Director, Cybersecurity - Governance, Risk & Compliance (GRC)

Catalent
Virginia
Full-time

Position Summary

The Director, Cybersecurity - Governance, Risk, and Compliance (GRC) will lead the development, implementation, and ongoing management of our cybersecurity governance, risk, and compliance program.

The Director will play a pivotal role in safeguarding sensitive company, customer, and partner information and ensure operational resilience of critical business processes and operations.

The Director, Cybersecurity - Governance, Risk, and Compliance will report to the Chief Information Security Officer (CISO) and must have the following key competencies :

Understanding of business goals and objectives in a global GxP environment, deep understanding of business outcomes, capabilities, value streams and processes, and proactively and holistically leading responses to disruptive forces by identifying and analyzing solutions to enable the desired business vision and outcomes

Leading the creation of deliverables related to design and analysis of technology solutions to ensure that solutions exceed business needs

Self-starter and hands-on individual that has a high degree of initiative, judgment, discretion, and decision making; with an ability to problem solve and facilitate solutions.

Orchestrating solutions delivery by providing the necessary leadership to tasks related to the development of an enterprise’s solutions architecture, such as governance, creating portfolio roadmap and monitoring current state with the ability to support different development approaches, such as waterfall and agile

Facilitating and collaborating to deliver business value by providing support to, the project management office, business relationship managers and application owners throughout the solution’s life cycle

This is a field-based, remote role. The ideal candidate will be in the Central or Eastern time zones.

The Role

Develop and implement a strategic cybersecurity GRC program aligned with industry best practices and regulatory requirements.

Oversee the creation, maintenance, and execution of cybersecurity risk assessments, including vulnerability assessments, penetration testing, and vendor risk assessments.

Lead the development and implementation of comprehensive cybersecurity policies, standards, and procedures, ensuring they are current, relevant, and communicated effectively across the organization.

Partner with business unit leaders and IT teams to integrate cybersecurity GRC initiatives with broader business objectives.

Support and maintain a cybersecurity training and awareness program, including innovative engagement ideas and gamification to increase awareness, and build a relationship with business partners.

Conduct regular assessments and reviews of cybersecurity controls to ensure effectiveness and compliance.

Develop and maintain clear and concise reporting metrics to track the effectiveness of the cybersecurity GRC program and report progress to senior management and the Board of Directors.

Stay abreast of evolving cybersecurity threats, regulations, and industry best practices.

The Candidate

Bachelor's degree in Information Security, Cybersecurity, Computer Science, or a related field (Master's degree preferred).

10+ years of experience in cybersecurity GRC, with a minimum of 5 years in a leadership role.

Proven track record of developing and implementing successful cybersecurity GRC programs in a regulated environment.

In-depth knowledge of relevant cybersecurity frameworks (NIST CSF, ISO27001, COBIT 5, etc.) and industry regulations

Strong understanding of information security risk management principles and methodologies.

Excellent communication, collaboration, and interpersonal skills.

Ability to lead and motivate a team of cybersecurity professionals.

Strong analytical and problem-solving skills.

Excellent written and verbal communication skills.

Demonstrable leadership experience at Catalent (including but not limited to participation in Catalent-sponsored leadership programs such as NGGL, GOLD, LEAD Now, GM Excellence, and GROW) may be considered in place of external experience.

Why You Should Join Catalent

Defined career path and annual performance review and feedback process

Potential for career growth on an expanding team within an organization dedicated to preserving and bettering lives

Dynamic, fast-paced work environment

Generous 401K match and Paid Time Off accrual

Medical, dental and vision benefits effective day one of employment

Tuition Reimbursement

GymPass program to promote overall physical wellness

Perkspot - offers exclusive or private discounts from approximately 900+ merchants in a wide array of categories

Catalent offers rewarding opportunities to further your career! Join the global drug development and delivery leader and help us bring over 7,000 life-saving and life-enhancing products to patients around the world.

Catalent is an exciting and growing international company where employees work directly with pharma, biopharma and consumer health companies of all sizes to advance new medicines from early development to clinical trials and to the market.

Catalent produces more than 70 billion doses per year, and each one will be used by someone who is counting on us. Join us in making a difference.

