As a Security Analyst,you will be responsible forhelping secure high-quality AI driven medical device software that positively impacts patient lives at scale.
Your role is to assist in managing and maintaining the ISMS and supporting our security initiatives. The ideal candidate has a mixof experiencein Information Security, coming from either a security engineering role or from working withinGovernance and Risk Management (GRC) as this role is expected to cover multiple security streams and activities. The ideal candidate has experience in some of the Key responsibilities and Experience, with curiosity and drive to learn more and support a wide range of initiatives.
Responsibilities & Experience
Assist in management and maintenance of the Information Security Management System (ISMS) and ensure compliance with relevant industry standards and regulatory frameworks i.e. ISO 27001, GDPR, HIPAA
Conduct security assessments and audits to identify and address potential risks in systems and assistengineering teams in security compliance, development and triage and remediation of risks
Write relevant policies, procedures, and processes to support Security & Governance requirements.
Assist Security Operations and IT to improve technical security (e.g., firewalls, networking, anti-virus, SIEM).
Assist internal stakeholders in response to bids,tenders, and third-party security vetting/questionnaires (Drata, Vanta, Onetrust, Upguard, etc.)
Advocate a security first culture across the organisation, participating, promoting and creating security awareness
Experience in Data Security, Data Governance/Management, and improving Security Culture.
Previous experience in a technical background is requiredi.e. SOC / Networking / Administration /Software Developmentwith the ability to provide security consulting and advice to stakeholders
Effective communication and English language skills, ability to communicate with stakeholders at all levels.
Experience in the start-to-finish, implementation of security tools and processes.
Experience in Governance, Risk and Compliance activities.
Ability to work autonomously.
Minimum Qualifications
Relevant IT degree in Engineering / Science / Information Systems or previous experience (3 to 5 years) in an Information Security / Network Engineering / System Administration role; and
Hold at least one security certification, i.e. CISA, CISM, CISSP, SANS/BSI accreditation etc
Preferred Qualifications
Relevant experience with AI based solutions; and
Experience in software engineering products in a regulated environment (for example in healthcare, avionics, naval, automobiles), preferably Healthcare.