Sr Info Security Risk Analyst I - Hybrid
Every day we perform better because of how we work together, as one team, each the best at what we do. We bring a wide range of talented experts together across a wide range of business-critical services that support our business. Every role within Corporate is vital to furthering our vision of Shortening the Distance from Lab to Life .
Discover what our 29,000 employees, across 110 countries already know.
Job Responsibilities
This role is open to candidates based in the following locations:
- Belgrade, Serbia (SRB-Belgrade) - Czech Republic: Prague (Hybrid) - Spain: Barcelona (Hybrid), Madrid (Hybrid) -Hungary: Budapest (Hybrid) -Poland: Warsaw (Hybrid) -India: Hyderabad (Hybrid) -Portugal: Remote
JOB RESPONSIBILITIES
- Serves as a member of the working team for Risk Management within the Governance, Risk, and Assurance (GRA) function.
- Evaluates and manages security exception requests, ensuring compliance with security standards and mitigating associated risks.
- Conducts information security risk assessments of internal processes, and IT solutions as an information security risk subject matter expert.
- Prepares security exception risk profile and reports to relevant stakeholders.
- Collaborates with cross-functional teams to ensure risk management practices align with business objectives and compliance requirements.
- Identifies, analyzes, assesses, monitors, and tracks risks in the information security risk register.
- Monitors, tracks, and manages risk mitigations and exceptions to ensure cyber security policies and standards are established, implemented, and followed.
- Collaborates with internal stakeholders (Security Operations, Technology Solutions, Privacy, Regulatory & Compliance, etc.) as part of the risk management program.
- Participates in ad-hoc, non-systematic risk assessment requests.
- Stays updated with the latest cybersecurity trends, emerging threats, and industry developments to provide proactive risk mitigation recommendations.
QUALIFICATION REQUIREMENTS
- Bachelor s degree in computer science, Information Security, or a related field is required. Relevant certifications such as CISSP, CRISC, or ISO 27001 auditor will be considered as a plus.
- Minimum 3 years experience working as an Information Security Risk Analyst or in a similar role focused on information security risk management.
- Possess strong process knowledge, and ability to design and/or improve risk management processes.
- Experience in utilizing tools for risk profile data collection is desirable.
- Good knowledge of cybersecurity principles, governance, and regulatory compliance
- Deep understanding of risk assessment methodologies, vulnerability management, and security control frameworks (e.g., NIST RMF and CSF, ISO 27001, COBIT)
- Familiarity with security controls, technologies, and best practices to mitigate cyber risks.
- Proficient in Microsoft Office (Excel, PowerPoint, Word)
- Demonstrate sound judgment and decision-making skills when dealing with complex cybersecurity risks.
- Strong communication and interpersonal skills to collaborate effectively with cross-functional teams and stakeholders.
- Ability to work independently as well as collaboratively in a team environment, prioritize tasks, and manage time effectively.
- Excellent analytical and problem-solving skills.
- #LI-VM1
Over the past 5 years, we have worked with 94% of all Novel FDA Approved Drugs, 95% of EMA Authorized Products and over 200 Studies across 73,000 Sites and 675,000+ Trial patients.
No matter what your role is, you ll take the initiative and challenge the status quo with us in a highly competitive and ever-changing environment. Learn more about Syneos Health.
Tasks, duties, and responsibilities as listed in this job description are not exhaustive. The Company, at its sole discretion and with no prior notice, may assign other tasks, duties, and job responsibilities. Equivalent experience, skills, and/or education will also be considered so qualifications of incumbents may differ from those listed in the Job Description. The Company, at its sole discretion, will determine what constitutes as equivalent to the qualifications described above. Further, nothing contained herein should be construed to create an employment contract. Occasionally, required skills/experiences for jobs are expressed in brief terms. Any language contained herein is intended to fully comply with all obligations imposed by the legislation of each country in which it operates, including the implementation of the EU Equality Directive, in relation to the recruitment and employment of its employees. The Company is committed to compliance with the Americans with Disabilities Act, including the provision of reasonable accommodations, when appropriate, to assist employees or applicants to perform the essential functions of the job.