×
Register Here to Apply for Jobs or Post Jobs. X

BISO - Enabling Units IT Security

Job in Gaithersburg, Montgomery County, Maryland, 20883, USA
Listing for: AstraZeneca
Full Time position
Listed on 2026-08-30
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Consultant
Salary/Wage Range or Industry Benchmark: 190956 - 286435 USD Yearly USD 190956.00 286435.00 YEAR
Job Description & How to Apply Below

The BISO Enabling Units IT Security serves as the Information Security Officer for the Enabling Units IT organization. This position reports to the AstraZeneca Global Head of Cybersecurity Business Operations. The BISO delivers risk management and security expertise to educate, enable, and empower Enabling Units IT and business stakeholders to safeguard information, platforms, and business-critical systems.

The BISO team ensures information security is understood and embedded across enterprise business functions. The team leads security consultants and risk analysts responsible for embedding the security policy framework, industry-standard controls, and secure-by-design initiatives into enterprise SaaS platforms, cloud services, and applications supporting Finance, HR, Global Corporate Affairs, Global Business Services, Legal, and M&A functions.

The BISO, is the primary strategic cybersecurity partner to Enabling Units IT, covering enterprise business functions including Finance, HR, Global Corporate Affairs, Global Business Services, Legal, and Mergers & Acquisitions. This customer-facing role represents the CISO by leading cybersecurity engagement, alignment, and delivery of cybersecurity risk and resilience outcomes across enterprise business applications and services.

The role provides strategic guidance on cybersecurity risks, priorities, and long-term security posture across enterprise SaaS platforms, cloud services, and applications such as Workday, SAP, Coupa, and Concur. A central focus is balancing business enablement with compliance, data protection, identity governance, vendor assurance, and resilience needs across enterprise functions.

This leader directs cybersecurity consulting, risk management, remediation, posture reporting, and data analysis activities tailored to the enterprise SaaS and cloud platforms that underpin financial integrity, employee data protection, legal obligations, M&A activity, and critical business operations.

Accountabilities
  • Act as the primary strategic partner and security consultant to Enabling Units IT leadership, participating in governance forums that drive risk-based decisions, clear accountability, and visible security outcomes.
  • Lead risk posture and architecture engagement for enterprise SaaS and cloud environments, supporting cybersecurity architects in defining cloud-native security patterns that fit business application needs.
  • Lead security consulting and risk management for enterprise applications such as Workday, SAP, Coupa, and Concur, including identity and access management, data protection, integration security, privileged access governance, and vendor assurance.
  • Ensure security controls support financial controls, SOX compliance, data privacy obligations including GDPR, M&A due diligence requirements, and electronic records/signatures expectations where applicable.
  • Deliver change-controlled security improvements within enterprise applications and cloud services, including documentation expectations, governance alignment, and compensating controls where needed.
  • Drive comprehensive application visibility, security posture reporting, and risk-based vulnerability or exposure management across enterprise SaaS and cloud platforms with continuous update models.
  • Provide security consulting for critical enterprise integrations, including HR-to-Finance, procurement-to-payment, and other cross-functional data flows, ensuring secure patterns, identity controls, logging, and resilience.
  • Strengthen third-party risk management for SaaS providers, cloud platforms, business service providers, and professional services partners, including contractual controls, ongoing assurance, and secure support models.
  • Partner with security operations and business teams to create environment-specific incident response playbooks, tabletop exercises, and recovery readiness for business-critical enterprise applications.
  • Maintain audit-ready security evidence for financial controls, SOX compliance, data privacy audits, Legal and M&A due diligence, and other enterprise assurance needs.
  • Build enterprise-focused risk dashboards and KPIs covering SaaS security posture, identity…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary