Talent.com
Senior Engineer, IT Governance and Compliance
Senior Engineer, IT Governance and ComplianceCardinal Health • St Paul, MN, United States
Senior Engineer, IT Governance and Compliance

Senior Engineer, IT Governance and Compliance

Cardinal Health • St Paul, MN, United States
14 days ago
Job type
  • Full-time
Job description

Company Overview :

Cardinal Health, Inc. (NYSE : CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.

Department Overview :

Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.

Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.

The IT Governance and Compliance function within the organization develops, enhances, and maintains security policies and IT compliance programs in alignment with regulatory, legal, and contractual requirements, while collaborating closely with key stakeholders to maintain a security and compliant technology environment.

We are committed to building a resilient, secure, and compliant digital ecosystem, and you will play a critical role in safeguarding our information and supporting our mission to improve the lives of people every day.

Job Overview :

We are seeking a strategic and experienced Senior Engineer for IT Governance and Compliance , who will be responsible for the design, implementation and continuous improvements of IT governance frameworks, controls, and compliance processes across the organization. This role will also serve as a senior technical and strategic resource ensuing IT operations, projects, and M&A activities are aligned with enterprise standards, regulatory requirements and industry's best practices. In this role, you will have the opportunity to lead meaningful work, collaborate across functions, and help shape the future of our IT Governance and Compliance strategy.

This role is a leader position within the IT Governance and Compliance team and requires having an in-depth understanding of key privacy and security regulations within healthcare industry such as PCI DSS (Payment Card Industry Data Security Standard), HIPAA (Health Insurance Portability and Accountability Act), GDPR (General Data Protection Regulation), CCPA (California Consumer Privacy Act), FDA (Food and Drug Administration) / GxP / CSV (Computer System Validation), DSCSA(Drug Supply Chain Security Act), as well as relevant governance frameworks to drive compliance to those regulatory requirements such as NIST, HITRUST, SOC 2, ISO, COBIT, ITIL, etc., while working with members of the Information Security and Risk Management team as well as stakeholders from Finance, Legal, Ethics & Compliance, Internal Audit and our various business segment leadership teams throughout the Cardinal Health enterprise.

Responsibilities :

Lead the development, implementation and maintenance of the IT governance framework in alignment with industry standards.

Partner with IT and business leaders to embed governance principles across IT eco-system.

Define and monitor key risk and performance indicators to ensure continuous compliance and operational excellence.

Conduct periodic control assessments to confirm IT regulatory / compliance requirements are met (e.g., PCI-DSS, HIPAA, DFARS / CMMC)

Collaborate with solution owners and key stakeholders to identify and understand control gaps and vulnerabilities, prioritize based on risk, and recommend action plans that will address root causes. Monitor and manage open issues through closure to improve the IT compliance posture.

Act as an "IT Compliance Lead" on programs / projects including M&A initiatives to direct processes and people through influence to confirm key IT compliance requirements are identified and met through cross-functional collaboration across key stakeholders (e.g., Cybersecurity, Finance, Internal Audit, Legal and Compliance, IT / Business Leadership team)

Conduct discovery / impact assessments of target organizations through M&A and / or future-state IT environment to identify regulatory / compliance requirements and controls required to meet the requirements

Develop and track remediation roadmaps to improve compliance posture of the future state IT environment.

Provide oversight to confirm compliance requirements are being designed and implemented and risks / issues are reported to the leadership timely

Act as a trusted advisor to IT and business leadership as well as key stakeholders on IT compliance and governance processes.

Support internal and external audit processes to confirm timely responses and evidence collection.

Mentor team members and promote a culture of accountability and continuous improvement.

Effectively manage and implement changes throughout the organization.

Be a thought-leader and implementer of optimizing and automating GRC processes.

Shape the evolution of our GRC management program, helping build and refine processes that scale with our growing organization.

Qualifications :

Bachelor's Degree in related field or equivalent work experience

10+ years' experience in IT Governance, Risk and Compliance (GRC) functional roles such as IT Compliance, IT Risk Management, IT Audit, Enterprise Risk Management, etc preferred.

