Roche Posted July 4, 2026

Cybersecurity Analyst –IAM ID Verification & External Collaborators

Madrid, Spain FULL_TIME
Information Technology

Roche is the source of truth for this posting and owns the application process. We surface normalized context and market comparison you won't find on the original listing.

About this opportunity

At Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections,  where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters.

The Position

Job description

The Cybersecurity Analyst investigates security incidents, performs vulnerability assessments, and contributes to improving security operations

You will be capable of independent work on defined tasks, independently handling less complex tasks and contributing to various stages of the analysis lifecycle

By taking ownership of delivering well-defined requirements and supporting the design of feasible security solutions, you will proactively identify solution-level issues and maintain a mindset of continuous improvement within the security domain

Description of the area

Job Responsibilities / Scope 

Independently handles less complex tasks and provides input to solution design by defining and managing requirements for small-scale problem areas

Focuses on understanding the problem domain, recommending solution options, and proactively identifying solution-level issues, gaps, or inefficiencies to improve products or processes

Accountability/Problem Solving 

Takes ownership of delivering well-defined requirements and supporting the design of feasible solutions for specific features or components

Independently analyzes less complex security technical problems, defines problem scope, contributes to identifying root causes, and provides solutions to a broad range of difficult problems

Evaluates change and technology impacts with increasing accuracy, diagnoses gaps, and applies analytical and logical reasoning independently to identify discrepancies and challenge assumptions

Stakeholder Management 

Identifies key business, technical, and security stakeholders for assigned tasks, analyzing their needs and interests regarding security posture and risk

Primarily interacts within security product teams/squads and across Security Operations functions, while establishing rapport and managing realistic security expectations

Develops and delivers tailored communication for security tasks and incident updates, facilitates meetings, and proactively engages with stakeholders to elicit, clarify, and validate security requirements

Impact/Strategy 

Contributes to projects or workgroups by providing well-analyzed requirements and supporting the design of solutions that align with business objectives within their specified area

Demonstrates growing autonomy and expertise within their specific domain by translating requirements into a strategic plan with supervision, and may identify opportunities for minor process improvements within their immediate scope

Complexity

Works on a product or larger contexts, handling requirements and analysis for specific features or components

Can navigate moderate levels of complexity in requirements and stakeholder landscapes

Begins to understand sources of influence and analyze business problems/opportunities within this product context, starting to map basic interconnections

Business/Technical ability 

Possesses a working knowledge of the relevant business domain and supporting technologies

Understands sources of influence, comprehending internal and external factors affecting the problem space, and is capable of identifying and analyzing basic business problems or opportunities holistically

Qualifications

Education / Experience

Working knowledge of relevant business domains and supporting cybersecurity technologies

Experience in conducting stakeholder interviews, synthesizing requirements, and mapping/analyzing current processes

Demonstrated ability to independently handle less complex tasks and contribute to various stages of the security and business analysis lifecycle

Technical Skills

Ability to apply tools, principles, concepts, and techniques related to requirements, data, usability, and process analysis in practical scenarios

Experience investigating security incidents, performing vulnerability assessments, and managing requirements for small-scale problem areas

Skill in evaluating change and technology impacts with increasing accuracy, and breaking down complex technical concepts with minimal guidance

Additional Qualifications

A mindset of continuous improvement with a proactive approach to identifying solution-level issues, gaps, or inefficiencies

Strong analytical and logical reasoning skills to identify discrepancies, challenge assumptions, and confidently present solutions

 

 

Who we are

A healthier future drives us to innovate. Together, more than 100’000 employees across the globe are dedicated to advance science, ensuring everyone has access to healthcare today and for generations to come. Our efforts result in more than 26 million people treated with our medicines and over 30 billion tests conducted using our Diagnostics products. We empower each other to explore new possibilities, foster creativity, and keep our ambitions high, so we can deliver life-changing healthcare solutions that make a global impact.