Catalent is committed to the health and safety of its employees, visitors and the customers and patients we serve. As a result of the global pandemic, we have modified many of our recruitment and on-boarding processes to maintain everyone’s safety.

The Human Resources teams will communicate all necessary safety processes and procedures throughout each stage.

personal initiative. dynamic pace. meaningful work.

Visit to explore career opportunities.

Catalent is an Equal Opportunity Employer, including disability and veterans.

If you require reasonable accommodation for any part of the application or hiring process due to a disability, you may submit your request by sending an email, and confirming your request for an accommodation and include the job number, title and location to .

This option is reserved for individuals who require accommodation due to a disability. Information received will be processed by a U.

S. Catalent employee and then routed to a local recruiter who will provide assistance to ensure appropriate consideration in the application or hiring process.

Notice to Agency and Search Firm Representatives : Catalent Pharma Solutions (Catalent) is not accepting unsolicited resumes from agencies and / or search firms for this job posting.

Resumes submitted to any Catalent employee by a third party agency and / or search firm without a valid written & signed search agreement, will become the sole property of Catalent.

No fee will be paid if a candidate is hired for this position as a result of an unsolicited agency or search firm referral. Thank you.

Important Security Notice to U.S. Job Seekers :

Catalent NEVER asks candidates to provide any type of payment, bank details, photocopies of identification, social security number or other highly sensitive personal information during the offer process, and we NEVER do so via email or social media.

If you receive any such request, DO NOT respond it is a fraudulent request. Please forward such requests to for us to investigate with local authorities.

California Job Seekers can find our California Job Applicant Notice .

3 days ago
Related jobs
Promoted
Public Broadcasting Service
Alexandria, Virginia

The Director of Cybersecurity Governance, Risk, and Compliance core responsibilities are to develop, implement, maintain, manage, govern, and facilitate the enterprise's cybersecurity governance, risk, and compliance (GRC) and business continuity management (BCM) programs. Director, Cybersecurity Go...

Promoted
VirtualVocations
Richmond, Virginia

A company is looking for a Governance Risk and Compliance Specialist. ...

Promoted
BDO USA, LLP
McLean, Virginia

Under the direction of the Regional Business Development Director (RBDD), and in collaboration with practice leadership, and the Chief Business Development Officer, the Director of Business Development, Legal, Compliance & Risk, is responsible for driving, monitoring and improving sales performa...

Promoted
VirtualVocations
Richmond, Virginia

A company is looking for an Associate, Governance, Risk and Compliance. Key Responsibilities:Support compliance efforts across various regulatory frameworksConduct assessments on cybersecurity requirements and control inventory to identify gapsMaintain security inventory for audit artifacts, ensurin...

Promoted
Kforce Inc
Alexandria, Virginia

Plan, build, run and manage governance, risk, and compliance (GRC) program in accordance with industry standards and frameworks. Kforce has a client that is seeking a Director of Cybersecurity GRC in Alexandria, VA. Applicable scope of responsibilities includes Enterprise Risk Management Program; En...

Beacon Resources
Alexandria, Virginia

Director, Cyber Security, Governance, Risk and Compliance. Are you looking for a growth opportunity for a reputable company with a positive work environment? Our client is looking for a Director, Cyber Security, Governance, Risk and Compliance to join their team. ...

iboss
Richmond, Virginia

The IT Governance, Risk, and Compliance Specialist will play a key role on the iboss team by aligning security initiatives with enterprise programs and business objectives. The IT GRC Specialist will make an impact on iboss’ security program and services through experience with various areas includi...

Ankura
Virginia

Professional and conceptual agility to design and execute compliance risk mitigation and information security solutions that are adaptive to client risks and requirements across multiple domains  . This position supports the Ankura Risk, Forensics & Compliance practice - one of six practice...

BDO
McLean, Virginia

Under the direction of the Regional Business Development Director (RBDD), and in collaboration with practice leadership, and the Chief Business Development Officer, the Director of Business Development, Legal, Compliance & Risk, is responsible for driving, monitoring and improving sales performance ...

Ankura
Virginia

Professional and conceptual agility to design and execute compliance risk mitigation and information security solutions that are adaptive to client risks and requirements across multiple domains  . This position supports the Ankura Risk, Forensics & Compliance practice - one of six practice...