Enterprise Security Architect – Data Security

ES06 (FCRS = ES006) Novartis Farmacéutica, S.A.

Barcelona

Híbrido

EUR 58.000 - 108.000

Jornada completa

Hace 8 días
Generador de candidaturas

No envíes un currículum genérico: crea un currículum y una carta de presentación adaptados a este puesto concreto.

Supera los filtros ATS

Descripción de la vacante

Novartis is seeking a highly technical security architect to lead PQC readiness and modernize enterprise Data Security across the organization. You will influence large-scale technology decisions, validate vendor claims, and drive practical security outcomes across infrastructure, cloud, and applications.

The role demands hands-on expertise in cryptography, PKI, and data protection, with strong leadership and collaboration skills to guide governance and implementation efforts.

Formación

  • 15+ years of working experience in Security domain; minimum 5 years in architecture capacity
  • 5+ years of experience of working in or providing IT services to a large enterprise
  • Strong understanding of core cryptography concepts (encryption, key exchange, hashing, digital signatures) and PKI architectures
  • Clear understanding of Post‑Quantum Cryptography (PQC) concepts and crypto‑agility principles
  • Experience with data protection architectures for data at rest and in transit
  • Knowledge of regulatory requirements (e.g., NIST) and IT infrastructure management

Responsabilidades

  • Develop and enforce security policies and procedures related Data Security across Novartis businesses
  • Design security measures and Data Security architecture for the IT landscape
  • Technical lead for PQC readiness program
  • Support standards and controls related to Data Security and recommend IT strategies
  • Identify design problems within the Data Security domain
  • Evolve Data Security solutions from evaluation to implementation and support operations
  • Audit security policies and procedures
  • Communicate with senior management and stakeholders
  • Develop architecture diagrams and documentation for Data Security processes
  • Research and evaluate new Data Security technologies and guide implementation

Conocimientos

PQC concepts
PKI
Data Protection
Digital Workspace
Network Security
Identity and Access Management
SIEM
Vulnerability Management
Enterprise Architecture (EA)
Solution Architecture
Influencing Skills
IT Governance
Change Management
Business Architecture
Business Value Creation
Decision Making
Stakeholder Management

Descripción del empleo

Salary Range: €57,900.00 - €107,500.00. Band Level 5. Location: Barcelona, Spain; Tel Aviv, Israel. #LI-Hybrid. Internal job title: Assoc. Dir. DDIT ISC Enterprise Security Architecture – Data Security.

The Enterprise Security Architecture team is looking for a deeply technical security architect who enjoys solving hard engineering problems, influencing enterprise-scale technology decisions, and staying close to implementation. Over the next several years, your primary mission will be to lead our Post-Quantum Cryptography (PQC) readiness program and modernize Data Loss Prevention (DLP) capabilities across the enterprise. This is not a governance-only role. We are looking for a hands‑on expert who enjoys understanding how technologies work, validating vendor claims, building proof‑of‑concepts, analyzing architectures, and driving practical outcomes. You will work across infrastructure, cloud, networking, identity, workplace technologies, and applications to help prepare the organization for one of the largest cryptographic transformations in decades while simultaneously improving the effectiveness, precision, and operational efficiency of our data protection capabilities.