Let’s build a healthier future, together.

Roche is an Equal Opportunity Employer.

Job details

Seniority
Not listed
Function
Information Technology
Therapeutic area
Not listed
Location
Madrid, Spain
Employment type
FULL_TIME

How this role compares

Computed from every other active Information Technology role in our database, not just this employer's listings.

We currently track 1097 comparable Information Technology roles across 55 biopharma companies.

1097Comparable roles tracked
1035Currently active
55Companies hiring similar roles
29Countries represented

Salary context

143 of 1097 peers report a salary range (USD, annualized)

Peers share this role's job function. This posting doesn't list a seniority level, so peers aren't narrowed by seniority either -- the range below may span more levels than usual.

This roleSubject Not listed on this posting
Lowest disclosed · Senior Data Security Engineer (Insider Risk Management – Engineering) · AbbVie $0/hr – $0/hr (≈ $0–$0/yr)
Highest disclosed · Senior Director, Targets and Mechanisms Solutions · Pfizer $230,900/yr – $384,800/yr
Peer group range $0 – $307,850 (median $165,900)

Where these roles are based

Top locations among the 1097 comparable roles

India507
United States241
Spain105
Poland72
Portugal32
China13

+ 23 more countries

Seniority mix

612 of 1097 peers have a known seniority level

Senior290
Manager135
Associate52
Principal50
Associate Director39
Director28
Senior Director13
Intern/Fellow/Postdoc4
Executive/VP1

Therapeutic area mix

1 of 1097 peers have a known therapeutic area; the rest are genuinely unlabeled, not hidden

Oncology1

Similar opportunities

The closest matches from our peer group, ranked by how similar they are, not how well you'd qualify for them -- treat this as market context, not a guaranteed shortlist; a weak match is labeled as one below.

40%similar
Roche Sant Cugat del Vallès, Barcelona, Spain
Same function Same country
40%similar
Roche Sant Cugat del Vallès, Barcelona, Spain Senior
Same function Same country
40%similar
Novartis Barcelona Gran Vía, Spain
Same function Same country
40%similar
Novartis Barcelona Gran Vía, Spain Associate Director
Same function Same country
40%similar
Novartis Barcelona Gran Vía, Spain Associate Director
Same function Same country
40%similar
Novartis Barcelona Gran Vía, Spain Associate Director
Same function Same country

How we calculate "similar"

No black box, no LLM guesswork: a deterministic score built from four normalized attributes. Here's this role's own peer group at different match levels, so you can see the mechanism, not just the result.

Every comparison starts from the same 100-point budget: 25 for working in the same function, 40 for the same therapeutic area, 20 for the same or adjacent seniority, 15 for the same country. A dimension we can't confirm on both sides contributes nothing, never a guess, never a free pass.

40%
Lead Software Engineer (Rust)
Roche · Sant Cugat del Vallès, Barcelona, Spain · Seniority not listed
Function Therapeutic area Seniority Country
40%
Associate Director Business Analysis (GCO)
Novartis · Barcelona Gran Vía, Spain · Associate Director
Function Therapeutic area Seniority Country
40%
Snr. Specialist, Platform Services - Data, Digital & IT
Novartis · Barcelona Gran Vía, Spain · Seniority not listed
Function Therapeutic area Seniority Country
40%
Associate Director, Solution Design Expert (Advanced Therapies)
Novartis · Barcelona Gran Vía, Spain · Associate Director
Function Therapeutic area Seniority Country
Unmatched or unknown dimensions score exactly the same: 0 points, never a partial guess. A role we know almost nothing about beyond its function bottoms out at 25%; it never inflates to 100% just because there's little to compare against. Seniority uses a defined ladder (Associate → Manager → Associate Director → Senior → Principal → Director → Senior Director → Executive/VP) so "Director" and "Senior Director" count as adjacent, but "Director" and "Executive/VP" do not.