Information Security GRC - Compliance Specialist
AmgenAbout the role
Career Category
Information SystemsJob Description
HOW MIGHT YOU DEFY IMAGINATION?
You’ve worked hard to become the professional you are today and are now ready to take the next step in your career. How will you put your skills, experience and passion to work toward your goals? At Amgen, our shared mission—to serve patients—drives all that we do. It is key to our becoming one of the world’s leading biotechnology companies, reaching over 10 million patients worldwide. Come do your best work alongside other innovative, driven professionals in this meaningful role.
Information Security - Compliance Specialist
Live
What you will do
Let’s do this. Let’s change the world. In this vital role you will lead and support Compliance activities that support the mission, priorities, and objectives of Amgen’s Cybersecurity & Digital Trust (CDT) team. The ISA Process is an assessment process for reviewing systems enterprise wide ensuring compliance with various regulatory and privacy requirements. Assessments are reviewed and outputs are leveraged for other processes to reduce any identified risks and protect and secure Amgen’s information.
You will be responsible for:
- Serve as the Integrated System Assessment Process Owner.
- Manage the day-to-day Integrated System Assessment Compliance Process with collaborators and business owners.
- Educate and inform stakeholders and business owners on the assessment process
- Develop and implement comprehensive compliance strategies that drive fit for purpose assessments.
- Manage the updates and improvements related to the Integrated System Assessment process.
- Measure the effectiveness of compliance through targeted metrics and feedback mechanisms, adjusting strategies as needed.
- Improve Amgen’s maturity posture related to Compliance. Support the ongoing assessment activities.
- Collaborate with internal partners including IT, Legal, Compliance, Quality, Privacy, and Audit to ensure a unified approach compliance across the company.
- Ensure operational excellence of the service, platforms and supporting technology and maintain compliance and process consistency to achieve operational objectives
- Maintains, socializes, and improves guidance and training across the enterprise.
- Partners with internal ServiceNow team to drive improvements with the process
- Ensure information related policies align with HIPAA, PCI, GxP, SOX, IP and other applicable regulations
- Assist and inform team members with Record Retention requirements
- Liaise with business units to ensure good information practices and controls are effective and appropriately meet relevant compliance, information risk, policy and regulatory requirements
- Provide guidance on global information management policies, controls and services
- Address records and information management capabilities and practices in support of existing and evolving information and compliance risks
- Actively engage with leadership to inform strategic direction of the service and gain multi-functional support for strategic program development
Win
What we expect of you
We are all different, yet we all use our unique contributions to serve patients. The security professional we seek is a detail oriented with these qualifications.
Basic Qualifications:
Doctorate degree in Information Security
OR
Master’s degree and 2 years of Information Security experience
Or
Bachelor’s degree and 4 years of Information Security experience
Or
Associate’s degree and 8 years of Information Security experience
Or
High school diploma / GED and 10 years of Information Security experience
Preferred Qualifications:
- ServiceNow Experience required
- Ability to identify and inform management of issues that impact compliance
- Experience writing new and evolving existing compliance policies, and interpret relevant legislation and regulations that drive policy
- Customer service experience and management of global information management services
- Possesses solid project management, process improvement, analytical, and presentation skills
- Experience supporting effective compliance policies enterprise-wide
- Guide and educate staff in good information management practices and how to effectively manage their physical and electronic information
- Understands data classification, data protection and records retention, what drives each, and how each is important to information management standard methodologies
- Prior personnel and service delivery management experience
- Ability to independently manage priorities and meet deadlines in a fast-paced, virtual team environment<
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s