PCI Pharma Services · 1 week ago
GRC / Technical Controls Analyst II
PCI Pharma Services is a global leader in providing life-changing therapies and innovative solutions to biopharma companies. The GRC / Technical Controls Analyst will manage the cybersecurity governance, risk, and compliance program, ensuring adherence to pharmaceutical regulatory requirements and supporting audit activities.
BiotechnologyHealth CareLife ScienceMedical DevicePackaging ServicesPharmaceutical
Responsibilities
Develop and maintain cybersecurity policies, standards, and procedures aligned with pharmaceutical regulations
Manage technical controls auditing across 150+ applications and systems quarterly
Coordinate GxP computer system validation activities with Quality Assurance team
Conduct risk assessments for new systems, vendors, and business initiatives
Maintain compliance evidence and documentation for regulatory audits (FDA, EMA)
Lead internal security control assessments and gap remediation tracking
Support third-party/vendor cyber risk management including security questionnaires and assessments
Develop and track key risk indicators (KRIs) and security metrics
Coordinate with external auditors and manage audit finding remediation
Maintain security control framework mapping (NIST CSF, ISO 27001, SOC 2)
Review and approve security exceptions with appropriate risk documentation
Support business continuity and disaster recovery compliance requirements
Qualification
Required
Bachelor's degree in Information Security, Risk Management, or related field
4+ years of experience in GRC, security compliance, or audit roles
Strong knowledge of security frameworks (NIST CSF, ISO 27001, CIS Controls)
Experience with pharmaceutical regulations (21 CFR Part 11, GxP, Annex 11)
Proficiency in controls testing and evidence collection
Experience with risk assessment methodologies
Strong documentation and technical writing skills
Excellent communication skills for audit and stakeholder interactions
Project management capabilities for compliance initiatives
Preferred
CISA, CRISC, or CGEIT certification
Direct pharmaceutical or life sciences industry experience
Experience with GRC platforms (ServiceNow GRC, Archer, OneTrust)
Knowledge of SOX IT general controls
HITRUST or healthcare compliance experience
Experience with vendor risk management programs
Company
PCI Pharma Services
PCI Pharma Services is a provider of outsourced services to the global pharmaceutical market.
H1B Sponsorship
PCI Pharma Services has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2021 (1)
2020 (2)
Funding
Current Stage
Late StageTotal Funding
unknown2025-07-14Series Unknown
2020-08-24Acquired
2014-08-10Seed
Recent News
2025-07-22
Company data provided by crunchbase