Cyber Security Compliance Intern
On-siteSant Cugat del Vallès, Catalonia, Spain
Job Summary
Coordinate and manage product security and privacy compliance activities, including preparing and delivering communication and training to educate teams on evolving compliance landscapes. Author new or updated policies and procedures, create relevant documentation for legal and regulatory requirements such as HIPAA and GDPR, and maintain intranet repositories. Support sales, product teams, and IT groups to address customer questions by reviewing contract templates and contributing security language. Escalate actual or potential compliance violations according to local, regional, and global policies. Manage the preparation, execution, and remediation of internal and external compliance audits while maintaining IT internal controls. Review key processing activities, data protection impact assessments, and data retention approaches.
Required Qualifications
- Bachelor degree in a field with a strong emphasis on information security, computer, communication, or related majors
- 1+ years cybersecurity and/or privacy program management experience
- exposure to large-scale systems in fast-paced environment
- Audit and/or compliance related roles experience in multinational environments
- Experience in using data and metrics to define business strategy and gain executive support for new visions
- Knowledge of HIPAA, GDPR, and other privacy relevant legislation and regulations
- Excellent Verbal/Written communication & data presentation skills
- proved ability to effectively communicate with both business and technical teams
- Ability to work in and with globally distributed and multi-cultural teams
- Best in class attitude
- challenge status constructively and contribute to improvements
- results oriented
- ability to influence
- solution oriented mindset
Desired Qualifications
- master degree
- Preferable related experience in the healthcare, diagnostics, and / or pharmaceutical industry
- Experience working in a Software Development environment
- Valuable certifications: ISO 27001 Lead Auditor, CISA, CISM, CISSP, GIAC, OSCP, SSCP or equivalent certification
- Proven ability to influence change at all levels within an organization
- Expert planner with business process definition experience
- a strong IT aptitude
- Knowledge of Product Development Life Cycles (PDLC)
- Working knowledge or willingness to quickly learn the content and requirements of various laws, regulations, industry guidance, and company compliance policies, particularly related to privacy, data disclosure, and cybersecurity
- Demonstrate data analytical skills
- creativity
- experience working with attention to detail
- Experience maintaining open, candid, and trusting work relationships
- Ability to "Zoom Out" (see the big picture and give strategic direction)
- Ability to "Zoom in" (to provide more granularity when exchanging with a wide range of experts
- Strong business acumen
- sensitive to business needs
- view change as an opportunity
- eager to work in a fast-paced environment
- Strong organizational skills
- ability to prioritize and manage multiple projects simultaneously
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.