Talent.com
Manager, Information Security & Risk - IT Compliance
Manager, Information Security & Risk - IT ComplianceCardinal Health • Boston, MA, United States
No se aceptan más aplicaciones
Manager, Information Security & Risk - IT Compliance

Manager, Information Security & Risk - IT Compliance

Cardinal Health • Boston, MA, United States
Hace 23 días
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Company Overview :

Cardinal Health, Inc. (NYSE : CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.

Department Overview :

Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.

Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. The IT Governance and Compliance function within the organization develops, enhances, and maintains security policies and IT compliance programs in alignment with regulatory, legal, and contractual requirements, while collaborating closely with key stakeholders to maintain a security and compliant technology environment.

We are committed to building a resilient, secure, and compliant digital ecosystem, and you will play a critical role in safeguarding our information and supporting our mission to improve the lives of people every day.

We are seeking a strategic and experienced Manager of IT Compliance , and in this role, you will have the opportunity to lead meaningful work, collaborate across functions, and help shape the future of our IT compliance strategy.

Job Overview :

Manager of IT Compliance will lead the development, execution, and continuous improvement of our enterprise IT compliance programs. This role will set the strategy in collaboration with the leader as well as provide direction and oversight across a broad set of compliance domains, including IT Privacy regulations (i.e., HIPAA, GDPR, etc.), third party certification management (e.g., HITRUST, SOC 2), and proactively driving compliance to emerging regulatory obligations. The manager will lead a high-performing team and work cross-functionally with legal, privacy, audit, and IT stakeholders to ensure the organization maintains a strong and proactive compliance posture.

Key Responsibilities :

People Leadership : Lead and develop a team of IT compliance professionals. Foster an inclusive, collaborative, accountable and high-performing team culture.

Program Leadership : Set strategic direction in collaboration with the leader for the IT Compliance function, aligning program objectives with organizational goals and evolving regulatory requirements.

IT Privacy Compliance Program : Oversee the design, implementation, enhancement, and maintenance of the IT privacy compliance program to enable compliance with key IT privacy regulation requirements (e.g., HIPAA, GDPR), while partnering with key partners and stakeholders.

Third-Party Certifications Management : Set strategic direction in collaboration with the leader for management of external certifications such as HITRUST and SOC 2, including program governance, planning, readiness, remediation oversight, cost and support model, and ongoing maintenance of the certifications.

IT Compliance Assessment : Direct and oversee the execution of compliance assessments and gap assessments for existing regulations from an IT perspective, collaborating with key stakeholders and partners throughout the organization.

Regulatory Monitoring : Proactively identify, assess, and operationalize compliance to new or evolving regulatory requirements that impact the organization's IT environment, collaborating with key stakeholders and partners throughout the organization.

Reporting and Metrics : Establish KPIs and KRIs as well as reporting processes to provide ongoing updates to leadership on health of the IT compliance program effectiveness, risk exposure, and compliance trends and posture.

Advisory Services : Serve as a key advisor to stakeholders across Privacy, Legal, Audit, IT and Business Units to confirm regulatory and contractual obligations are understood and addressed in IT processes and controls.

Qualifications :

Bachelor's Degree in related field or equivalent work experience

10+ years' experience in IT Governance, Risk and Compliance functional roles such as IT Compliance, IT Risk Management, IT Audit, Enterprise Risk Management, etc preferred.

Proven leadership experience with the ability to foster an inclusive and engaging culture.

Prior experience working with Internal or External Audit functions are a plus.

Deep knowledge of risk and control frameworks as well as key regulatory requirements that impact healthcare organizations.

Direct experience in managing third-party certifications such as HITRUST and SOC 2 is preferred including readiness and gap assessments to managing certifications.

Strong understanding of IT environments, systems, data governance practices

Strong interpersonal skills and presentation skills with ability to tailor message for the audience are foundational for success.

Strong and effective communication skills with ability to influence and drive actions.

Ability to identify and engage cross functional teams to solve problems that meet organizational objectives.

Ability to identify alternative solutions to solve a given problem when traditional solution may not be feasible.

Security, compliance, or risk certifications such as CIPT (Certified Information Privacy Technologist), CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional) and / or CIPP (Certified Information Privacy Professional) certifications are preferred.

Anticipated salary range : $121,600 - $182,385

Bonus eligible : Yes

Benefits : Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

Medical, dental and vision coverage

Paid time off plan

Health savings account (HSA)

401k savings plan

Access to wages before pay day with myFlexPay

Flexible spending accounts (FSAs)

Short- and long-term disability coverage

Work-Life resources

Paid parental leave

Healthy lifestyle programs

Application window anticipated to close : 9 / 25 / 2025

  • if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity / expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here ()

Crear una alerta de empleo para esta búsqueda

Information Security Manager • Boston, MA, United States

Ofertas relacionadas
Security Product Manager

Security Product Manager

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for a Principal Security Product Manager.Key Responsibilities : Partner with domain leadership to set product vision and strategy Develop and execute multi-year domain roadma...Mostrar más
Última actualización: hace 2 días • Oferta promocionada
Director of OT Security Architecture

