About The Position

Syneos Health is a leading life sciences services organization focused on accelerating customer success by partnering across the drug development and commercialization continuum. The Business Information Security Leader (BISL) is a senior security executive embedded within an assigned business unit (Clinical, Commercial, or Corporate). This role is accountable for information security across its assigned sector, working with departments and teams globally. The BISL is responsible for strategic solution design aligned with company-wide objectives, ensuring transparency of cyber risk posture, embedding security into business strategy, and enabling secure product delivery. Operating as a trusted member of the business-aligned Syneos Technology Solutions (STS) leadership team, the BISL maintains strong functional alignment with the Chief Information Security Officer (CISO). The candidate must possess a broad understanding of technologies and security strategies, communicate effectively at all organizational levels, and ensure security is integrated throughout the product lifecycle, balancing risk, regulatory requirements, and operational objectives. This role requires adapting to the evolving cybersecurity risk landscape to advise on risk mitigation and avoidance strategies.

Requirements

  • Broad understanding of technologies and security strategies.
  • Ability to effectively communicate to all levels within the organization.
  • Understanding and adaptation to the ever-changing cybersecurity risk landscape.
  • Ability to advise on risk mitigation and avoidance strategies.
  • Senior level accountability for business unit security strategy.
  • Strong partnership with the CISO.
  • Visibility into aggregated cyber risk posture.
  • Experience conducting risk assessments for new and materially changed technologies.
  • Ability to provide mitigation and remediation guidance.
  • Ability to track and highlight risk treatment plans progress.
  • Ability to provide formal risk posture reporting.
  • Ability to escalate roadblocks inhibiting timely mitigation or closure of risks.
  • Ability to prevent unmanaged technology risk proliferation.
  • Senior decision authority for cybersecurity and technology risk matters.
  • Oversight of risk acceptance, escalation to enterprise forums, and long-term risk posture considerations.
  • Participation in business demand and portfolio review processes.
  • Ensuring projects receive appropriate security requirements and technical guidance.
  • Driving early involvement of regulatory, privacy, and compliance subject matter experts.
  • Monitoring and driving adherence to enterprise security standards and architectural patterns.
  • Delivering strategic solution design aligned to company-wide objectives.
  • Ensuring business unit adherence to security policies, standards, and regulatory requirements (e.g., Privacy, SOX, GxP as applicable).
  • Partnering with Compliance, Privacy, Legal and other Risk functions to address control gaps.
  • Supporting security-related audits, regulatory inquiries, and remediation activities.
  • Representing the business unit in enterprise security, risk, and compliance governance forums.
  • Providing senior-level input on regulatory risk and remediation priorities.
  • Supporting security investigations and post-incident reviews.
  • Providing senior oversight and accountability for remediation outcomes and systemic improvements.
  • Driving business engagement in continuity and disaster recovery planning.
  • Ensuring lessons learned are incorporated into control improvements and architecture patterns.
  • Promoting a culture of secure behavior and accountability.
  • Cascading and tailoring security communications and awareness.
  • Translating complex security risks into business-relevant language.
  • Providing periodic executive-ready reporting and risk insights.
  • Influencing decision-making through data-driven risk transparency.
  • Providing strategic leadership and direction across senior leaders, managers, and cross-functional stakeholders.

Responsibilities

  • Serve as the senior security advisor to the assigned business-aligned STS leadership team.
  • Partner across all departments and teams globally within the assigned business unit.
  • Align security priorities with STS business strategy, digital roadmaps, and regulatory requirements.
  • Embed security-by-design principles into portfolio planning, demand intake and product development processes.
  • Inform Information Security priorities with STS product team strategy & goals.
  • Represent security requirements in portfolio governance forums.
  • Provide senior level accountability for the business unit security strategy, ensuring consistent direction, prioritization, and alignment with company wide objectives while maintaining strong partnership with the CISO.
  • Maintain visibility into the aggregated cyber risk posture of the assigned business unit.
  • Ensure risk assessments are conducted, partnering with the Risk Management function, for new and materially changed technologies.
  • Serve as a security risk advisor to business-aligned STS leadership, provide mitigation and remediation guidance, track and highlight risk treatment plans progress.
  • Provide formal risk posture reporting to STS leadership on a defined cadence.
  • Escalate roadblocks inhibiting timely mitigation or closure of risks.
  • Prevent unmanaged technology risk proliferation.
  • Exercise senior decision authority for cybersecurity and technology risk matters within the Business Unit, including oversight of risk acceptance, escalation to enterprise forums, and long-term risk posture considerations.
  • Participate in business demand and portfolio review processes to ensure early security engagement.
  • Ensure projects receive appropriate security requirements and technical guidance.
  • Drive early involvement of regulatory, privacy, and compliance subject matter experts.
  • Monitor and drive adherence to enterprise security standards and architectural patterns.
  • Deliver strategic solution design aligned to company-wide objectives.
  • Ensure business unit adherence to security policies, standards, and regulatory requirements (e.g., Privacy, SOX, GxP as applicable).
  • Partner with Compliance, Privacy, Legal and other Risk functions to address control gaps.
  • Partner with CISO subject matter experts to support security-related audits, regulatory inquiries, and remediation activities.
  • Represent the business unit in enterprise security, risk, and compliance governance forums, providing senior-level input on regulatory risk and remediation priorities.
  • Support security investigations and post-incident reviews, providing senior oversight and accountability for remediation outcomes and systemic improvements.
  • Drive business engagement in continuity and disaster recovery planning.
  • Ensure lessons learned are incorporated into control improvements and architecture patterns.
  • Promote a culture of secure behavior and accountability.
  • Cascade and tailor security communications and awareness for maximum business unit impact.
  • Translate complex security risks into business-relevant language.
  • Provide periodic executive-ready reporting and risk insights.
  • Influence decision-making through data-driven risk transparency.
  • Provide strategic leadership and direction across senior leaders, managers, and cross-functional stakeholders within the Business Unit, enabling consistent execution in a complex, matrixed environment.

Benefits

  • company car or car allowance
  • Health benefits to include Medical, Dental and Vision
  • Company match 401k
  • eligibility to participate in Employee Stock Purchase Plan
  • Eligibility to earn commissions/bonus based on company and individual performance
  • flexible paid time off (PTO) and sick time
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service