Head of Global Cybersecurity
Legend BiotechAbout the role
Legend Biotech is a global biotechnology company dedicated to treating, and one day curing, life-threatening diseases. Headquartered in Somerset, New Jersey, we are developing advanced cell therapies across a diverse array of technology platforms, including autologous and allogenic chimeric antigen receptor T-cell, T-cell receptor (TCR-T), and natural killer (NK) cell-based immunotherapy. From our three R&D sites around the world, we apply these innovative technologies to pursue the discovery of safe, efficacious and cutting-edge therapeutics for patients worldwide.
Legend Biotech entered into a global collaboration agreement with Janssen, one of the pharmaceutical companies of Johnson & Johnson, to jointly develop and commercialize ciltacabtagene autolecuel (cilta-cel). Our strategic partnership is designed to combine the strengths and expertise of both companies to advance the promise of an immunotherapy in the treatment of multiple myeloma.
Legend Biotech is seeking Head of Global Cybersecurity as part of the IT team based in Somerset, NJ.
Role Overview
The Head of Global Cybersecurity is a senior leadership role that will oversee and shape the organization’s entire cybersecurity strategy, encompassing people, processes, and technologies. This role requires not only high-level strategic direction but also hands-on responsibility for developing and implementing cybersecurity capabilities across the organization’s global operations. This role will be reported to the Head of Information Technology and will be a member of the Global IT Leadership Team.
Key Responsibilities
- Cybersecurity Strategy and Policy Development: Lead the creation of a comprehensive cybersecurity strategy aligned with global business objectives. Develop policies to protect information assets and ensure regulatory compliance. Balance security needs with operational efficiency through a risk-based approach.
- Risk Management and Threat Analysis: Identify, assess, and mitigate cybersecurity risks across all regions and systems. Develop and apply risk management frameworks, performing regular threat assessments to address vulnerabilities proactively.
- Incident Response and Recovery: Establish and maintain robust incident response protocols, including detection, response, and recovery procedures. Lead the organization through high-stakes incidents, minimizing operational impact and safeguarding data integrity.
- Solution Development Based on Risk: Develop and implement cybersecurity solutions that are tailored to the specific risk profiles. Utilize a risk-based approach to prioritize and address the most critical vulnerabilities, ensuring that resources are allocated efficiently. Continuously monitor and adapt solutions to evolving threats, maintaining a proactive stance in safeguarding the organization's assets.
- Collaboration and Reporting: Collaborate with the Global IT Leadership Team to align IT and cybersecurity initiatives, fostering a unified approach to protecting organizational assets. Report on cybersecurity performance, risk status, and incidents to executive stakeholders and the audit committee.
- Leadership and Team Management: Oversee the global cybersecurity team, including recruitment, training, and development. Promote a culture of security awareness and ensure alignment with cybersecurity goals.
- Technology and Vendor Management: Select, implement, and oversee cybersecurity technologies and solutions. Manage third-party vendor relationships to ensure compliance with organizational cybersecurity standards.
- The incumbent has the authority to make decisions related to technical direction, methodologies, approaches and processes. The person can also make decisions related to project execution, including timelines, milestones and resource allocation within budget. Higher-level approvals are required for those related to significant budget allocations, strategic shifts, or actions may involve significant risks to the company or have substantial financial or long-term implications.
Requirements
- Degree in a technology-related field or business administration.
- Professional security management certification (e.g., CISSP, CISM) preferred.
- Leadership in Multinational Corporations: Demonstrated expertise in managing cybersecurity operations across diverse regions, including China, the US, and the EU. Skilled in na
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s