Senior manager, cybersecurity governance risk and compliance(grc)

15 ago - Pomezia
ALFASIGMA

As Cybersecurity Governance Senior Manager, you willmaintainand evolve Alfasigma's Cyber Governance, Risk &

- Compliance (GRC) framework across the Group, supporting the CISO in steering cyber risk management, regulatory compliance (NIS2, GDPR, Gx P) and security maturity. A senior, high-visibility role spanning cyber risk assessment, ISO/IEC 27001 and NIST CSF, third-party risk, OT risk governance, AI Act and security awareness in a global, regulated pharmaceutical environment.

Your role: Maintain and evolve the Group's Cyber Governance, Risk &

- Compliance framework (ISO/IEC 27001, NIST CSF, NIS2). Support the CISO in reporting cyber risk to committees and top management, translating technical risk into business priorities. Steer NIS2, GDPR and Gx P-related compliance across all Group companies and coordinate remediation plans. Lead enterprise cyber risk assessments and third-party / supply-chain risk assessments. Oversee OT risk governance, AI governance (AI Act) and Business Continuity / Operational Resilience. Design KPI/KRI reporting and dashboards for management and the Board, and run Security Awareness and security-culture programmes.

Who are you: 8+ years in Cybersecurity Governance, Risk Management or GRC, including experience supporting senior management. In-depth knowledge of NIS2, ISO/IEC 27001 and NIST CSF and of cyber risk assessment methodologies. ISO/IEC 27001 Lead Auditor certification

- GRC certifications (CISM, CISA, CRISC) are a plus.

Experience in complex regulated environments (Pharma / Life Sciences or Financial Services). Excellent ability to communicate cyber risk clearly and concisely. Excellent command of English. What's in it for you: A high-visibility role reporting directly to the CISO, shaping cyber governance for a growing global pharmaceutical group. Rome-based with hybrid working and a permanent, full-time contract. Real impact on the resilience and compliance posture of the entire Group.

Salary Pay Range: 75.000€ - 95.000€ The compensation range indicated in this job posting represents an estimated average range for the position.



The final remuneration will be determined based on the selected candidate's experience, skills, and qualifications, in accordance with applicable EU pay transparency and pay equity requirements Scope of the role: As Cybersecurity Governance Senior Manager, you willmaintainand evolve Alfasigma's Cyber Governance, Risk &

- Compliance (GRC) framework across the Group, supporting the CISO in steering cyber risk management, regulatory compliance (NIS2, GDPR, Gx P) and security maturity. A senior, high-visibility role spanning cyber risk assessment, ISO/IEC 27001 and NIST CSF, third-party risk, OT risk governance, AI Act and security awareness in a global, regulated pharmaceutical environment.

Your role: Maintain and evolve the Group's Cyber Governance, Risk &

- Compliance framework (ISO/IEC 27001, NIST CSF, NIS2). Support the CISO in reporting cyber risk to committees and top management, translating technical risk into business priorities. Steer NIS2, GDPR and Gx P-related compliance across all Group companies and coordinate remediation plans. Lead enterprise cyber risk assessments and third-party / supply-chain risk assessments. Oversee OT risk governance, AI governance (AI Act)and Business Continuity / Operational Resilience. Design KPI/KRI reporting and dashboards for management and the Board, andrun Security Awareness and security-cultureprogrammes.

Who are you: 8+ years in Cybersecurity Governance, Risk Management or GRC, including experience supporting senior management. In-depth knowledge of NIS2, ISO/IEC 27001 and NIST CSF,and ofcyberrisk-assessmentmethodologies. ISO/IEC 27001 Lead Auditor certification

- GRC certifications (CISM, CISA, CRISC)



are a plus.

Experience in complex regulated environments (Pharma / Life Sciences or Financial Services). Excellent ability to communicate cyber risk clearly and concisely. Excellent command of English. What's in it for you: A high-visibility role reporting directly to the CISO, shaping cyber governance for a growing global pharmaceutical group. Rome-based withhybrid working anda permanent, full-time contract. Real impact on the resilience and compliance posture of the entire Group.

Location: Pomezia, Rome Salary Pay Range: 75.000€ - 95.000€ The compensation range indicated in this job posting represents an estimated average range for the position. The final remuneration will be determined based on the selected candidate's experience, skills, and qualifications, in accordance with applicable EU pay transparency and pay equity requirements Profile description: 8+ years in Cybersecurity Governance, Risk Management or GRC, including experience supporting senior management. In-depth knowledge of NIS2, ISO/IEC 27001 and NIST CSF, and of cyber risk assessment methodologies.

ISO/IEC 27001 Lead Auditor certification

- GRC certifications (CISM, CISA, CRISC) are a plus.

Experience in complex regulated environments (Pharma / Life Sciences or Financial Services). Excellent ability to communicate cyber risk clearly and concisely. Excellent command of English.

We offer: Why join Alfasigma: At Alfasigma, we foster a culture where the courage to innovate is key to our success.

We offer a competitive salary, comprehensive benefits, and extensive opportunities for professional growth and development. Our commitment to people and patients is at the heart of everything we do. We value diversity and welcome individuals with unique perspectives and experiences.

We believe that open-mindedness, collaboration, and a shared passion for innovation are essential to achieving meaningful progress. Join Alfasigma and become part of a forward-thinking team dedicated to shaping the future of the pharmaceutical industry.

Ragazza Immagine: lavoro Night Club nei TOP locali

16 ago - Brescia
Miss Agency Di Marco Marozzi

Direttore Barista

16 ago - Napoli
ard chalet delle rose s.r.l.s

Ricevi nuove offerte di lavoro

Crea una Job Alert gratuita per senior manager, cybersecurity governance risk and compliance(grc) / pomezia

ESTATE 2026: Ragazza Immagine nei migliori locali

16 ago - Venezia
Miss Agency Di Marco Marozzi

Store Manager Firenze

16 ago - Firenze
Geox