Head of Information Security Governance

Daiichi Sankyo, Inc. All Rights Reserved
München, Germany
29 days ago
Apply on www.careerjet.de
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Languages
English, German, Japanese

Tech stack

Cyber Security Data Centers SAP (Applications) Load Balancing

Job description

We use cookies to offer you the best possible website experience. Your cookie preferences will be stored in your browser’s local storage. This includes cookies necessary for the website’s operation. Additionally, you can freely decide and change any time whether you accept cookies or choose to opt out of cookies to improve website’s performance, as well as cookies used to display content tailored to your interests. Your experience of the site and the services we are able to offer may be impacted if you do not accept all cookies. Modify Cookie Preferences Reject All Cookies Accept All Cookies Search Jobs Search Jobs, * Lead the global Cyber GRC strategy, setting long-term direction and driving execution across the organization.

  • Continuously develop and improve the Daiichi Sankyo Cyber GRC Framework to ensure measurable adherence and anticipate future developments.
  • Define and manage enterprise-level cyber policies, standards, and guidelines within the Daiichi Sankyo Management System.
  • Own the enterprise-wide cyber risk management framework, enabling consistent risk assessment, reporting, and mitigation aligned with risk appetite.
  • Ensure compliance with cyber-related regulations and contracts; lead audit readiness and support cyber audits.
  • Develop and implement third-party and supply chain security strategies to manage ecosystem risks.
  • Oversee cybersecurity due diligence and integration during mergers and acquisitions.
  • Promote continuous improvement by embedding cyber risks into business decision-making and enabling effective policy adoption.
  • Lead and develop a high-performing global Cyber GRC team and drive executive stakeholder engagement across the organization, Working at Daiichi Sankyo is more than just a job - it is your chance to make a difference and change patients’ lives for the better. We can only achieve this ambitious goal together. That is why we foster a culture of mutual respect and continuous learning, with a strong commitment to inclusion and diversity. Here, you will have the opportunity to grow, think boldly, and contribute your ideas. If you have a proactive mindset and passion for addressing the needs of patients, we eagerly await your application. Professionals © 2026 Daiichi Sankyo, Inc. All Rights Reserved. × Cookie Consent Manager When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. Because we respect your right to privacy, you can choose not to allow some types of cookies. However, blocking some types of cookies may impact your experience of the site and the services we are able to offer. Required Cookies These cookies are required to use this website and can’t be turned off. Required Cookies Show More Details Required Cookies Provider Description Enabled SAP as service provider We use the following session cookies, which are all required to enable the website to function:

  • “route” is used for session stickiness
  • “careerSiteCompanyId” is used to send the request to the correct data center
  • “JSESSIONID” is placed on the visitor’s device during the session so the server can identify the visitor
  • “Load balancer cookie” (actual cookie name may vary) prevents a visitor from bouncing from one instance to another

Requirements

  • Minimum 12+ years of experience in cyber security with senior or leadership roles in global organizations
  • Advanced degree in Information Security, Cyber Security, IT Security, or related fields, or equivalent professional experience
  • Relevant certifications such as CISSP, CISM, CRISC, CISA, ISO/IEC27001 Lead Auditor/Implementor or equivalent
  • Proven strategic leadership in Cyber GRC, with expertise in frameworks like NIST CSF/800-53 and ISO/IEC 27000 series
  • Experience building and managing enterprise management systems, control frameworks, and audit readiness
  • Track record of driving compliance across multiple regulatory jurisdictions and managing contractual security requirements
  • Strong communication skills to engage stakeholders at all levels and foster an inclusive, high-performance culture
  • Experience leading international, cross-functional teams with strategic planning and operational excellence
  • Fluent in German and English (written and spoken); knowledge of Japanese or experience working with Japanese teams is a plus

About the company

At Daiichi Sankyo, we are united by a single purpose, to improve lives around the world through innovative medicines. With a legacy of innovation since 1899, a presence in more than 30 countries, and more than 19,000 employees, we are advancing breakthrough therapies in oncology, cardiovascular disease, rare diseases, and immune disorders. Guided by our 2030 vision to “be an innovative global healthcare company contributing to the sustainable development of society”, we are shaping a healthier, more hopeful future for patients, their families, and society. Purpose of the function Join Daiichi Sankyo as the Global Head of Information Security Governance and lead the enterprise-wide Cyber Security Governance, Risk, and Compliance (GRC) for a top-tier global pharmaceutical company with critical assets in Germany, the US, and Japan. This key transformation leadership role will drive the redesign and operation of a scalable, automated cyber governance framework aligned with international best practices. Your Role

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.de
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Governing enterprise IT as a global automotive CIO

Katrin Lehmann Katrin Lehmann +1 · Coffee With Developers

51 sec

Repurposing hardware and operating underwater data centers

Chris Heilmann +1 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

5:25 min

Implementing redundancy, failover, and architectural load balancing patterns

Mihaela-Roxana Ghidersa · LIVE

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

4:03 min

Managing massive power consumption scaling in AI data centers

Stephan Gillich Stephan Gillich +3 · World Congress 2024

Videos

See all

Related articles

See all