Cybersecurity Governance and Compliance Director

4 weeks ago


Bedford, Massachusetts, United States Lantheus Medical Imaging Inc Full time
Job Title: Director of Cybersecurity Governance, Risk, and Compliance

Lantheus Medical Imaging Inc is seeking a highly skilled Director of Cybersecurity Governance, Risk, and Compliance to join our team. As a key member of our organization, you will be responsible for managing and overseeing the Lantheus cybersecurity risk landscape.

The ideal candidate will have a strong background in cybersecurity, with a minimum of 5+ years of experience in cybersecurity governance, risk, and compliance. They will be responsible for identifying and assessing cybersecurity risks across business lines, remediating and reporting risk insights to relevant leaders, while providing advice and playing a critical role in Lantheus' regulatory engagement.

Cybersecurity GRC focuses on strengthening and guarding the firm from the many risks we face while fostering a transparent and risk-aware culture. The Director of Cybersecurity Governance, Risk, and Compliance will be responsible for developing the operating model and a service-oriented customer engagement model supporting all GRC services and capabilities.

The successful candidate will have excellent oral and written communication skills, with the ability to communicate risks to executive leadership and key stakeholders. They will also have a strong understanding of cybersecurity risk frameworks and the ability to lead the execution and implementation of the frameworks as well as articulate their value and purpose.

Responsibilities include:

  • Developing the operating model and a service-oriented customer engagement model supporting all GRC services and capabilities.
  • Operationalizing GRC capability areas including policy and exception management, security awareness and training, third-party risk management, security reviews and audits, enterprise security risk management, compliance management, business continuity, disaster recovery.
  • Establishing and providing security metrics and reporting for all GRC services.
  • Performing risk assessments addressing security threats, changes to systems and/or applications, process improvement initiatives.
  • Monitoring the security risk profiles of our suppliers to objectively determine high risk suppliers that require additional review.
  • Maintaining cybersecurity risk register.
  • Partnering with the Enterprise Risk Management and Compliance organization to achieve corporate strategies and objectives.
  • Providing oversight and management for the Data Privacy solution and support resources.
  • Working with various operational and business teams to drive toward a cohesive view of security risk while driving remediation items to closure. Maintaining accurate reporting of remediation activities to bring appropriate visibility to stakeholders.
  • Responding to customer security/compliance questionnaires.
  • Ensuring HIPAA, GDPR, and PCI requirements are adhered to as Globally applicable. Leads annual certification or audit programs associated with achieving compliance with these regulatory requirements. Develops and implements Policies and Processes necessary for the success and support of the GRC program.
  • Conducting regular and ongoing Risk Assessments, Global Phishing simulations, Security Controls Analyses, and both Resiliency and Disaster Recovery testing.
  • Creating and coordinating various Risk Committee(s) to ensure key business/IT initiatives or high-value assets consider and adhere to established risk and Compliance Policies.
  • Promoting a culture of Security, Risk, and Compliance awareness through organization-wise forums, regular communications, and a robust Security/Risk awareness/training program.
  • Developing and delivering the GRC strategic roadmap and investment plan addressing People, Process, and Technology.

Minimum Requirements:

  • Bachelor's or master's degree in a relevant field of work or equivalent combination of education and work experience.
  • 10+ years' experience in cybersecurity with a minimum of 5+ in cybersecurity governance risk and compliance.
  • 5+ years management/leadership experience; managing people, projects, budgets, and processes.
  • CISSP preferred, but not required.
  • Proven track record of promotion and collaboration of risk and compliance policies and practices across IT and organizational business units.
  • Excellent oral and written communication skills with ability to communicate risks to executive leadership and key stakeholders.
  • Strong understanding of cybersecurity risk frameworks and ability to lead the execution and implementation of the frameworks as well as articulate their value and purpose.
  • Understanding of cybersecurity risk management and control principles with a proven ability to anticipate and identify risks and effective mitigating actions.
  • Strong organizational, project management, multi-tasking and stakeholder management skills with demonstrated ability to manage expectations and deliver results with a high level of professionalism, self-motivation, and integrity.
  • Ability to determine and set the strategic direction of the Cybersecurity GRC function(s).
  • Strong understanding of industry standards and regulations including: NIST, SOX, PCI, ISO, GDPR, CCPA, HITRUST, GxP, and others.
  • Experience developing, tracking, and reporting key KRIs and KPIs.

