Listed on Moderna’s own careers site. You apply with them directly — we never stand between you and the employer.
What this role is
This role leads third-party cybersecurity risk management for a biotechnology company, overseeing assessments, control gap analysis, remediation tracking, and contract reviews across a global vendor ecosystem. It suits professionals with deep cybersecurity risk and GxP compliance experience who can influence cross-functional teams and help modernize processes with automation and AI.
Our summary, not Moderna’s wording. The full posting is on their site.
Skills this role names
Log in to see which of these are already on your profile.
What they ask for
Required
- 5+ years in cybersecurity risk management, third-party risk management, or GRC
- Experience owning or supporting third-party cybersecurity risk reviews including assessment analysis and remediation tracking
- Experience working in GxP-regulated environments
- Sound judgment to identify and escalate risks and control gaps
- Strong written and verbal communication skills
- Experience using AI to optimize or streamline risk processes
- Ability to operate in matrixed environments and influence without direct authority
Nice to have
- Four-year degree or equivalent relevant work experience in information systems, cybersecurity, or risk management
- Familiarity with frameworks such as NIST CSF, ISO 27001, CIS Controls, SIG, or CAIQ
- Experience with GRC tools like OneTrust, ServiceNow, Jira, Power BI, Excel, or SharePoint
- Strong attention to detail and commitment to data integrity and transparent reporting
- Desire to work for a high-growth, transformational company