Manager, IT Risk and Compliance

Gilead Sciences
Foster, CA

Job Description

At Gilead, we’re creating a healthier world for all people. For more than 35 years, we’ve tackled diseases such as HIV, viral hepatitis, COVID-19 and cancer – working relentlessly to develop therapies that help improve lives and to ensure access to these therapies across the globe. We continue to fight against the world’s biggest health challenges, and our mission requires collaboration, determination and a relentless drive to make a difference.

Every member of Gilead’s team plays a critical role in the discovery and development of life-changing scientific innovations. Our employees are our greatest asset as we work to achieve our bold ambitions, and we’re looking for the next wave of passionate and ambitious people ready to make a direct impact.

We believe every employee deserves a great leader. People Leaders are the cornerstone to the employee experience at Gilead and Kite. As a people leader now or in the future, you are the key driver in evolving our culture and creating an environment where every employee feels included, developed and empowered to fulfil their aspirations. Join Gilead and help create possible, together.

Job Description

Gilead's mission is to discover, develop, and deliver therapies that will improve the lives of patients with life-threatening illnesses worldwide. The Manager , IT Risk and Compliance is a key member of the Security Risk Compliance (SRC) - DP team and works closely with the legal Privacy & Data Ethics (P&DE) team, and other IT teams to ensure privacy program and controls are in place. They will serve as a subject matter expert on Information Security and Privacy principles; company policies and standards; and regulatory requirements as they pertain to data privacy. The person in this position will be required to understand and communicate the reporting requirements as defined by company policy and interpret and apply the concepts and requirements when processing and managing privacy and security incidents.

Key Responsibilities:

  • Develop / update / maintain data related privacy policies, standards and documentation.

  • Contribute directly to the data privacy program strategy and roadmap

  • Be responsible for working on and leading Data Privacy related projects, project tasks and deliverables

  • Serve as an initial point of contact & escalation for other team members, operational teams & works relating to Data Privacy (i.e. PIAs / Vendor Security Assessments and contract reviews and security rider updates) and escalate when appropriate.

  • Provide assessor / manager related lead activities for Data Privacy Incidents (DPIs) & work collaboratively with the Cybersecurity / SOC team for interactions between DPIs and SOC Security incidents.

  • Lead inputs for Data Privacy related assessments providing review / approval for resultant reports.

  • Participate in requirements for and reviews of vendor proposals.

  • Support the Privacy Champions group by delivering awareness and education beyond IT to other Gilead business units.

  • Drive continual improvements for the creation and delivery of Data Privacy educational, training and orientation programs for all employees, contractors and other appropriate third parties.

  • Maintain current knowledge of application U.S and EU and global data protection laws and accreditation standards.

  • Builds and develops strategic working relationships across business groups and provide lead coverage on more complex issues.

  • Review system-related information security plans throughout the practice / organization's network to ensure alignment between security and privacy practices.

  • Provide support and conduct reviews of contracts, service level and evaluation agreements.

  • Collaborates within various business groups to analyze and evaluate reported potential privacy incidents to determine whether a loss of sensitive data, protection health information, policy violation, and / or cyber or other threat to the enterprise has occurred.

  • Analyses and identifies trends from privacy and security reportable issues.

  • Define and creates privacy and security reportable issues metrics and reports.

  • Participate in other activities relating to security and privacy incident management.

Basic Qualifications:

  • Bachelor's Degree and Six Years' Experience OR Masters' Degree and Four Years' Experience AND progressively responsible IT experience including experience in information security / privacy & risk management and being responsible for leading a team / service provider function.

  • Experience developing and implementing compliance monitoring processes and procedures.

  • In depth experience with formal project planning and risk assessment methodologies.

  • Strong knowledge of information systems security concepts and current information security / privacy trends and practices.

  • Knowledge of EU and global security and privacy-related regulatory requirements (i.e. U.S Privacy and Security Regulations, GDPR, PIPA, PIPEDA, etc.).

  • Strong business and technical skills in the planning, administration, and management of information systems, operational and technical security controls; and security risk analysis and management.

  • Ability to write and communicate in proper business English (including writing our formal assessment documents), with strong verbal skills and ability to adapt information delivery based on the target audience

Preferred Qualifications:

  • Industry appropriate certifications beneficial (CIPP / EU and/or U.S, CIPM, CHP, or other certified privacy or security-related credentials).

  • In-depth knowledge and experience of vendor / supplier-based security and privacy assessments and on-site audits.

  • Knowledge about medical records and other medical information, patient privacy and confidentiality, and release of information.

  • Experience in appropriately managing confidential and sensitive information.

  • Must be able to prepare formal reports and presentations as needed.

  • Must be detailed oriented and possess the ability to prioritize tasks so work is completed in an accurate, timely manner.

  • Strong Knowledge of Security Frameworks (ISO 27001, NIST 800-53, etc.)

  • Self-starter with the ability to work independently, lead others, prioritize, multi-task, and maintain flexibility in fast-paced, changing environment. Be proactive, independent and responsive – requires little supervisory attention.

  • Ability to confront conflict and progress difficult issues in a professional, assertive and proactive manner.

  • Ability to build strong working relationships at all levels, internal and/or external to the organization.