Lantheus Medical Imaging Inc is committed to equal employment opportunity and non-discrimination for all employees and qualified applicants without regard to a person's race, color, sex, gender identity or expression, age, religion, national origin, ancestry, ethnicity, disability, veteran status, genetic information, sexual orientation, marital status, or any characteristic protected under applicable law. Lantheus Medical Imaging Inc is an E-Verify Employer in the United States. Lantheus Medical Imaging Inc will make reasonable accommodations for qualified individuals with known disabilities, in accordance with applicable law.

Any applicant requiring an accommodation in connection with the hiring process and/or to perform the essential functions of the position for which the applicant has applied should make a request to the Lantheus Medical Imaging Inc Talent Acquisition team



  • New Bedford, Massachusetts, United States ASTRION, INC. Full time

    Job SummaryAstrion, Inc. is seeking a highly skilled Cybersecurity Engineer to support the Air Force Life Cycle Management Center/PEO Digital Directorate (AFLCMC/HB).Key Responsibilities:Assist with development of System Security Management Plans, Program Protection Plans, Security Risk Analyses, OPSEC Plans, Computer Certification and Accreditation,...


  • New Bedford, Massachusetts, United States Leidos Full time

    Job Summary: Leidos is seeking a skilled Cybersecurity Specialist to join our team in support of the U.S. Air Force Cloud One Architecture and Common Shared Services contract. As a Cybersecurity Specialist, you will be responsible for managing and optimizing AWS, Azure, Google, and Oracle environments, configuring and troubleshooting cloud, virtual, and...

  • Cybersecurity Expert

    4 weeks ago


    Bedford, Massachusetts, United States Modern Government Solutions Full time

    Job DescriptionModern Government Solutions is seeking a seasoned Information Systems Security Manager to provide expert guidance on all aspects of information system security. In this critical role, you will be responsible for safeguarding sensitive systems, advising on technical and non-technical security matters, and working directly within Special Access...


  • New Bedford, Massachusetts, United States DCS Corp Full time

    Job SummaryDemanding opportunity for a Cybersecurity Engineer to support the Air Force Life Cycle Management Center/PEO Digital Directorate International Airborne Battle Management Command and Control (AFLCMC/HBI) in Bedford, Massachusetts.Key ResponsibilitiesSupport system/application authorization and accreditation (A&A) efforts, including assessing and...

  • Cybersecurity Expert

    4 weeks ago


    New Bedford, Massachusetts, United States Astrion Full time

    Cybersecurity SME OpportunityAstrion is seeking a highly skilled Cybersecurity SME to support the USAF Cloud One (C1) program. As a key member of our team, you will be responsible for performing ISSO duties, supporting the implementation of the Risk Management Framework (RMF), and assisting in making informed, credible, risk-based...


  • New Bedford, Massachusetts, United States DCS Corp Full time

    Demanding a Cybersecurity Systems Architect, DCS Corp seeks a highly skilled expert to support the Air Force Life Cycle Management Center/PEO Digital Directorate International Airborne Battle Management Command and Control (AFLCMC/HBI). The BMC2 Division delivers airborne C2/Battle Management capability to coalition partners in support of US Combatant...


  • New Bedford, Massachusetts, United States The Computer Merchant, LTD. Full time

    We are seeking a highly skilled Cybersecurity Expert Lead to join our team at The Computer Merchant, LTD. in Bedford, MA.About The Computer Merchant, LTD.The Computer Merchant, LTD. is a leading provider of cybersecurity services. We help our clients protect their digital assets from cyber threats and ensure their networks are secure and compliant with...


  • New Bedford, Massachusetts, United States ASTRION, INC. Full time

    Cybersecurity Engineer Job DescriptionAstrion, Inc. is seeking a highly skilled Cybersecurity Engineer to join our team. As a Cybersecurity Engineer, you will be responsible for developing and implementing system security management plans, program protection plans, and security risk analyses.Key Responsibilities:Assist with the development of System Security...


