Security Governance Specialist
Ascendis Pharma
2900 Hellerup, Denmark
Are you passionate about cyber security and governance? Do you have experience building robust security frameworks in a dynamic environment?
If so, now is your chance to join Ascendis Pharma as our new Security Governance Specialist.
Ascendis Pharma is a global biopharmaceutical company committed to making a meaningful difference in patients’ lives. Guided by our core values of Patients, Science, and Passion, we are applying our innovative TransCon® technology platform to fulfill our mission of developing new therapies that demonstrate best-in-class potential to address unmet medical needs.
At our headquarters in Hellerup, Denmark, research facilities in Heidelberg, Germany, and additional offices across Europe and the United States, we are advancing programs in our Endocrinology Rare Disease and Oncology portfolios. We also collaborate with partners on the development of TransCon-based products in other therapeutic areas and markets.
We are seeking a passionate Security Governance Specialist to join our growing team. As a key member of the Ascendis Pharma team, you will play a crucial role in fortifying our Governance, Risk, and Compliance (GRC) capabilities and shaping security initiatives across the company. This is an exciting opportunity to work in a fast-paced environment, collaborate with cross-functional, global teams working together to achieve extraordinary results.
You will be joining the Cyber Security team consisting of 5 colleagues, and report directly to People Leader, Jakob Monajemzadeh Thrane, and Functional Leader, Henrik Aagaard Linnemann, who is based in Copenhagen, Hellerup. You will be based in Copenhagen, Hellerup
Your key responsibilities will be:
- Drive our Security GRC program: Develop and implement security policies, controls, and processes (aligned with frameworks like ISO 27001 and regulations like NIS2/GDPR) to build a robust yet agile governance framework.
- Drive cross-functional security initiatives: Work closely with IT Compliance, Legal, and numerous product teams to embed security into projects and decisions, ensuring that security truly makes a difference where it matters – not just on paper in policies.
- Be a security change agent: Use your project leadership skills to drive security initiatives beyond GRC (including emerging areas like Data Security and AI). You’ll challenge the status quo when needed and lead changes across the IT landscape, stepping outside your comfort zone to deliver better security outcomes.
- Leverage AI and innovation: Embrace new tools and technologies (yes, even AI) to enhance our security practices. You’re encouraged to experiment with automation and AI solutions to “do more with less” and continuously improve our efficiency and defenses.
- Build a security-first culture: Help nurture an environment of awareness and continuous improvement, where colleagues understand that good security is everyone’s responsibility and an enabler of our business goals (not just a box-ticking exercise).
Qualifications and Skills:
You hold a relevant academic degree – preferably a relevant Master’s degree – and 3-5 years of experience in cybersecurity, IT risk management, or IT governance.
Furthermore, you have:
- Strong knowledge of GRC frameworks (e.g., ISO 27001, CIS Controls) and regulations (GDPR, NIS2).
- Proven experience leading security or compliance projects in agile environments.
- Familiarity with security technologies and automation/AI tools.
- Excellent communication skills with both technical and non-technical stakeholders.
- Fluent in English
Key competencies:
You are a strong team player, analytical, and have a can-do attitude.
You possess an entrepreneurial mindset and can thrive in an informal, open environment where innovation and change are key.
To succeed in this role, we also expect you to have a critical mindset, be collaborative, and adaptable.
Travel: 5-10 days per year.
Office: Tuborg Boulevard 12, 2900 Hellerup
Apply now.
We evaluate applications when received, so we encourage you to apply as soon as possible. Please note that we conduct interviews on a rolling basis and reserve the right to remove the job posting at any time.
To ensure your application is reviewed, please submit it through the specified platform - applications sent by email or other channels will not be evaluated.
For more details about the position or the company, please contact Jakob Monajemzadeh Thrane, People Leader, jmt@ascendispharma.com
You can learn more about Ascendis by visiting our website www.ascendispharma.com
Applications must be submitted in English and will be treated confidentially.
A note to recruiters:
We do not allow external search party solicitation. Presentation of candidates without written permission from the Ascendis Pharma HR team (specifically from: Talent Acquisition Partner or Human Resources Director) is not allowed. If this occurs, your ownership of these candidates will not be acknowledged.