United States-Remote Remote (Country) Full-time USD 190,000 – 240,000 / year

OneStudyTeam is hiring a Director of Security

Responsibilities

  • Lead and supervise the Governance, Risk, Compliance, and Security Engineering teams, setting strategic direction, managing staff, and ensuring performance goals are met.
  • Oversee governance, risk, and compliance initiatives, maintaining ISO 27001 certification and ensuring audit preparedness for HIPAA and other regulatory frameworks.
  • Manage the lifecycle of security policies, conduct control testing, and ensure ongoing compliance with established standards.
  • Administer a vendor risk program, including assessments, due diligence, contract security terms, and ongoing monitoring of third parties.
  • Provide security evaluations and guidance related to artificial intelligence technologies, defining acceptable use policies and risk controls.
  • Assess risks associated with AI models and data usage, and recommend safeguards for AI-integrated systems.
  • Guide the development of secure cloud and enterprise architectures in coordination with engineering teams.
  • Collaborate on secure design principles for AWS, Azure, identity systems, networking, and data protection strategies.
  • Manage security engineering operations, including endpoint detection and response using CrowdStrike, SIEM systems, and automated response workflows.
  • Oversee cloud security posture management, vulnerability tracking, and security automation platforms.
  • Lead incident response planning and execution, including simulations, investigations, and post-incident analysis.
  • Manage security budgets, long-term planning, vendor agreements, and cost efficiency while maintaining control integrity.
  • Report security program health and risk levels to executive leadership and board members using defined metrics.
  • Define and monitor key performance and risk indicators to track program effectiveness.
  • Work with engineering leadership to implement secure software development practices and SDLC controls.
  • Develop and maintain a security roadmap aligned with organizational objectives and maturity goals.

Team

Structure: Manages the GRC and Security Engineering teams.

About company
OneStudyTeam

OneStudyTeam, a member of the Reify Health portfolio, provides the cloud-based platform StudyTeam to accelerate the development of new and life-saving therapies. StudyTeam brings research site workflows online and enables sites, sponsors, and other key stakeholders to work together more effectively using common technology.

The suite of StudyTeam solutions reduces site burden and helps sites pre-screen and enroll more patients, provides sponsors with end-to-end visibility into recruitment activity across all channels, and guides sites in conducting the trial for patients who have been enrolled.

StudyTeam is trusted by the largest global biopharmaceutical companies, used in over 10,000 research sites, and is available in over 100 countries. One mission. One team. That’s OneStudyTeam.

All jobs at OneStudyTeam Visit website
Job Details
Category management
Posted a month ago