20 Aug
|
Regeneron
|
Bengaluru
20 Aug
Regeneron
Bengaluru
Role Summary
At Regeneron, we use science and innovation to develop life-changing medicines for people with serious diseases. We are looking for a Director Information Security (GCC India & JAPAC) talent to join our Digital and Technology team.
This leadership role will be responsible for building and leading Regeneron's India-based Information Security organization while serving as the regional Information Security leader for JAPAC. The successful candidate will provide strategic leadership across cyber operations, cyber risk and assurance, data protection, AI security, identity and access management, security architecture, and security engineering functions.
The role requires a proven leader with deep cybersecurity expertise, experience leading global security teams, and a strong ability to align security strategy with business objectives in a highly regulated environment.
Key Responsibilities
- Build, lead, and scale the India GCC Information Security organization, fostering a culture of accountability, innovation, diversity, and continuous improvement.
- Provide leadership across Cyber Operations, Cyber Risk & Assurance, Security Architecture, Identity & Access Management, Data Protection, AI Security, and Charge Surface Management functions.
- Lead end-to-end delivery across security engineering, operations, architecture, governance, and data protection teams using agile and traditional delivery methodologies.
- Drive adoption, optimization, and governance of security technologies including SIEM/SOAR, EDR/XDR, IAM/PAM, DLP, cloud security, and vulnerability management platforms.
- Establish the India GCC security organization as a strategic extension of Regenerons global Information Security function.
- Lead workforce planning, recruiting, onboarding, organizational development, and capability expansion across security teams.
- Serve as the JAPAC Information Security leader, representing Regenerons security posture to regional business leaders, partners, and regulatory collaborators.
- Develop and supervise security governance, compliance, risk management, audit readiness, and control assurance programs aligned with industry standards and regulations.
- Partner with executive leadership to align security investments, operating models, and strategic priorities with business objectives.
- Communicate security, regulatory, risk, and technology matters effectively to executive, operational, and board-level audiences.
- Evaluate and govern AI and Generative AI security capabilities while ensuring privacy, compliance, and responsible adoption.
- Drive continuous improvement across security operations, controls, processes, and service delivery models.
Required Skills & Experience
- Bachelors degree in computer science, Information Technology, Cybersecurity, Engineering, or a related field.
- Significant leadership experience leading enterprise Information Security organizations within global companies.
- Deep expertise across cyber operations, incident response, cyber risk and assurance, security architecture,
identity and access management, vulnerability management, attack surface management, and data protection.
- Proven experience leading large-scale security engineering, operations, architecture, and delivery teams in sophisticated global environments.
- Strong experience with SIEM/SOAR, EDR/XDR, cloud security platforms, IAM/PAM, DLP, and vulnerability management technologies.
- Deep understanding of security frameworks and regulatory requirements including NIST CSF, ISO 27001, SOC 2, GDPR, HIPAA, SOX IT Controls, and GxP data integrity requirements.
- Experience implementing and governing AI and Generative AI security capabilities in regulated environments.
- Demonstrated success building, scaling, and retaining high-performing technical security organizations.
- Experience establishing or expanding Global Capability Center (GCC) operations and driving workforce transformation initiatives.
- Robust planning, risk management, collaborator engagement, and decision-making capabilities.
- Exceptional executive communication and leadership skills with experience working across multiple geographies and cultures.
- Familiarity with APAC information security and privacy regulations, including the Digital Personal Data Protection (DPDP) Act in India.
- Experience within biotechnology, pharmaceuticals, life sciences, healthcare, or other highly regulated industries.
- Relevant certifications such as CISSP, CISM, CISA, CCSP, PMP, SAFe, Scrum, or cloud security certifications.
- Experience managing security programs across multiple jurisdictions, compliance frameworks, and regulatory environments simultaneously.
📌 Director - Information Security (GCC India & JAPAC) (Bengaluru)
🏢 Regeneron
📍 Bengaluru