive and senior leadership • Partner across global time zones and support urgent security incidents or business-critical events outside standard hours when needed Requirements: • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent relevant experience • 12+ years of experience in cyber security within healthcare, life sciences, or other highly regulated environments • 5+ years of experience leading cyber security teams, programs, or cross-functional security initiatives • Familiarity with GxP, FDA regulations, 21 CFR Part 11, HIPAA, computerized system validation, and data integrity principles • Experience defining and executing enterprise cyber security strategy, roadmaps, controls, and operating models • Experience overseeing security operations, incident response, vulnerability management, threat monitoring, security engineering, or cyber risk management • Working knowledge of ISO 27001, SOC 2, NIST, CIS Controls, or similar standards • Experience translating cyber risk, security metrics, and technical concepts into recommendations for senior leadership and business stakeholders • Relevant security certification such as CISSP, CISM, CISA, CRISC, CCSP, or equivalent experience • Experience in a global, matrixed organization with complex technology environments and regulated customer requirements • Experience with cloud security across AWS, Azure, GCP, or hybrid cloud environments • Experience with SIEM, EDR/XDR, IAM, DLP, vulnerability management, third-party risk, or other enterprise security technologies • Experience supporting secure software development, product security, customer security assurance, or security-by-design programs • Experience leading incident readiness, tabletop exercises, penetration testing, red team/blue team activities, or post-incident improvement programs • Availability outside standard business hours to support urgent security incidents, escalations, or business-critical events as needed Benefits: • Incentive or bonus earnings eligibility • Flexibility to partner across global time zones as needed
This job posting was last updated on 9/23/2026