Information Security Officer / Data Protection Officer

DURATION: Long-term, with 3 months of probation period

LOCATION: Yerevan, Armenia

APPLICATION DEADLINE: Open until filled

 
 

JOB RESPONSIBILITIES:

– Design, improve and enforce policies and procedures that protect the Company’s IT and
network infrastructure from all forms of information security and privacy breaches;

– Develop, implement and monitor a strategic, comprehensive information security and
privacy management program;

– Determine the Company’s information security and privacy policy with regard to third
party products and services and monitor the Company’s data protection compliance;

– Work directly with other departments within the Company to facilitate information
security and privacy risk assessment and risk management processes;

– Collaborate with the Top Management and the IT Department to improve information
security and privacy;

– Work with the IT team to set up and implement a Business Continuity and Disaster
Recovery Plan;

– Define, assess and classify all aspects of Personally Identifiable Information (PII) that the
Company receives, stores, manages, and transfers;

– Provide advice on data protection impact assessments and monitoring their performance;

– Define the security controls the Company needs to have in place to prevent data leakage
or loss;

– Coordinate information handover processes;

– Document security and privacy breaches and assess their damage;

– Coordinate the continuous development, implementation and updating of security and
privacy policies, standards, processes and procedures in compliance with local and
international regulations

– Develop and maintain Information Security Management System (ISMS) and Privacy
Information Management System (PIMS) in line with the requirements of ISO
27001:2013, 27701:2019 and 27701:2022 respectively;

– Regularly monitor network perimeter for intrusions and intrusions in progress;

– Identify security and privacy vulnerabilities and work on resolving them; perform
vulnerability scans to identify software flaws;

– Perform penetration tests to find and report any flaws and security/privacy incidents;

– Schedule regular checkups and prepare security and privacy reports in accordance to the
Company procedures;

– Set and implement user access controls;

– Monitor network usage to ensure compliance with the Company’s procedures;

– Ensure that data is stored securely and back up is implemented as per procedures;

– Inform Company Management and employees of their obligations in respect to
processing of PII;

– Develop and implement programs for employee security awareness, training programs on
information security policies and procedures;

– Train the team on information security and privacy policies and procedures implemented
within the Company, on best practices for IS, as well as on identifying suspicious
activities;

– Act as data protection point of contact for vendor, sponsor, supervisory authorities and
regulatory bodies;

– Implement and report Corrective and Preventive Action Plans (CAPA) to improve
information security and privacy programs and initiatives;

– Stay informed on the developments and compliance requirements in the field of IS;

– Operate independently and report directly to the Chief Executive Officer (CEO);

– Perform other duties as assigned by the CEO.

 QUALIFICATIONS:

– University degree in Life Sciences, Biotech or related field;

– At least three years of experience in Quality Management, Healthcare Administration,
Pharmaceutical and/or Biotech industry;

– Ability to support overall quality processes and daily quality assurance activities of the Company;

– Knowledge of global GCP regulations and guidelines (owning GCP certificate is
preferred), CAPA programs and Audit Management is required;

– Excellent knowledge of English language;

– Ability to work under pressure and meet tight deadlines;

APPLICATION PROCEDURES:

Interested candidates should submit a CV to: hr@clinsoftcsd.com .
Applications will be reviewed on rolling basis with shortlisted candidates invited for an interview
via virtual or in person call.

Job Application Form