Key Responsibilities
  • Develop and enforce security policies and procedures related Data Security across Novartis businesses to meet business and regulatory requirements
  • Design security measures and overall Data Security architecture for the IT landscape in line with the ISC policy framework
  • Technical lead for PQC readiness program
  • Support and continually review technology standards and controls related to Data Security and recommend information technology strategies, policies, and procedures
  • Identify design problems within the Data Security domain
  • Support projects to evolve Data Security solutions from evaluation to implementation and assist the delivery of the operational model
  • Support the auditing of security policies and procedures
  • Management communication with key stakeholders and provide reports to management
  • Provide ongoing support to maintain the Data Security domain’s effectiveness and efficiency by defining, delivering, and supporting strategic plans for implementing information technologies
  • Develop and maintain relationships with key stakeholders and vendors
  • Support the direction of technological research by learning the organizational goals, strategies and business drivers
  • Develop and maintain architecture diagrams and documentation related to Data Security processes and procedures
  • Break down the strategic objectives to requirements on the solution portfolio and target architecture
  • Key contributor on products, services and/or infrastructure strategies that require complex or advanced conceptualization
  • Research and evaluate new Data Security technologies and make strategic security technology choices, directly supervising the quality of designs and implementation inside and between components
  • Work with improvements, by participation in the development, of the architectural principles, processes, and standards
Essential Requirements
  • University working and thinking level, degree in business/technical area or comparable education/experience
  • 15+ years of working experience in Security domain; minimum 5 years in architecture capacity; 5+ years of experience of working in or providing IT services to a large enterprise like Novartis.
  • Exceptional understanding security domains like Digital Workspace, Data Protection, AI Security as well as good knowledge of Network Security, Identity and Access Management, SIEM, Vulnerability Management
  • Strong understanding of core cryptography concepts (encryption, key exchange, hashing, digital signatures): Solid PKI expertise, including certificate lifecycle management, trust models, and enterprise PKI architectures.
  • Clear understanding of Post‑Quantum Cryptography (PQC) concepts, quantum risks to current algorithms, and crypto‑agility principles.
  • Ability to assess quantum‑vulnerable cryptographic usage and data protection controls.
  • Experience designing data encryption architectures for data at rest and in transit.
  • Knowledge of key management and HSM/KMS solutions.
  • Familiarity with cryptographic standards and regulatory requirements (e.g., NIST).
  • Exceptional understanding and knowledge of general IT infrastructure technology, systems and management processes, and experience of sourcing complex IT services, working closely with vendors and making full use of their capabilities
  • Good knowledge of IT Project Management: Proven experience to initiate and manage projects that will affect other divisions, departments and functions, as well as the corporate environment.
  • Experience with compliance requirements (e.g. SOX, GxQ / CSV, E-compliance, Records Management, Privacy), and knowledge of (information) risk management related standards or frameworks such as COSO, ISO 2700x, CobiT, ISO 24762, BS 25999, NIST, ISF Standard of Good Practice and ITIL
  • Strong leadership experience, with excellent written and verbal communication and presentation skills at all levels of the organisation and experience in reporting to and communicating with senior level management (with and without IT background, with and without in-depth risk management background) on information risk topics; interpersonal and collaborative skills, as well as good mediation and facilitation skills
Skills Desired
  • Business Architecture
  • Business Value Creation
  • Change Management
  • Consulting
  • Decision Making
  • Digital Capabilities
  • Effective use of Technology (Inactive)
  • Enterprise Architecture (EA)
  • Influencing Skills
  • IT Governance
  • Organization Awareness (Inactive)
  • Solution Architecture
  • Stakeholder Management
Commitment to Diversity & Inclusion

We are committed to building an outstanding, inclusive work environment and diverse teams representative of the patients and communities we serve.

Accessibility and accommodation

Novartis is committed to working with and providing reasonable accommodation to all individuals. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the recruitment process, or in order to receive more detailed information about the essential functions of a position, please send an e-mail to and let us know the nature of your request and your contact information. Please include the job requisition number in your message.

Why Novartis?

Our purpose is to reimagine medicine to improve and extend people’s lives and our vision is to become the most valued and trusted medicines company in the world. How can we achieve this? With our people. It is our associates that drive us each day to reach our ambitions. Be a part of this mission and join us! Learn more here: https://www.novartis.com/about/strategy/people-and-culture

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Enterprise Security Architect – Data Security
Enterprise Security Architect – Data Security

Novartis • Barcelona

Presencial
EUR 85.000 - 110.000
Diversity and Inclusion commitment
Accessibility and Accommodation support
Associate Director, Enterprise Architect Network Security
Associate Director, Enterprise Architect Network Security

Novartis • España

Híbrido
EUR 57.000 - 108.000
Performance bonus
Hybrid work options
Insurance plans
Associate Director, Enterprise Architect Network Security
Associate Director, Enterprise Architect Network Security

Novartis Farmacéutica • Sabadell

Presencial
EUR 57.000 - 108.000
Flexible hybrid work
Insurance plans
Retirement plans
+3
Technical Product Owner, Data Science & AI Platforms
Technical Product Owner, Data Science & AI Platforms

ES06 (FCRS = ES006) Novartis Farmacéutica, S.A. • Barcelona

Híbrido
EUR 58.000 - 108.000
Technical Product Owner, Data Science & AI Platforms
Technical Product Owner, Data Science & AI Platforms

Novartis • Barcelona

Presencial
EUR 110.000 - 150.000
Associate Director, Business Process Excellence
Associate Director, Business Process Excellence

Healthcare Businesswomen’s Association • Barcelona

Híbrido
EUR 36.000 - 118.000
Hybrid Enterprise Security Architect: PQC & Data Protection
Hybrid Enterprise Security Architect: PQC & Data Protection

ES06 (FCRS = ES006) Novartis Farmacéutica, S.A. • Barcelona

Híbrido
EUR 58.000 - 108.000
Associate Director, Business Process Excellence
Associate Director, Business Process Excellence

Novartis • Barcelona

Híbrido
EUR 64.000 - 118.000
Associate Director, Pharmacovigilance QA
Associate Director, Pharmacovigilance QA

Healthcare Businesswomen’s Association • Barcelona

Híbrido
EUR 69.000 - 128.000
Hybrid working options
Parental leave
Insurance plans
Associate Director, Business Process Excellence
Associate Director, Business Process Excellence

Biopharma Careers • Barcelona

Híbrido
EUR 64.000 - 118.000