Manager, Security, Governance, Risk and Compliance
Jazz Pharmaceuticals
August 25, 2026
Remote friendly (Palo Alto, CA)
United States
Corporate Functions
Job Responsibilities
- Coordinate, partner, and align security activities across security and IT teams supporting enterprise platforms and SaaS/PaaS environments.
- Support implementation and maintenance of SaaS security governance processes aligned with internal policies, regulatory requirements, and industry standards.
- Coordinate security initiatives across core platforms; provide status reporting, issue tracking, and risk visibility to leadership.
- Track and report key risk indicators (KRIs), metrics, and compliance status.
- Help define, implement, and maintain security baselines, standards, and control frameworks for SaaS and PaaS solutions.
- Support control lifecycle management (definition, documentation, validation) and control mapping to frameworks (e.g., NIST, ISO 27001, OWASP).
- Support internal/external audits via audit readiness and evidence collection; coordinate security assessments and risk evaluations.
- Coordinate security exception process activities (risk documentation, stakeholder engagement, approval tracking, remediation follow-up) and monitor exception trends.
- Help coordinate security governance for Workday, Salesforce, Snowflake, ServiceNow, and Microsoft 365; support baselines and continuous control monitoring.
- Partner with platform owners to integrate security into configuration, change, and release management.
- Partner with business stakeholders to promote secure adoption; collaborate with IAM and data governance on access controls, RBAC, and data protection.
- Coordinate third-party/vendor activities to complete SGRC Vendor Risk Management and maintain required assessments.
Required Knowledge, Skills, and Abilities
- Experience in security program management, cloud security, SaaS governance, and SGRC.
- Knowledge of security frameworks (NIST, ISO 27001, OWASP) and ability to operationalize policies into controls.
- Ability to influence cross-functional teams and communicate risk.
- Familiarity with enterprise SaaS platforms; experience with audits, compliance programs, and continuous control monitoring.
- Knowledge of IAM, data protection, and SaaS security architectures.
- Metrics-driven security program experience (KPI/KRI development/reporting).
- Strong analytical, organizational, and stakeholder management skills.
- 5+ years in information security/cybersecurity governance/risk/compliance/cloud security or related.
Required/Preferred Education and Licenses
- Bachelorβs degree.
- CISSP, CISM, CRISC, CCSK, or comparable certification (preferred).
- Cloud security certifications (AWS, Azure, or GCP) (preferred).
- AI training.
Application instructions
- If you are a current Jazz employee, apply via the Internal Career site.
- Coordinate, partner, and align security activities across security and IT teams supporting enterprise platforms and SaaS/PaaS environments.
- Support implementation and maintenance of SaaS security governance processes aligned with internal policies, regulatory requirements, and industry standards.
- Coordinate security initiatives across core platforms; provide status reporting, issue tracking, and risk visibility to leadership.
- Track and report key risk indicators (KRIs), metrics, and compliance status.
- Help define, implement, and maintain security baselines, standards, and control frameworks for SaaS and PaaS solutions.
- Support control lifecycle management (definition, documentation, validation) and control mapping to frameworks (e.g., NIST, ISO 27001, OWASP).
- Support internal/external audits via audit readiness and evidence collection; coordinate security assessments and risk evaluations.
- Coordinate security exception process activities (risk documentation, stakeholder engagement, approval tracking, remediation follow-up) and monitor exception trends.
- Help coordinate security governance for Workday, Salesforce, Snowflake, ServiceNow, and Microsoft 365; support baselines and continuous control monitoring.
- Partner with platform owners to integrate security into configuration, change, and release management.
- Partner with business stakeholders to promote secure adoption; collaborate with IAM and data governance on access controls, RBAC, and data protection.
- Coordinate third-party/vendor activities to complete SGRC Vendor Risk Management and maintain required assessments.
Required Knowledge, Skills, and Abilities
- Experience in security program management, cloud security, SaaS governance, and SGRC.
- Knowledge of security frameworks (NIST, ISO 27001, OWASP) and ability to operationalize policies into controls.
- Ability to influence cross-functional teams and communicate risk.
- Familiarity with enterprise SaaS platforms; experience with audits, compliance programs, and continuous control monitoring.
- Knowledge of IAM, data protection, and SaaS security architectures.
- Metrics-driven security program experience (KPI/KRI development/reporting).
- Strong analytical, organizational, and stakeholder management skills.
- 5+ years in information security/cybersecurity governance/risk/compliance/cloud security or related.
Required/Preferred Education and Licenses
- Bachelorβs degree.
- CISSP, CISM, CRISC, CCSK, or comparable certification (preferred).
- Cloud security certifications (AWS, Azure, or GCP) (preferred).
- AI training.
Application instructions
- If you are a current Jazz employee, apply via the Internal Career site.