Director, Cybersecurity Risk Operations & BISO

Insmed Incorporated•NJ Corporate Headquarters, NJ
•$185,000 - $252,500•Hybrid

About The Position

At Insmed, every moment and every patient counts — and so does every person who joins in. As a global biopharmaceutical company dedicated to transforming the lives of patients with serious and rare diseases, you’ll be part of a community that prioritizes the human experience, celebrates curiosity, and values every person’s contributions to meaningful progress. That commitment has earned us recognition as Science magazine’s No. 1 Top Employer for five consecutive years, certification as a Great Place to Work® in the U.S., and a place on The Sunday Times Best Places to Work list in the UK. For patients, for each other, and for the future of science, we’re in. Are you? About the Role: The Director, Cyber Risk Operations & BISO will be responsible for building and maintaining capabilities to track and report cybersecurity risks across the company. Working with other BISO’s and Risk Leads, your responsibilities will include governance of cybersecurity standards, continuous control compliance monitoring, identification and evaluation of cybersecurity risk, and reporting of cybersecurity risks and initiatives to executive leadership. As a BISO, you will act as the primary cybersecurity advisor and point of contact for assigned business unit stakeholders and their corresponding IT Business Partners. You will be responsible for understanding the cybersecurity strategy and objectives and engaging various teams across the organization to drive action to meet those objectives. The successful candidate will possess a blend of general technology, security, and audit competencies with an emphasis on critical thinking, data analytics, and a desire to drive efforts to their conclusion as needed. Proficiency in establishing AI enabled capabilities is highly desired.

Requirements

  • Minimum of a Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field.
  • Minimum of 10 years of experience working in information security controls, information technology audit, or security risk management.
  • At least 5 years of experience, including coaching, consensus building, and ability to effectively manage resources to address competing priorities.
  • Demonstrated experience creating executive level presentations.
  • Experience escalating risk issues to senior technology or company leadership.
  • Ability to manage across functional teams to achieve desired business results.
  • Ability to translate a business agenda into technology terms and vice versa.
  • Excellent interpersonal, written, and verbal communications skills.
  • Strong understanding and experience with information security technologies.
  • Ability to adjust to multiple demands, changing priorities, ambiguity, and rapid change, while multitasking effectively.

Nice To Haves

  • Professional services/Big Four consulting background.
  • Fortune 500 company experience.
  • Pharmaceutical/Healthcare industry experience.
  • At least one relevant industry certification – CISSP, CISM, CRISC, CISA.
  • Proficiency in establishing AI enabled capabilities is highly desired.

Responsibilities

  • Enhance, maintain, and champion engagement with the business and the Technology organization to monitor and manage visibility to key security risks and status of remediation.
  • Act as the primary security advisor and point of contact for assigned Insmed business unit leaders (e.g., Commercial, R&D, or Global Product Development) and IT to align cybersecurity with business objectives.
  • Identify, evaluate, and communicate information security risks specific to the business unit's applications, data, and third-party vendors.
  • Partner with IT and project management teams to ensure security and privacy controls are built into technology projects and product lifecycles from day one.
  • Provide local business-unit context and serve as an escalation path during cybersecurity incidents, threat assessments, or vulnerability remediations.
  • Direct routine, ongoing processes to formalize, track, and report security risks across varying levels of stakeholders, including risk owners and executive leadership.
  • Establish and execute strategy for formalization and routine governance of security standards, leveraging automation and Artificial Intelligence to create efficiency.
  • Collaborate with other leaders to establish success criteria and metrics for reporting compliance with key security controls.
  • Create routine and ad-hoc presentations for executive leadership to ensure awareness and alignment on security risks and initiatives and support key security decisions.
  • Perform project management and change management duties, as assigned.

Benefits

  • Comprehensive medical, dental, and vision coverage and mental health support
  • Annual wellbeing reimbursement
  • Access to our Employee Assistance Program (EAP)
  • Generous paid time off policies
  • Fertility and family-forming benefits
  • Caregiver support
  • Flexible work schedules with purposeful in-person collaboration
  • 401(k) plan with a competitive company match
  • Annual equity awards
  • Participation in our Employee Stock Purchase Plan (ESPP)
  • Company-paid life and disability insurance
  • Company Learning Institute providing access to LinkedIn Learning, skill building workshops, leadership programs, mentorship connections, and networking opportunities
  • Employee resource groups
  • Service and recognition programs
  • Meaningful opportunities to connect, volunteer, and give back
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service