Talent.com
Manager, Information Security & Risk - IT Compliance

Manager, Information Security & Risk - IT Compliance

Cardinal HealthOklahoma City, OK, United States
3 days ago
Job type
  • Full-time
Job description

Company Overview :

Cardinal Health, Inc. (NYSE : CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.

Department Overview :

Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.

Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. The IT Governance and Compliance function within the organization develops, enhances, and maintains security policies and IT compliance programs in alignment with regulatory, legal, and contractual requirements, while collaborating closely with key stakeholders to maintain a security and compliant technology environment.

We are committed to building a resilient, secure, and compliant digital ecosystem, and you will play a critical role in safeguarding our information and supporting our mission to improve the lives of people every day.

We are seeking a strategic and experienced Manager of IT Compliance , and in this role, you will have the opportunity to lead meaningful work, collaborate across functions, and help shape the future of our IT compliance strategy.

Job Overview :

Manager of IT Compliance will lead the development, execution, and continuous improvement of our enterprise IT compliance programs. This role will set the strategy in collaboration with the leader as well as provide direction and oversight across a broad set of compliance domains, including IT Privacy regulations (i.e., HIPAA, GDPR, etc.), third party certification management (e.g., HITRUST, SOC 2), and proactively driving compliance to emerging regulatory obligations. The manager will lead a high-performing team and work cross-functionally with legal, privacy, audit, and IT stakeholders to ensure the organization maintains a strong and proactive compliance posture.

Key Responsibilities :

People Leadership : Lead and develop a team of IT compliance professionals. Foster an inclusive, collaborative, accountable and high-performing team culture.

Program Leadership : Set strategic direction in collaboration with the leader for the IT Compliance function, aligning program objectives with organizational goals and evolving regulatory requirements.

IT Privacy Compliance Program : Oversee the design, implementation, enhancement, and maintenance of the IT privacy compliance program to enable compliance with key IT privacy regulation requirements (e.g., HIPAA, GDPR), while partnering with key partners and stakeholders.

Third-Party Certifications Management : Set strategic direction in collaboration with the leader for management of external certifications such as HITRUST and SOC 2, including program governance, planning, readiness, remediation oversight, cost and support model, and ongoing maintenance of the certifications.

IT Compliance Assessment : Direct and oversee the execution of compliance assessments and gap assessments for existing regulations from an IT perspective, collaborating with key stakeholders and partners throughout the organization.

Regulatory Monitoring : Proactively identify, assess, and operationalize compliance to new or evolving regulatory requirements that impact the organization's IT environment, collaborating with key stakeholders and partners throughout the organization.

Reporting and Metrics : Establish KPIs and KRIs as well as reporting processes to provide ongoing updates to leadership on health of the IT compliance program effectiveness, risk exposure, and compliance trends and posture.

Advisory Services : Serve as a key advisor to stakeholders across Privacy, Legal, Audit, IT and Business Units to confirm regulatory and contractual obligations are understood and addressed in IT processes and controls.

Qualifications :

Bachelor's Degree in related field or equivalent work experience

10+ years' experience in IT Governance, Risk and Compliance functional roles such as IT Compliance, IT Risk Management, IT Audit, Enterprise Risk Management, etc preferred.

Proven leadership experience with the ability to foster an inclusive and engaging culture.

Prior experience working with Internal or External Audit functions are a plus.

Deep knowledge of risk and control frameworks as well as key regulatory requirements that impact healthcare organizations.

Direct experience in managing third-party certifications such as HITRUST and SOC 2 is preferred including readiness and gap assessments to managing certifications.

Strong understanding of IT environments, systems, data governance practices

Strong interpersonal skills and presentation skills with ability to tailor message for the audience are foundational for success.

Strong and effective communication skills with ability to influence and drive actions.

Ability to identify and engage cross functional teams to solve problems that meet organizational objectives.

Ability to identify alternative solutions to solve a given problem when traditional solution may not be feasible.

Security, compliance, or risk certifications such as CIPT (Certified Information Privacy Technologist), CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional) and / or CIPP (Certified Information Privacy Professional) certifications are preferred.

Anticipated salary range : $121,600 - $182,385

Bonus eligible : Yes

Benefits : Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

Medical, dental and vision coverage

Paid time off plan

Health savings account (HSA)

401k savings plan

Access to wages before pay day with myFlexPay

Flexible spending accounts (FSAs)

Short- and long-term disability coverage

Work-Life resources

Paid parental leave

Healthy lifestyle programs

Application window anticipated to close : 9 / 25 / 2025

  • if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity / expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here ()

Create a job alert for this search

Manager Information Security • Oklahoma City, OK, United States

Related jobs
  • Promoted
Lead IT Security Analyst

Lead IT Security Analyst

KBROklahoma City, OK, United States
Full-time
Position Description / Job Responsibilities : .KBR is seeking an experienced Cybersecurity Professional with Assessment and Authorization (A&A) and hands on CS - Operational experience to join our team...Show moreLast updated: 3 days ago
  • Promoted
Principal Data Product Manager - Edmond OK - Onsite

