Director, Technology Risk Management

Merck Merck · Pharma · NJ

This role is for a Director of Technology Risk Management at Merck, focusing on aligning cybersecurity, risk management, and compliance strategies with business objectives for Enterprise IT (EIT) supporting Global Support Functions. The individual will advise business leaders, provide risk governance for IT systems, and foster a risk-aware culture. Responsibilities include strategic leadership, risk management, governance, technical expertise in cyber resilience, and team leadership. The role requires a Bachelor's Degree in a related field, 10+ years of experience in cybersecurity or IT risk management, and 5+ years in a leadership role. Experience in the healthcare industry and relevant certifications are preferred.

What you'd actually do

  1. Serve as the primary cybersecurity and risk advisor to EIT, aligning security strategies with the business priorities.
  2. Provide executive-level risk insights and recommendations to EIT leadership.
  3. Ensure security and risk management practices are embedded in business processes, digital transformation initiatives, and operational decision-making.
  4. Act as a bridge between ITRMS and EIT, translating technical risks into business impact.
  5. Drive compliance with applicable global regulations and internal security policies by tailoring the requirements to EIT’s operational and regulatory context.

Skills

Required

  • Business Acumen
  • Cybersecurity
  • Data Management
  • Digital Transformation
  • Emotional Intelligence
  • Executive Presence
  • Information Security
  • Information Technology (IT) Risk Management
  • Information Technology Auditing
  • IT Compliance Management
  • IT Governance
  • IT Risk Assessments
  • IT Risk Governance
  • IT Risk Response and Reporting
  • Knowledge of regulations and frameworks
  • Risk Management
  • Risk Management and Mitigation
  • Security Solutions
  • Stakeholder Management
  • Technical Advice

Nice to have

  • Risk or security certification credentials (CISSP, GSEC, CISA, CISM, etc.) preferred.
  • Prior experience in the healthcare industry, with an understanding of the unique challenges in securing systems that support Finance, HR, and Legal areas prferred.
  • 5+ years’ experience leading global teams in a management or leadership role, particularly in a fast-paced, service-oriented environment preferred.

What the JD emphasized

  • Stay updated on new and emerging technologies (e.g., AI and Quantum) and new laws and regulations, and understand their impacts on the business.