Data Protection Program Director
Emergent BioSolutionsAbout the role
We go where others won’t, taking on some of the biggest public health challenges to protect and enhance millions of lives, and create a better, more secure world. Here, you will join passionate professionals who advance their scientific, technical and professional skills to develop products designed-to protect and enhance life.
I. JOB SUMMARY
The Data Protection Program Director is responsible for the effective execution of the Emergent data classification, IT disaster recovery planning and cyber incident response management programs. This includes providing thought leadership, directing, evangelizing, and overseeing the development of the programs’ roadmap and creation of and reporting on metrics for roadmap milestones, including the implementation of controls, development of metrics, and planning, driving, and ensuring completion of key activities within these programs. The scope of responsibility is global, enterprise-wide and will span all areas of the programs and initiatives.
II. ESSENTIAL FUNCTIONS
Reasonable accommodations will be made to enable individuals with disabilities to perform the essential functions.
The essential job functions and primary responsibilities of the Data Protection Program Director will include, but are not limited to the following, as a direct report to the Chief Information Security Officer:
Data Classification Program
• Leads and directs business stakeholders to establish schedule, budget, and assure quality of all program elements.
• Keeps close, direct contact with IT and other stakeholders and business partners to ensure that activities deliver the expected outcomes and contribute to strategic decisions and milestones on the data classification roadmap.
• Acts as the communications conduit to stakeholders and the information security working group; conducts periodic briefings and status update presentations, as needed.
• Leads risk assessment and audit activities related to the program initiatives and maintains documentation of all assessment and audit findings, together with metrics for initiatives and roadmap milestones.
Disaster Recovery Program
• Provide thought leadership, subject matter expertise and directs the development of comprehensive business continuity plans and technology recovery plans for each functional area.
• Lead cross-functional team to conduct and perform business impact analysis and risk assessments throughout the enterprise.
• Lead the development and implementation of standards, procedures in support of the disaster recovery program and meeting regulatory and clients’ requirements.
• Act as the Disaster Recovery subject matter expert across all Emergent environments including the development of new features and services.
• Develop an in-depth understanding of business processes, technology assets, and interdependencies of the organization.
• Lead the organization to design, organize, conduct, and document tabletop exercise and drills with the goal of driving changes in our Disaster Recovery preparedness.
• Lead and support Emergent leadership team in the coordination and execution of the plans in response to any business interruption.
eDiscovery Program
• Management of case data, recording and logging of findings in online case management tool
• Collaboration with Legal, Business Conduct, Human Resources, Global Security and other Emergent partners on data collection and data analysis to meet eDiscovery or legal inquiry objectives
• Provide written reports to senior management
• Embrace continuous development in support of investigation/eDiscovery new or evolving technologies and processes
• Seek out ways to improve SOPs in emerging technology environment
• Demonstrate flexibility to accommodate a dynamic work environment
• Support and improve procedures regarding chain of custody practices
Cyber Incident Response Program
• Lead and collaborate with IT, OT, Legal, HR, Ethic& Compliance, and other internal and external resources to ensure security incident response processes and tools are in place to manage security incidents and to meet business objectives and regulatory requirements
• Provide training and awareness for security incident management including tabletop, scenario-based and live testing exercises
• Lead investigation of security incidents from confirmation of the incident to resolution and capturing lessons learned
• Coordinate with technical teams and third-party vendors to triage and contain threats and quickly mitigate damages
The above statements are intended to describe the nature of work performed by those in this job and are not an exhaustive list of all duties. Nothing in this job description restricts managements right to assign or rea
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s