AstraZeneca

BISO – Enterprise Technology Services (ETS)

US - Gaithersburg - MDFull timePosted 24 days ago
Apply on AstraZeneca →Sign in to save this role

Sign in to see who you know at AstraZeneca.

The BISO will serve as the primary strategic cybersecurity partner to the IT Enterprise Technology Services (ETS) organization and its associated technology domains, representing the CISO by leading cybersecurity engagement, alignment, and delivery of cybersecurity risk and resilience outcomes across AstraZeneca’s foundational technology estate.ETS is the enterprise technology backbone of AstraZeneca – delivering sustainable and globally scaled enterprise technology services that enable the company’s scientific, manufacturing, and commercial activities. As AstraZeneca’s global technology operations organization, ETS focuses on the reliable delivery and operation of enterprise technology services, while cybersecurity and IT risk accountability is owned within the CISO Cybersecurity organization that this role represents.This customer-facing role is closely coupled with the ETS leadership team and operates as a dotted-line function to the ETS VP-level leadership, supporting the cloud and infrastructure, network and connectivity, digital workplace, identity and access, service operations, and technology governance capabilities on which the enterprise depends.AccountabilitiesStrategic partnership and governance: Act as the primary strategic partner and security consultant to ETS leadership, driving alignment between enterprise technology priorities, operational service commitments, and the enterprise cybersecurity strategy. Chair or participate in relevant governance forums, ensuring risk-based decision-making, clear accountability, and visibility of cybersecurity outcomes across cloud, infrastructure, network, workplace, and service management portfolios.Cloud and infrastructure security: Provide cybersecurity leadership across ETS cloud environments and on-premises infrastructure, including hosting, cloud subscriptions, compute, storage, and operating systems supporting both ETS platforms and applications owned by other business technology groups. Drive cloud security posture management, infrastructure-as-code hardening, secure configuration baselines, workload protection, privileged access management for infrastructure, and consistent controls across AWS and on-premises platforms and Windows and Linux server estates.Network security and connectivity: Partner with network engineering teams to ensure robust network security architecture across AstraZeneca’s global networks, including segmentation and micro-segmentation, firewall governance, internet and proxy connectivity, DNS security, intrusion detection and prevention, traffic inspection, secure remote access, and secure integration with third-party networks, sites, data centres, and cloud service providers. Advance network reliability and resilience objectives alongside security outcomes.Digital workplace and Site IT security: Guide the security of end-user devices, workplace engineering, and endpoint management, together with productivity and collaboration services such a...

Read the full posting on AstraZeneca →