Engineer the Quantum RevolutionYour expertise can help us shape the future of quantum computing at Oxford Ionics.

View Open Roles

Information Security Risk and Governance Lead

Hlx Life Sciences
London
4 days ago
Create job alert

Information Security Risk and Governance Lead

Location: London or Lausanne

Type: Full-time | Hybrid (3 days/week onsite)


Company Overview

Join a pioneering AI-first biotech company that’s redefining how we discover and develop medicines. This organisation leverages cutting-edge machine learning to unlock new possibilities in drug discovery, aiming to solve some of humanity’s most devastating diseases. With deep roots in scientific innovation and an ambitious vision, they are building a world-class team at the intersection of biology, AI, and engineering.


Role Overview

This role offers a unique opportunity to architect and operationalise a best-in-class information security governance framework. Reporting directly to the Chief Information Security Officer (CISO), you will lead strategic efforts to embed security, trust, and regulatory readiness into a platform that supports world-leading biomedical research and drug design.


You will play a pivotal role in aligning data governance, security operations, and compliance within an environment that spans regulated biopharma workflows, cloud-native infrastructure, and AI/ML experimentation at scale.


Key Responsibilities

  • Design and implement a unified compliance framework across AI, cyber, and life sciences regulatory domains.
  • Own and drive the strategic programme for ISO 27001 certification and ongoing ISMS operations.
  • Develop and maintain security policies and procedures, tailored for an AI-first, GxP-regulated organisation.
  • Lead information security risk assessments, translating technical threats into business-relevant decisions.
  • Collaborate cross-functionally with ML, engineering, legal, and scientific teams on secure data governance initiatives.
  • Oversee internal and external audit readiness, including partner due diligence and regulatory inspection preparation.
  • Champion third-party risk management across AI, cloud, and research vendor ecosystems.
  • Establish KPIs and dashboards to communicate the effectiveness of the security and risk programme.
  • Drive security culture initiatives through awareness campaigns, training, and governance forums.


Required Experience & Skills

  • Experience as a hands-on individual contributor who can pivot to strategy and delivery.
  • In-depth knowledge of InfoSec and regulatory standards including ISO 27001, NIST, GDPR, HIPAA, GxP, and the EU AI Act.
  • Demonstrated experience leading compliance certification programmes and external audits.
  • Strong understanding of cybersecurity and IT infrastructure within ML/cloud environments.
  • Proven track record managing risk end-to-end — from identification to mitigation and communication.
  • Practical experience with privacy and data lifecycle controls, including audit trails, de-identification, and retention.
  • Industry experience in either the AI or life sciences sector, with awareness of domain-specific risk landscapes.
  • Strong stakeholder management skills with an ability to influence across technical and scientific domains.


Nice to Have

  • Familiarity with AI-specific threats (e.g., model inversion, adversarial attacks) and appropriate mitigations.
  • Experience developing Trusted Research or Trusted ML Environments.
  • Certifications such as CISSP, CISM, CISA, CIPP/E, ISO 27001 Lead Implementer, or equivalents.
  • Experience with modern GRC platforms (e.g., Vanta, Drata) or automation via Python/scripting.
  • Involvement in open-source security communities or contributions to public frameworks.


Working Model & Culture

Hybrid working (3 days onsite – typically Tuesday, Wednesday + 1 flexible day)

Fast-paced, cross-functional environment with a focus on high-integrity science and rapid delivery.


Culture built on intellectual humility, ambition, and collaboration across disciplines.

Commitment to diversity, equity, and belonging in every aspect of work and culture.

Related Jobs

View all jobs

Information Security Risk and Governance Lead

Postdoctoral Research Scientist - Soil Microbiomes

Quality Assurance Specialist

Transformation Lead...

Information Technology Project Manager

Medical Information Manager

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Seasonal Hiring Peaks for Biotechnology Jobs: The Best Months to Apply & Why

The UK's biotechnology sector has evolved into one of Europe's most dynamic and lucrative career markets, with roles spanning from laboratory research to regulatory affairs and bioprocessing engineering. With biotech positions commanding salaries ranging from £28,000 for entry-level research associates to £95,000+ for senior directors, understanding when companies actively recruit can significantly enhance your job search success. Unlike traditional industries, biotechnology hiring follows distinct seasonal patterns driven by research funding cycles, regulatory submission deadlines, and academic collaboration timelines. The sector's unique blend of scientific rigour, commercial pressure, and regulatory oversight creates predictable hiring windows that savvy professionals can leverage to advance their careers. This comprehensive guide explores the optimal timing for biotechnology job applications in the UK, examining how funding announcements, clinical trial phases, and academic calendars influence when companies expand their teams and why strategic timing can make the difference between landing your ideal role and missing the opportunity entirely.

Pre-Employment Checks for Biotechnology Jobs: DBS, References & Right-to-Work and more Explained

The biotechnology sector in the UK continues to flourish as one of the world's leading life sciences hubs, with companies ranging from cutting-edge gene therapy startups to established pharmaceutical giants seeking talented professionals. However, securing a position in this highly regulated and security-conscious industry involves comprehensive pre-employment screening that goes far beyond typical recruitment processes. Whether you're a research scientist, bioprocess engineer, regulatory affairs specialist, or clinical trial manager, understanding the extensive vetting requirements is essential for successfully navigating your career in biotechnology. This comprehensive guide explores the various background checks and screening processes you'll encounter when applying for biotech positions in the UK, from basic eligibility verification to stringent security and regulatory compliance assessments.

Why Now Is the Perfect Time to Launch Your Career in Biotechnology: The UK's Life Sciences Renaissance

The United Kingdom stands at the precipice of a biotechnology revolution that promises to reshape medicine, agriculture, manufacturing, and environmental sustainability for generations to come. From the gene therapy pioneers in Oxford to the synthetic biology innovators in Cambridge, Britain's biotech sector is experiencing unprecedented growth, creating extraordinary opportunities for career changers and new graduates alike. If you've been contemplating a move into biotechnology, the stars have never been more perfectly aligned. The convergence of scientific breakthroughs, government investment, industry expansion, and societal need has created a career landscape rich with possibility and purpose.