Demonstrated leadership in driving cross-functional governance initiatives

Proven experience with implementing and leveraging IT governance frameworks (e.g., ITIL, COBIT, NIST)

Deep understanding of healthcare industry regulations and standards (e.g., PCI DSS, HIPAA, GDPR, NIST, HITRUST, SOC 2)

Proven experience supporting IT due-diligence and integration during M&A initiatives.

Experience building or significantly improving GRC programs within high-growth technology organizations, particularly those dealing with emerging technologies

Experience gathering and analyzing business requirements, translating them into actionable plans and technical specifications

Strong technical knowledge of enterprise IT environments (cloud, network, infrastructure, applications, data lake / data warehouse) and ability to design and implement control framework across it

Hands-on experience with GRC platforms, project management tools, and service management systems, with a focus on scaling and automating GRC processes

Experience in analyzing data and creating reports / dashboards / views to provide visibility into risk and control landscape.

Excellent analytical and problem-solving skills - able to translate technical concepts into business outcomes

Excellent communication skills (both verbal and written) - able to facilitate discussions with leaders at all levels within the organization, work in a matrixed environment to drive results, and clearly define and execute repeatable processes.

Excellent time management, active listening, meeting facilitation, and influencing skills.

Professional certifications preferred : CGEIT (Certified in the Governance of Enterprise IT), CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CRISC (Certified in Risk and Information Systems Control)

Anticipated salary range : $123,400 - $176,300

Bonus eligible : Yes

Benefits : Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

Medical, dental and vision coverage

Paid time off plan

Health savings account (HSA)

401k savings plan

Access to wages before pay day with myFlexPay

Flexible spending accounts (FSAs)

Short- and long-term disability coverage

Work-Life resources

Paid parental leave

Healthy lifestyle programs

Application window anticipated to close : 12 / 28 / 2025

  • if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity / expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here ()

Create a job alert for this search

Senior It Compliance • St Paul, MN, United States

Related jobs
Data Center Logistics Associate L2

Data Center Logistics Associate L2

Milestone Technologies • Rosemount, MN, US
Full-time
Data Center Logistics Associate L2.The Milestone Data Center Logistics Associate L2 is responsible for safely moving all the parts into, out of, and around the warehouse and data center environment...Show more
Last updated: 19 days ago • Promoted
Finance Leadership Development Program Associate

Finance Leadership Development Program Associate

Polaris Industries Inc • Wyoming, MN, United States
Full-time +1
We empower employees to take on challenging assignments and roles with an elevated level of responsibility in our agile working environment. Our people make us who we are, and we create incredible p...Show more
Last updated: 26 days ago • Promoted
EHS Specialist

EHS Specialist

Pace Analytical Services, LLC • Cottage Grove, MN, United States
Full-time +1
Monday through Friday, 8 : 00 AM to 5 : 00 PM (Flexible).Are you ready to work making the world a safer, healthier place? Join our mission to continuously move science forward; to innovate and advance ...Show more
Last updated: 30+ days ago • Promoted
Multi-Unit Team Leader

Multi-Unit Team Leader

H&R Block • Cottage Grove, MN, US
Full-time +1
At H&R Block, we believe in the power of people helping people.Our defining Purpose is to provide help and inspire confidence in our clients, associates, and communities everywhere.We believe in a ...Show more
Last updated: 18 days ago • Promoted
Data Center Team Lead (Night Shift)

Data Center Team Lead (Night Shift)

Georgia Staffing • Rosemount, MN, US
Full-time
Data Center Team Lead (Night Shift).As a CBRE Data Center Technical Team Lead, you will perform preventative maintenance and complex corrective repairs within a large Data Center operation.This job...Show more
Last updated: 10 days ago • Promoted
NPI Sourcing Lead

NPI Sourcing Lead

Polaris • Wyoming, MN, US
Full-time
We empower employees to take on challenging assignments and roles with an elevated level of responsibility in our agile working environment. Our people make us who we are, and we create incredible p...Show more
Last updated: 30+ days ago • Promoted
Senior Manager, IT Web Services

Senior Manager, IT Web Services

Sumitomo Pharma • St Paul, MN, United States
Full-time
Japan with operations in the U.With several marketed products and a diverse pipeline of early- to late-stage investigational assets, we aim to accelerate discovery, research, and development to bri...Show more
Last updated: 15 days ago • Promoted
Senior Security Engineer (Cryptography)

