IT Security Risk and Compliance Analyst II
We are the first publicly-traded biotech or pharmaceutical company to take the form of a public benefit corporation. Our public benefit purpose is to provide a brighter future for patients through the development of novel pharmaceutical therapies and technologies that expand the availability of transplantable organs. Founded in 1996 by a family seeking a cure for their daughter’s pulmonary arterial hypertension (PAH), we now have six FDA-approved therapies treating PAH, pulmonary hypertension associated with interstitial lung disease (PH-ILD), and neuroblastoma, a rare pediatric cancer. Our near-term pipeline focuses on additional therapies for PAH and pulmonary fibrosis (PF). We are also pioneering manufactured organs to address the shortage of kidneys, hearts, lungs, and livers available for transplant, aiming to eliminate transplant waiting lists and cure end-stage organ diseases.
About the role
In this role, you'll collaborate closely with cross-functional teams to design, implement, and optimize creative and cutting-edge IT security, risk, and compliance programs. You will drive security initiatives forward by coordinating, tracking, and reporting on key efforts to ensure alignment with our risk strategy and compliance goals. This is an opportunity to impact cybersecurity while working on innovative solutions within a dynamic team dedicated to securing the future of United Therapeutics.
Responsibilities
- Support the organization's Information Security, Risk, and Compliance programs (e.g., Vulnerability Management Program) to address information technology risks in alignment with the organization's risk appetite and compliance requirements.
- Serve as a consultant to ensure understanding of and adherence to existing security, risk, and compliance principles and requirements.
- Develop and analyze reports and alerts to identify gaps and propose changes to improve the organization's security, risk, and compliance posture.
- Evaluate existing and proposed technology solutions, providing recommendations and guidance to ensure business and security needs are met.
- Participate in risk assessments, perform risk analysis, and partner with stakeholders to create treatment plans that achieve an acceptable level of risk.
- Engage in cross-functional teams, including third parties, to drive security, risk, and compliance initiatives through to completion.
- Partner with other IT teams to successfully achieve organizational goals and objectives.
- Participate in incident response activities for all potential and declared IT security incidents, conducting root cause analysis and lessons learned reviews for continuous process improvement.
- Monitor advancements in information privacy and security technologies to ensure organizational adaptation and compliance.
- Assist with creating and updating IT security and compliance documentation.
- Review and investigate security-related cases, alerts, and events.
- Monitor and provide oversight of IT security tools and platforms.
Requirements
- H.S. Diploma or General Education Degree with at least 6 years of relevant work experience, or an Associate’s degree with at least 4 years of relevant work experience, or a Bachelor’s degree with at least 2 years of relevant work experience.
- At least 2 years of experience in information security.
- Superior organizational, prioritization, and time management skills.
- Ability to maintain a high level of integrity and confidentiality.
- Demonstrated problem-solving ability and analytical skills.
- Ability to interact, listen, and communicate effectively, both written and verbal, with all stakeholders.
Preferred Qualifications
- Experience working in the pharmaceutical/biotechnology industry.
- Experience in risk management.
- Experience with managing change control processes.
- SANS GSE certification.
- Root cause analysis skills.
Schedule
This is a hybrid role in Silver Spring, MD, requiring onsite presence at least 2 days a week.
Pay
The salary for this position ranges from $91,000 to $125,000 per year. This role is also eligible for the Company’s short-term and long-term incentive programs.
Benefits
- Comprehensive medical, dental, vision, and prescription coverage.
- Employee wellness resources.
- Savings plans (401k and ESPP).
- Paid time off and paid parental leave.
- Disability benefits.
For additional information on Company benefits, visit https://www.unither.com/careers/benefits-and-amenities.