DURATION: Long-term, with 3 months of probation period
LOCATION: Yerevan, Armenia
APPLICATION DEADLINE: Open until filled
JOB RESPONSIBILITIES:
– Design, improve and enforce policies and procedures that protect the Company’s IT and
network infrastructure from all forms of information security and privacy breaches;
– Develop, implement and monitor a strategic, comprehensive information security and
privacy management program;
– Determine the Company’s information security and privacy policy with regard to third
party products and services and monitor the Company’s data protection compliance;
– Work directly with other departments within the Company to facilitate information
security and privacy risk assessment and risk management processes;
– Collaborate with the Top Management and the IT Department to improve information
security and privacy;
– Work with the IT team to set up and implement a Business Continuity and Disaster
Recovery Plan;
– Define, assess and classify all aspects of Personally Identifiable Information (PII) that the
Company receives, stores, manages, and transfers;
– Provide advice on data protection impact assessments and monitoring their performance;
– Define the security controls the Company needs to have in place to prevent data leakage
or loss;
– Coordinate information handover processes;
– Document security and privacy breaches and assess their damage;
– Coordinate the continuous development, implementation and updating of security and
privacy policies, standards, processes and procedures in compliance with local and
international regulations
– Develop and maintain Information Security Management System (ISMS) and Privacy
Information Management System (PIMS) in line with the requirements of ISO
27001:2013, 27701:2019 and 27701:2022 respectively;
– Regularly monitor network perimeter for intrusions and intrusions in progress;
– Identify security and privacy vulnerabilities and work on resolving them; perform
vulnerability scans to identify software flaws;
– Perform penetration tests to find and report any flaws and security/privacy incidents;
– Schedule regular checkups and prepare security and privacy reports in accordance to the
Company procedures;
– Set and implement user access controls;
– Monitor network usage to ensure compliance with the Company’s procedures;
– Ensure that data is stored securely and back up is implemented as per procedures;
– Inform Company Management and employees of their obligations in respect to
processing of PII;
– Develop and implement programs for employee security awareness, training programs on
information security policies and procedures;
– Train the team on information security and privacy policies and procedures implemented
within the Company, on best practices for IS, as well as on identifying suspicious
activities;
– Act as data protection point of contact for vendor, sponsor, supervisory authorities and
regulatory bodies;
– Implement and report Corrective and Preventive Action Plans (CAPA) to improve
information security and privacy programs and initiatives;
– Stay informed on the developments and compliance requirements in the field of IS;
– Operate independently and report directly to the Chief Executive Officer (CEO);
– Perform other duties as assigned by the CEO.
QUALIFICATIONS:
– University degree in Life Sciences, Biotech or related field;
– At least three years of experience in Quality Management, Healthcare Administration,
Pharmaceutical and/or Biotech industry;
– Ability to support overall quality processes and daily quality assurance activities of the Company;
– Knowledge of global GCP regulations and guidelines (owning GCP certificate is
preferred), CAPA programs and Audit Management is required;
– Excellent knowledge of English language;
– Ability to work under pressure and meet tight deadlines;
APPLICATION PROCEDURES:
© 2023 All Right Reseived. ClinSoft | Privacy Policy CSR Policy