EU remote
Information Security Spec II
About this role
Overview This position is responsible for protecting Bio-Rad’s data and cloud estate and for leading high-severity security incident response outside US hours. The role owns the enterprise Data Loss Prevention (DLP) program, responsible for cloud security (AWS and Azure), and acts as the senior escalation point for security alerts in the non-US time zone. The ideal candidate will have a bachelor’s degree in Computer Science, Information Security or a closely related subject; an advanced degree is preferred.
The position requires strong collaboration skills and the ability to work effectively with IT infrastructure, application teams, business users and managed security service providers. This position is responsible for protecting Bio-Rad’s data and cloud estate and for leading high-severity security incident response outside US hours. The role owns the enterprise Data Loss Prevention (DLP) program, responsible for cloud security (AWS and Azure), and acts as the senior escalation point for security alerts in the non-US time zone.
The ideal candidate will have a bachelor’s degree in Computer Science, Information Security or a closely related subject; an advanced degree is preferred. The position requires strong collaboration skills and the ability to work effectively with IT infrastructure, application teams, business users and managed security service providers. ROLE RESPONSIBILITIES Own and manage the enterprise Data Loss Prevention (DLP) program end to end – policy design and changes, exception handling, new functionality and rollout – in partnership with Legal and data owners.
Define and enforce protection for high-risk company assets by implementing enterprise DLP controls aligned to Legal and regulatory requirements, and maintain a quarterly-reviewed inventory of protected assets with Legal. Reduce Azure/AWS security risk by performing cloud security assessments and remediating all identified findings. Support Azure cloud security engineering work, including Microsoft Graph API automation, secure configuration, and identity and workload hardening.
Serve as the security alert lead contact for the non-US time zone for all High and Critical cases, owning end-to-end handling of complex and high-risk incidents through documented closure within SLA. Increase L2 support team’s effectiveness through standardized SOPs, expert guidance, structured escalation support and automation playbooks that shift work left to L2 and reduce escalation volume. Act as integration owner and backup contact for the 3rd party managed detection and response service.