Senior Security Engineer (Cryptography)

Zoom Corporation • St Paul, MN, United States
Full-time
Senior Security Engineer (Cryptography) at Zoom is responsible for designing, and guiding encryption primitives implementation for Zoom video and meeting applications and services.The ideal candida...Show more
Last updated: 2 hours ago • Promoted • New!
IT Technician - Onsite, Rosemount, MN

IT Technician - Onsite, Rosemount, MN

Tutor Perini Corporation • Rosemount, MN, United States
Full-time
The expected hourly rate for this position is $23.This position is required to be on-site, Monday through Friday.NO STAFFING AGENCY CANDIDATES WILL BE CONSIDERED FOR THIS POSITION.Applicants must b...Show more
Last updated: 7 days ago • Promoted
Lead Cook- Tradewinds Buffet

Lead Cook- Tradewinds Buffet

Treasure Island Resort & Casino • Cottage Grove, MN, US
Full-time
Please note a resume is required for this position.ESSENTIAL DUTIES AND RESPONSIBILITIES.Ensure food quality including presentation, portioning, timeliness and consistency.Assist with interviewing,...Show more
Last updated: 12 days ago • Promoted
Senior Analyst, Security Compliance (SOX IT)

Senior Analyst, Security Compliance (SOX IT)

Coinbase • St Paul, MN, United States
Full-time
Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show more
Last updated: 4 days ago • Promoted
Occupational Therapist / OT, Home Health $20,000 Bonus

Occupational Therapist / OT, Home Health $20,000 Bonus

AccentCare, Inc. • Chisago City, MN, USA
Full-time
North Branch, Canbridge, Princeton, Andover.This position is paid on a per-visit basis.The compensation reflected on this posting, is an estimate of annual compensation. Find Your Passion and Purpos...Show more
Last updated: 30+ days ago • Promoted
Senior Data Protection Engineer

Senior Data Protection Engineer

Highmark Health • St Paul, MN, United States
Full-time
The Senior Data Protection Engineer is a critical member of the Data Protection team, responsible for the design, implementation, and maintenance of the organization's data protection infrastructur...Show more
Last updated: 5 days ago • Promoted
Utility Locate Lead

Utility Locate Lead

Lake Superior Consulting LLC • Cottage Grove, MN, US
Full-time
Location : Afton, MN, US, 55001 Eagan, MN, US, 55121 Apple Valley, MN, US, 55124 Hastings, MN, US, 55033 Saint Paul, MN, US, 55101 Woodbury, MN, US, 55125 Cottage Grove, MN, US, 55016 Lakeland, MN, ...Show more
Last updated: 19 days ago • Promoted
Senior Security Engineer - Data Loss Prevention Operations

Senior Security Engineer - Data Loss Prevention Operations

Oracle • St Paul, MN, United States
Full-time
Our rapidly growing team specializes in threat hunting, analyzing indicators of compromise (IOCs), investigating security incidents, managing incident responses, and conducting digital forensics ac...Show more
Last updated: 18 days ago • Promoted
Enterprise Architect - Advanced Growth Technologies

Enterprise Architect - Advanced Growth Technologies

SHI GmbH • St Paul, MN, United States
Full-time
Since 1989, SHI International Corp.We've grown every year since, and today we're proud to be a $15 billion global provider of IT solutions and services. Over 17,000 organizations worldwide rely on S...Show more
Last updated: 4 days ago • Promoted
Customer Support & Success Specialist-EQUINET

Customer Support & Success Specialist-EQUINET

Mustad USA • Forest Lake, MN, United States
Full-time
Hiring Bonus = $1,000 after 90 days and $1,000 after 1 year.The Mustad Hoofcare Group is the world’s largest manufacturer and seller of hoofcare products, serving farriers, horse owners and veterin...Show more
Last updated: 18 days ago • Promoted
Customer Support & Success Specialist-EQUINET

Customer Support & Success Specialist-EQUINET

Mustad Hoofcare SA • Forest Lake, MN, United States
Full-time
Hiring Bonus = $1,000 after 90 days and $1,000 after 1 year.The Mustad Hoofcare Group is the world's largest manufacturer and seller of hoofcare products, serving farriers, horse owners and veterin...Show more
Last updated: 30+ days ago • Promoted