About this role
At Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters.
###
The Position
At Roche, we are passionate about transforming patients’ lives and we are fearless in both decision and action - we believe that good business means a better world. That is why we come to work each day. We commit ourselves to scientific rigor, unassailable ethics, and access to medical innovations for all. We do this today to build a better tomorrow.
The Product Security and Privacy Organization (PSPO) protects Roche Diagnostics products, our customers and ultimately patients from cybersecurity and privacy risks. As our products become more connected and more intelligent, the work we do becomes more central to how Roche competes and how patients are protected.
Role Purpose
The Risk & Governance Intern bridges regulatory operations, information security, and digital innovation. In this role, you will support core compliance and quality control functions, including risk assessments, audit readiness, regulatory monitoring (such as GDPR), and maintaining Global Standard Procedures (GSPs). Concurrently, you will act as a process efficiency catalyst by leveraging AI tools and building low-code/no-code automations to eliminate manual bottlenecks, streamline policy tracking, and optimize overall department workflows.
You will be responsible for:
- Assist the team in researching and monitoring new industry regulations, laws, and standards.
- Leverage AI tools to summarize complex regulatory updates and help assess their impact on current company policies.
- Support the execution of internal compliance reviews, risk assessments, and quality control checks.
- Help gather audit evidence and review documentation for adherence to regulations.
- Analyze existing compliance workflows to identify manual bottlenecks.
- Propose and help build low-code/no-code automated solutions to streamline these tasks.
- Help draft, review, and update Global Standard Procedures (GSPs) and compliance manuals. Assist in building automated tracking systems for policy renewals and employee acknowledgments.
- Help prepare clear, well-structured materials for leadership meetings and reviews, such as Management Reviews for ISMS.
Essential
- Recent graduate in Information Systems, Computer Science, Engineering, or a related field.
- Familiarity with core information security concepts (e.g., risk assessment, confidentiality, integrity, availability) and regulatory mandates (e.g., GDPR).
- Genuine curiosity about AI tools and how they can be applied to real business problems.
- Strong written and verbal communication skills, able to turn data into a clear message.
- Well organised, proactive and comfortable working with limited supervision Fluency in English.
Who we are
A healthier future drives us to innovate. Together, more than 100’000 employees across the globe are dedicated to advance science, ensuring everyone has access to healthcare today and for generations to come. Our efforts result in more than 26 million people treated with our medicines and over 30 billion tests conducted using our Diagnostics products. We empower each other to explore new possibilities, foster creativity, and keep our ambitions high, so we can deliver life-changing healthcare solutions that make a global impact.
Let’s build a healthier future, together.
Roche is an Equal Opportunity Employer.