  • Prior working experience in a pharmaceutical company is strongly preferred

  • Highly organized, results-oriented and attentive to details

People Leader Accountabilities:

  • Create Inclusion - knowing the business value of diverse teams, modeling inclusion, and embedding the value of diversity in the way they manage their teams.

  • Develop Talent - understand the skills, experience, aspirations and potential of their employees and coach them on current performance and future potential. They ensure employees are receiving the feedback and insight needed to grow, develop and realize their purpose.

  • Empower Teams - connect the team to the organization by aligning goals, purpose, and organizational objectives, and holding them to account. They provide the support needed to remove barriers and connect their team to the broader ecosystem.

The salary range for this position is: $146,540.00 - $189,640.00. Gilead considers a variety of factors when determining base compensation, including experience, qualifications, and geographic location. These considerations mean actual compensation will vary. This position may also be eligible for a discretionary annual bonus, discretionary stock-based long-term incentives (eligibility may vary based on role), paid time off, and a benefits package. Benefits include company-sponsored medical, dental, vision, and life insurance plans*.

For additional benefits information, visit:

* Eligible employees may participate in benefit plans, subject to the terms and conditions of the applicable plans.


For jobs in the United States:

Gilead Sciences Inc. is committed to providing equal employment opportunities to all employees and applicants for employment, and is dedicated to fostering an inclusive work environment comprised of diverse perspectives, backgrounds, and experiences. Employment decisions regarding recruitment and selection will be made without discrimination based on race, color, religion, national origin, sex , age, sexual orientation, physical or mental disability, genetic information or characteristic, gender identity and expression, veteran status, or other non-job related characteristics or other prohibited grounds specified in applicable federal, state and local laws. In order to ensure reasonable accommodation for individuals protected by Section 503 of the Rehabilitation Act of 1973, the Vietnam Era Veterans' Readjustment Act of 1974, and Title I of the Americans with Disabilities Act of 1990, applicants who require accommodation in the job application process may contact [email protected] for assistance.


For more information about equal employment opportunity protections, please view the 'Know Your Rights' poster.

Our environment respects individual differences and recognizes each employee as an integral member of our company. Our workforce reflects these values and celebrates the individuals who make up our growing team.


Gilead provides a work environment free of harassment and prohibited conduct. We promote and support individual differences and diversity of thoughts and opinion.


For Current Gilead Employees and Contractors:

Please apply via the Internal Career Opportunities portal in Workday.

Posted 2025-09-10

Recommended Jobs

Senior Analyst, Global Infrastructure and Project Finance Group - San Fran

Fitch Group
San Francisco, CA

At Fitch, we have an open culture where employees are able to exchange ideas and perspectives, throughout the organization, irrespective of their seniority. Your voice will be heard allowing you to h…

View Details
Posted 2025-10-04

Product Manager - AI Agents

Assembled
San Francisco, CA

About Assembled Assembled builds the infrastructure that underpins exceptional customer support, empowering companies like CashApp, Etsy, and Robinhood to deliver faster, better service at scale. W…

View Details
Posted 2025-10-10

Accountant

Cx2
El Segundo, CA

CX2 is a next-generation defense technology company founded to deliver spectrum dominance for the United States and our allies. CX2’s AI-enabled hardware and software platforms detect, disrupt and de…

View Details
Posted 2025-10-13

Mechanical Inspector A

RBC Bearings Incorporated
South El Monte, CA

Job Title: Mechanical Inspector A Date: October 3, 2025 Location: South El Monte, US, 91733 Company: VACCO Industries an RBC Company SUMMARY:  With expertise, inspects mechanical or ele…

View Details
Posted 2025-10-03

Sr. Staff Engineer, AI and Data Platform

Quizlet
San Francisco, CA

About Quizlet: At Quizlet, our mission is to help every learner achieve their outcomes in the most effective and delightful way. We’re a $1B+ learning platform used by two-thirds of U.S. high scho…

View Details
Posted 2025-09-22

Software Engineer (Computational Geometry)

Layup Parts
Huntington Beach, CA

Layup Parts is a startup that manufactures composite parts and the tooling to make those parts. Our mission is to ship parts faster than our competition can return a quote. We utilize the latest …

View Details
Posted 2025-10-31

Delivery Driver

Ontario, CA

Job Schedule Corporate Retail Store Job ID 70994 Delivery Driver Delivery Drivers Keep Aaron’s Moving This isn’t some tedious desk job. On our team, you’ll be inside, outside, driving, in…

View Details
Posted 2025-10-03

Data Analyst, Customer Success

Intellipro Group
Sunnyvale, CA

Job Title: Data Analyst, Customer Success Position Type: Permanent Location: Sunnyvale, California (Onsite) Salary Range: $100,000 - $140,000 (USD) Job ID#: 149557 Job Description: A…

View Details
Posted 2025-09-22

Senior Healthcare Project Architect

NBBJ
San Diego, CA

NBBJ is an award-winning design firm recognized as a TIME100 Most Influential Company, a Fast Company Most Innovative Architecture Firm and a two-time 2025 AIA National Honor Award recipient. These …

View Details
Posted 2025-08-07

Purchasing Manager

Pacific Fusion
San Leandro, CA

About Pacific Fusion Pacific Fusion was founded in 2023 with the mission to power the world with abundant, affordable, clean energy. We are rapidly designing and building a pulsed magnetic fusion…

View Details
Posted 2025-10-13