About the job
About Us
At Resilience, we are revolutionizing patient care in oncology, gastroenterology, and psychiatry by enhancing access to treatment and support throughout the patient journey. Our health applications are designed not only to improve patient lives but also to develop techniques and processes that minimize patient risks. Joining Resilience means contributing to a tangible mission within a scale-up environment where autonomy and impact are integral to our culture.
Your Role
In Brief:
You will take ownership of our security compliance program (ISO 27001) within the QARA (Quality, Assurance & Regulatory Affairs) team.
Your mission is to lead our Information Security Management System (ISMS) and ensure alignment with the existing quality management system (QMS). This role focuses on GRC/security compliance with a health sensitivity: you will interpret regulatory requirements related to security, collaborate closely with your colleagues and the Security Manager, while remaining deeply rooted in your expertise.
Your Impact:
You will drive Resilience's growth in regulated markets (healthcare, sensitive data) by ensuring our security posture and maintaining credibility with clients, partners, and authorities.
Your Daily Responsibilities:
Lead and automate the ISO 27001 ISMS: Full ownership of the ISO 27001 program integrated into the QMS — controls, risk register, policies, internal audits, corrective actions. Build and enhance automation workflows (Notion, AI agents, reporting) to remain audit-ready at all times.
Interface between ISMS and medical device cybersecurity: Ensure coherence between ISMS and QMS, support cybersecurity requirements for medical devices (IEC 81001-5-1, IEC 62443, SBOM, MDR Annex I §17) in collaboration with the QARA team, contribute to technical files and audits on security aspects, assist with the security gap assessment for DiGA (BSI TR-03161), and maintain FDA cybersecurity monitoring.
Prepare for new regulatory frameworks: Anticipate and translate NIS2, HIPAA, SOC2 requirements into pragmatic controls and concrete deliverables.
Your Team
We do not work in silos here. You will join an agile structure where compliance is truly a team sport:
Your Manager: You will report to the Head of QARA, working collaboratively with diverse teams on compliance projects.
Team Dynamics: Emphasis on open communication, shared goals, and a supportive environment to enhance compliance practices.

