Skip to main content
Viatris logo

Director, Information Security Governance Risk Compliance

Viatris
August 25, 2026
Full-time
Remote friendly (United States)
Worldwide
IT
Role: Director of Governance, Risk & Compliance (GRC) leading enterprise cybersecurity, privacy, quality, and regulatory compliance within a pharmaceutical context. Responsibilities: develop and mature cybersecurity governance frameworks, manage risk assessments, oversee third-party security, ensure audit readiness, and align security initiatives with GxP, HIPAA, GDPR, SOX, FDA, and other industry standards. Collaborate with executive leadership, legal, IT, quality, manufacturing, and risk management teams; develop strategic roadmaps, oversee remediation, and promote security awareness. Requirements: Bachelor's degree in MIS, IT, Engineering or related; 8+ years in cybersecurity or IT; strong knowledge of pharmaceutical industry regulations, risk management, audit practices, cloud security, and data protection. Preferred qualifications include a master's degree and experience with cybersecurity frameworks, cloud technologies, and vendor governance. High-Value: biopharma cybersecurity governance, compliance with GxP and global data regulations, risk management, third-party security, audit preparedness, and cross-functional stakeholder engagement. Work setup: not specified.