Demo

Director, Information Security Risk Management, Governance and Privacy

Endo
Greendale, WI Full Time
POSTED ON 1/19/2025
AVAILABLE BEFORE 4/19/2025

Director, Information Security Risk Management, Governance and Privacy

We want the best and brightest people at Endo to help us achieve our mission to develop and deliver life-enhancing products through focused execution. Our nearly 3,000 global team members understand the important role we play in delivering healthcare and are dedicated to supporting each other as we work to bring the best treatments forward. Our shared values of Integrity & Quality, Innovation, Drive, Collaboration and Empathy guide our team and enable us to deliver upon our vision of helping everyone we serve live their best life.

Have you got the right qualifications and skills for this job Find out below, and hit apply to be considered.

At Endo, we are building a diverse, equitable and inclusive workplace, and we are looking for talented individuals to join our team.

Job Description Summary

The Director of Information Technology Risk, Governance, and Privacy, under the direction of Endo’s Chief Information Security Officer, is responsible for the development and execution of Endo’s Information Security Risk Management Program. This leader will spearhead the enterprise risk management framework's transformation and align risk management strategies with the organizational goals. This role creates and maintains the overall information technology risk management framework while ensuring compliance with all legal and regulatory requirements. This role will oversee developing and managing policies, standards, and controls to protect the company's data and assets. This leader will work closely with various departments, including Privacy, Legal, Audit, Compliance, Information Technology, and Human Resources, to ensure the protection of information and compliance with relevant regulations.

Accountability :

  • Refine and lead the IT Third Party Risk Program, including periodic reassessment of incumbent vendors.
  • Configuration of security tools used in the risk assessment program.
  • Integrate privacy considerations into vendor risk assessment scoring criteria.
  • Develop and implement risk management policies, processes, and tools.
  • Lead the design, implementation, and operational support of IT security controls, audit corrective action programs, and procedures.
  • Identify controls policies and recommend risk-mitigating solutions for process gaps.
  • Ability to effectively communicate residual risk to senior stakeholders.
  • Advise management on high-priority risks and controls gaps.
  • Ability to influence others and develop effective company-wide relationships across all areas of compliance, audit, and information technology.
  • Collaborate with cross-functional teams to identify, assess, and mitigate risks.
  • Lead the development and collection of key performance metrics (KPIs).
  • Cultivate capabilities of junior IT security team members.
  • Actively contribute to enterprise compliance and governance programs across cross-functional process areas and support corporate strategic objectives.
  • Monitor adherence to ensure effective work relationships and business goal realization.

Education & Experience :

  • Bachelor’s degree in Business, Information Technology, Computer Science, or a related field preferred.
  • Minimum of 8 years of Risk Management experience required.
  • 8 years of audit, control, and compliance in technology processes supporting risk management initiatives across security functional areas.
  • Strong knowledge of IT security control concepts.
  • Excellent written and verbal communication skills and collaboration skills. Possesses strong stakeholder management skills.
  • Ability to develop and implement effective IT risk management and security strategies.
  • Experience working with Privacy, Legal, Audit, Compliance, Information Technology, and Human Resources departments.
  • Relevant certifications such as CISSP, CISM, CRISC, and CERP are preferred.
  • Knowledge :

  • Incident response and security event analysis.
  • Threat intelligence & mitigation strategies.
  • Risk & Vulnerability Management.
  • NIST 800-53 and CSF 2.0.
  • Risk scoring and calculations.
  • Corrective Action Program Management.
  • Privacy regulations for HIPAA, GDPR, CCPA.
  • Skills & Abilities :

  • Significant business knowledge of risk management and regulatory requirements.
  • Strong analytical and organizational skills with a focus on attention to detail.
  • Exceptional executive presentation and communication skills.
  • Excellent influencing, collaboration, and problem-resolution skills.
  • Ability to deliver messaging across a broad spectrum of team members having varying degrees of technical understanding.
  • Strong leadership qualities which enable you to work with peers and various levels of management.
  • Understanding and knowledge of industry best practice methodologies.
  • Continuous improvement based on lessons learned.
  • Commitment to Diversity, Equity, and Inclusion :

    At Endo, our diversity unites and empowers us as One Team, and we are committed to cultivating, and valuing, each person’s unique perspective. We actively promote a culture of inclusion that draws strength from our broad spectrums of diversity, including race, ethnicity, religion, gender identity or expression, national origin, color, sexual orientation, disability status, age, and all our other unique characteristics, qualifications, demonstrated skills, achievements, and contributions, backgrounds, experiences, cultures, styles, and talents.

    EEO Statement :

    At Endo, we firmly believe in the principles of equal employment opportunity and strive to create an atmosphere where all employees, regardless of their race, color, creed, religion, sex, gender identity or expression, sexual orientation, national origin, genetics, disability (including pregnancy), age, or military or veteran status, feel valued, respected, and empowered. Our commitment to EEO extends to every aspect of employment, including recruitment, hiring, training, promotions, compensation, benefits, transfers, terminations, and all other employment practices. We are dedicated to ensuring that all employment decisions are based on qualifications, skills, and merit.

    J-18808-Ljbffr

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Director, Information Security Risk Management, Governance and Privacy?

    Sign up to receive alerts about other jobs on the Director, Information Security Risk Management, Governance and Privacy career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $270,069 - $359,305
    Income Estimation: 
    $152,549 - $188,894
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Endo

    Endo
    Hired Organization Address Little Rock, AR Full Time
    The Field Reimbursement Manager (FRM) is a critical front-line member of the Endo Access and Reimbursement team who repr...
    Endo
    Hired Organization Address New Haven, CT Full Time
    The Field Reimbursement Manager (FRM) is a critical front-line member of the Endo Access and Reimbursement team who repr...
    Endo
    Hired Organization Address Horsham, PA Full Time
    Why Endo? We want the best and brightest people at Endo to help us achieve our mission to develop and deliver life-enhan...
    Endo
    Hired Organization Address Malvern, PA Intern
    Why Endo? We want the best and brightest people at Endo to help us achieve our mission to develop and deliver life-enhan...

    Not the job you're looking for? Here are some other Director, Information Security Risk Management, Governance and Privacy jobs in the Greendale, WI area that may be a better fit.

    Director, Quality and Risk Management

    GENERAL JOHN J. PERSHING MEMORIAL HOSPITAL ASSOCIATION, Brookfield, WI

    AI Assistant is available now!

    Feel free to start your new journey!