  • New Bedford, Massachusetts, United States Applied Research Solutions Full time

    About the Role:We are seeking a highly skilled Cybersecurity III Professional to join our team at Applied Research Solutions. As a key member of our cybersecurity team, you will be responsible for supporting the system/application authorization and accreditation (A&A) effort for weapon systems and PIT Systems.Key Responsibilities:Assess and guide the quality...


  • New Bedford, Massachusetts, United States Peraton Full time

    Cybersecurity ResearcherPeraton Labs is seeking a highly skilled Cybersecurity Researcher to join our team. As a Cybersecurity Researcher, you will be responsible for protecting mission-critical systems and national cyber infrastructure through a broad range of initiatives in computer network defense, secure-by-design techniques, and cyber operations and...


  • New Bedford, Massachusetts, United States Astrion Full time

    Astrion is seeking a highly skilled Cyber Security Subject Matter Expert (SME) to support the USAF Cloud One (C1) program. The ideal candidate will have a strong background in cybersecurity and experience with cloud security solutions.The SME will be responsible for supporting the implementation of the Risk Management Framework (RMF) and assisting in making...


  • New Bedford, Massachusetts, United States MITRE Full time

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...


  • New Bedford, Massachusetts, United States Applied Research Solutions Full time

    About the Role:We are seeking a highly skilled Cybersecurity Expert to join our team at Applied Research Solutions. As an ISSM located at Hanscom AFB, MA, you will be responsible for advising and supporting work on the EITaaS program.Key Responsibilities:Ensure the confidentiality, integrity, and availability of systems, networks, and data through the...


  • New Bedford, Massachusetts, United States JTEC Consulting LLC Full time

    Job Title: Senior Identity Security ArchitectJob Summary:JTEC Consulting LLC is seeking a Senior Identity Security Architect to join our team. As a key member of our cybersecurity team, you will be responsible for designing and implementing identity governance and administration solutions using Okta and SailPoint technologies.Key Responsibilities:Design and...


  • Bedford, Massachusetts, United States Lantheus Medical Imaging Inc Full time

    Job OverviewLantheus Medical Imaging Inc is a pioneering company in the field of medical imaging, with a rich history of innovation and dedication to enhancing patient care. We are seeking a highly skilled Associate Director, Regulatory Affairs to join our team.As a key member of our regulatory team, you will be responsible for integrating and applying...


  • New Bedford, Massachusetts, United States MITRE Full time

    Job Summary:As a Senior Systems Engineering Technician at MITRE, you will play a critical role in maintaining and enhancing our enterprise IDS/ACS/CCTV systems to ensure compliance with government and industry standards. You will integrate IDS/ACS with other systems, perform upgrades and efficiency improvements, and administer user access levels....


  • New Bedford, Massachusetts, United States The MITRE Corporation Full time

    About the Role:We are seeking a highly skilled Senior Cloud Software Engineer to join our team at The MITRE Corporation. As a Senior Cloud Software Engineer, you will be responsible for designing, securing, and architecting cloud platforms, leading cloud projects, and advising government sponsors on cloud adoption.Key Responsibilities:Design and implement...

  • Finance Director

    3 weeks ago


    Bedford, Massachusetts, United States PCI Pharma Services Full time

    Job Title: Finance DirectorAt PCI Pharma Services, we are seeking a highly skilled Finance Director to join our team. As a key member of our leadership team, you will be responsible for guiding and counseling site leadership and business teams on accounting, finance, budgeting, asset management, management information, business forecasting, capital projects,...


  • New Bedford, Massachusetts, United States Modern Government Solutions Full time

    Job SummaryModern Government Solutions (MGS) is seeking an experienced Information Systems Security Manager (ISSM) to provide expert guidance on all aspects of information system security. The successful candidate will be responsible for overseeing information system security programs, advising on RMF assessments, and developing and maintaining the...


  • Bedford, Massachusetts, United States Michael Page Full time

    Director of Engineering Opportunity at Michael PageWe are seeking a highly skilled Director of Engineering to lead our Engineering and Drafting Departments. In this key position, you will oversee a team of engineers and drafters, ensuring timely project completion and high-quality standards. You will take ownership of product designs, support...