Director of OT Security Architecture

VirtualVocations • Dorchester, Massachusetts, United States
A tiempo completo
Director - OT Security Architecture and Engineering.Key Responsibilities Lead the implementation and operation of the information security governance model and establish relationships with busine...Mostrar más
Última actualización: hace 2 días • Oferta promocionada
Manager, Cybersecurity & Operations

Manager, Cybersecurity & Operations

OpenGov • Boston, MA, United States
A tiempo completo
OpenGov is the leader in AI and ERP solutions for local and state governments in the U.More than 2,000 cities, counties, state agencies, school districts, and special districts rely on the OpenGov ...Mostrar más
Última actualización: hace 14 días • Oferta promocionada
Cybersecurity Lead

Cybersecurity Lead

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for a Senior IT Generalist / Cybersecurity Lead.Key Responsibilities Lead CMMC readiness, implementation, and sustainment activities across the organization Develop and main...Mostrar más
Última actualización: hace 8 días • Oferta promocionada
Principal Information Security Engineer

Principal Information Security Engineer

VirtualVocations • Dorchester, Massachusetts, United States
A tiempo completo
A company is looking for a Principal Information Security Engineer.Key Responsibilities Enhance endpoint security strategies by collaborating with various business units Lead modernization and g...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Information Security Engineer

Information Security Engineer

VirtualVocations • Dorchester, Massachusetts, United States
A tiempo completo
A company is looking for an Information Security Engineer.Key Responsibilities Collaborate with business units to enhance endpoint security strategies Implement system security solutions in mult...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Cloud Security Manager

Cloud Security Manager

National Grid • Waltham, MA, United States
A tiempo completo
At National Grid, we keep people connected and society moving.But it's so much more than that.National Grid supplies us with the environment to make it happen. As we generate momentum in the energy ...Mostrar más
Última actualización: hace 3 días • Oferta promocionada
Senior IT Security Analyst

Senior IT Security Analyst

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for a Senior IT Security Analyst responsible for assessing information risk and facilitating remediation of identified vulnerabilities across the enterprise.Key Responsibilitie...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Senior Manager Information Security

Senior Manager Information Security

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for a Senior Manager - Information Security - Threat Management.Key Responsibilities Leads daily security operations, including alerts and incident response Oversees threat ...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
IT Manager

IT Manager

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for an IT Manager who is passionate about empowering teams through technology and ensuring systems are secure, scalable, and user-friendly. Key Responsibilities Define and exe...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Cybersecurity Incident Response Lead

Cybersecurity Incident Response Lead

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for a CSIRT Incident Response Lead.Key Responsibilities Lead investigations into information security events and incidents Drive efforts towards containment of threats and r...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Information Security Director

Information Security Director

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for a Director, Information Security.Key Responsibilities Lead the design, implementation, and management of processes to ensure the security of information assets Identify ...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Information Technology Manager

Information Technology Manager

MV Transportation • Boston, MA, United States
A tiempo completo
Information Technology Manager.If you reside in California, please see our California Applicant Privacy Policy for more information about our data handling practices and your data rights.MV Transpo...Mostrar más
Última actualización: hace 17 días • Oferta promocionada
IT Director

IT Director

VirtualVocations • Dorchester, Massachusetts, United States
A tiempo completo
A company is looking for a Director of IT responsible for leading the organization's information technology strategy and overseeing all IT functions. Key Responsibilities Oversee daily operations ...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Information Security Compliance Leader

Information Security Compliance Leader

VirtualVocations • Dorchester, Massachusetts, United States
A tiempo completo
A company is looking for an Information Security & Compliance Leader to oversee security and compliance strategies in a healthcare technology environment. Key Responsibilities Develop and impl...Mostrar más
Última actualización: hace 15 horas • Oferta promocionada • Nueva oferta
Information Security Analyst Lead

Information Security Analyst Lead

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for an information security analyst lead - firewall.Key Responsibilities Oversee and manage firewall policy across various technologies Plan, deploy, and manage policy for m...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Senior Director of Network Security

Senior Director of Network Security

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
Key Responsibilities Lead the implementation and management of controls for organizational compliance with regulatory and contractual obligations Establish and maintain relationships with busine...Mostrar más
Última actualización: hace 2 días • Oferta promocionada
Chief Information Security Officer

Chief Information Security Officer

VirtualVocations • Dorchester, Massachusetts, United States
A tiempo completo
A company is looking for a Chief Information Security Officer (Remote).Key Responsibilities Define and deliver the enterprise information security strategy aligned with business priorities and ri...Mostrar más
Última actualización: hace más de 30 días • Oferta promocionada
Imaging IT Optimization Manager

Imaging IT Optimization Manager

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for an Imaging IT Optimization Manager for the Colorado or Pacific Northwest region.Key Responsibilities Lead and mentor the IT Optimization Team to enhance system performanc...Mostrar más
Última actualización: hace 1 día • Oferta promocionada
Director of OT Security

Director of OT Security

VirtualVocations • Lowell, Massachusetts, United States
A tiempo completo
A company is looking for a Director - OT Security Architecture & Engineering.Key Responsibilities Lead the implementation and management of security controls to ensure compliance with regulatory ...Mostrar más
Última actualización: hace 2 días • Oferta promocionada