Director of Quality Management and Compliance
Listed on 2026-10-04
-
IT/Tech
Cybersecurity, Information Security & Data Protection
In 2020, a group of senior technology and product experts from Google and Verily China decided to delve into the intelligent digitalization of life science clinical research. Their findings resulted in Alpha Life Sciences, a pioneer in the fusion of life sciences and AI computer science as an AI-enabled integrated clinical research platform. Our flagship product, Aurora Prime, integrates Generative AI and Large Language Models (LLMs) into a powerful AI-driven SaaS platform.
Trusted by global top MNCs, our innovations accelerate drug development and market entry. We are committed to globalizing Aurora Prime to enhance clinical trials and real-world research by leveraging cutting-edge AI, cloud computing, and big data. We help our clients achieve clinical operational efficiency, automate processes, and make smarter decisions to get their products to market faster.
We are proud partners with Microsoft's Pegasus Program, Google for Startups, and Johnson & Johnson Innovation JLABS, delivering cutting-edge solutions like Generative AI-Copiloted Medical Writing, Intelligent EDC and Data Management, and Agile Trial Management.
Alpha Life Sciences is seeking a senior security and compliance leader to build and own our security program from the ground up. You will protect the company, our clients, and our intellectual property from internal and external threats, formalize our security policies alongside our legal partners, and serve as Alpha Life's external voice on security and data protection with pharmaceutical clients, law firms, and the broader industry.
We're looking for a sharp-judgment security leader who pairs a strong technical foundation with an even deeper command of compliance policy. The right candidate knows the life science industry's data protection and regulatory compliance frameworks (ISO 27001, SOC 2, GxP, HIPAA) inside and out, understands the value of scientific and commercial data in life sciences, can navigate international regulations and cross-border data risk, and brings the executive presence to serve as Alpha Life's spokesperson on security policy and legal matters at conferences and in client conversations.
This person may come from an IT and security or data protection leadership role at a big pharma, or from a regulatory policy lead role at a life science SaaS company.
Protect the organization from external and internal security threats across our platform, infrastructure, and corporate systems.
Quickly assess risks and determine what is and isn't a credible threat, then prioritize and lead the response.
Build and formalize Alpha Life's security policies, standards, and procedures from the ground up.
Partner with our US and international law firms to draft, implement, and enforce policies that meet legal and regulatory standards.
Safeguard sensitive scientific, clinical, and commercial data, with a focus on protecting Alpha Life's and our clients' intellectual property.
Monitor international data and security regulations and advise leadership on cross-border data sharing and geopolitical risk in our key markets.
Represent Alpha Life at industry conferences and serve as the primary security point of contact for pharmaceutical clients, law firms, and other partners, including security reviews and due diligence.
Own Alpha Life's compliance certifications and framework alignment, including ISO 27001 and SOC 2, and keep our platform and processes aligned with GxP and HIPAA requirements.
Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Systems, or a related field.
10 years of experience in cybersecurity, information security, or security compliance, including experience building or leading a security program.
Strong technical foundation in cloud security, application security, and threat detection and response.
Experience protecting sensitive data in life sciences, pharma, biotech, or another highly regulated industry.
Deep understanding of intellectual property and its value, with experience safeguarding proprietary scientific or commercial information.
Working knowledge of international data protection and security regulations (e.g., GDPR, PIPL, US federal and state frameworks) and cross-border data transfer requirements.
Deep familiarity with the life science industry's data protection and regulatory compliance policy, including HIPAA and GxP, and with frameworks such as ISO 27001 and SOC 2. Compliance policy fluency carries even more…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).