Principal Data Product Manager - Edmond OK - Onsite

iSoftTek Solutions IncEdmond, OK, US
Full-time
Title : Principal Data Product Manager.Define and communicate the vision, strategy, and roadmap for data products portfolio. Lead the end-to-end product development lifecycle, including ideation, des...Show moreLast updated: 30+ days ago
  • Promoted
Security Compliance Manager

Security Compliance Manager

CoinbaseOklahoma City, OK, United States
Full-time
Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show moreLast updated: 2 days ago
  • Promoted
Senior IT Project Manager

Senior IT Project Manager

Addison GroupOklahoma City, OK, US
Permanent
The position is eligible for medical, dental, vision, and 401(k).Must be authorized to work in the United States now, and in the future, without assistance. Are you looking for a growth opportunity ...Show moreLast updated: 30+ days ago
  • Promoted
Information Security Engineer

Information Security Engineer

TTECOklahoma City, OK, US
Full-time
Description - External Information Security Engineer Your potential has a place here with TTEC’s award-winning employment experience. As a Information Security Engineer working remote in US, you’ll ...Show moreLast updated: 30+ days ago
  • Promoted
Information Security Manager

Information Security Manager

ConvaTecOklahoma City, OK, United States
Full-time
HSG IT is looking for an experienced Information Security Manager who works independently, ensures information is protected (confidentiality, integrity, and availability) and applies practical know...Show moreLast updated: 3 days ago
  • Promoted
Manager Information Security & Risk Management - Cloud Security Manager

Manager Information Security & Risk Management - Cloud Security Manager

Highmark HealthOklahoma City, OK, United States
Full-time
This job provides Information Security and Risk Management services for the Organization.Works with peers within security, HM Health Solutions customers and application teams to ensure alignment wi...Show moreLast updated: 3 days ago
  • Promoted
Information System Security Officer (ISSO)

Information System Security Officer (ISSO)

Leidos IncOklahoma City, OK, United States
Full-time
The Multi Domain Solutions Division at Leidos is looking for an.Information Systems Security Officer (ISSO).Air Force Life Cycle Management Center located in Oklahoma City, OK.This role involves su...Show moreLast updated: 30+ days ago
Information Security Specialist

Information Security Specialist

City of Midwest CityMidwest City, OK, USA
Full-time
Quick Apply
Applications for this position.City of Midwest City employment application to be considered.Individual RESUMES without a completed City employment application. The incumbent is responsible for the s...Show moreLast updated: 30+ days ago
  • Promoted
IT SOC Analyst I

IT SOC Analyst I

PaycomOklahoma City, OK, United States
Full-time
The IT SOC Analyst functions include day-to-day operations of security solutions (SIEM, SOAR) and the identification, investigation, and resolution of security incidents detected by those systems.S...Show moreLast updated: 3 days ago
IT Security Risk Analyst - Oklahoma City - Full-time

IT Security Risk Analyst - Oklahoma City - Full-time

Two95 International Inc.Oklahoma City, OK, US
Full-time
Quick Apply
Information Security Risk Analyst.Under senior staff supervision, assist in information security policy development, maintenance and auditing. security policy education, training, and awareness act...Show moreLast updated: 3 days ago
  • Promoted
Information Technology Professional

Information Technology Professional

U.S. NavyOklahoma City, OK, United States
Full-time +1
To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.At any given moment, hundreds of complex networked computer systems are operating in tandem to keep ships and su...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Warfare Technician

Cyber Warfare Technician

U.S. NavyYukon, OK, United States
Full-time +1
To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.As a Cryptologic Technician, you are one of the worlds greatest problem-solvers. Were looking for people with sha...Show moreLast updated: 30+ days ago
  • Promoted
Restaurant Delivery - Sign Up in Minutes

Restaurant Delivery - Sign Up in Minutes

DoorDashLindsay, OK, United States
Full-time +1
DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day. As a Dasher, you’ll stay busy with a variety o...Show moreLast updated: 8 days ago
  • Promoted
  • New!
Shift Manager

Shift Manager

SonicChoctaw, OK, US
Full-time
Hot burgers, cold shakes, and little moments of magic right in the neighborhood.At SONIC, we do things a little differently. We find the fun, the moment of chill in the every-day.Working at SONIC, y...Show moreLast updated: 21 hours ago
  • Promoted
Sp II, IT Sec & Infra

Sp II, IT Sec & Infra

CFS BrandsOklahoma City, OK, United States
Full-time
The Security Analyst is responsible for the protection of the data and infrastructure utilized by CFS Brands and supported facilities. This position will function as the initial point of contact for...Show moreLast updated: 3 days ago
  • Promoted
Information Security Manager

Information Security Manager

Convatec Group PLCOklahoma City, OK, United States
Full-time
HSG IT is looking for an experienced Information Security Manager who works independently, ensures information is protected (confidentiality, integrity, and availability) and applies practical know...Show moreLast updated: 3 days ago
  • Promoted
IT Security Risk Analyst - Oklahoma City - Full-time

IT Security Risk Analyst - Oklahoma City - Full-time

TWO95 InternationalOklahoma City, OK, United States
Full-time
Information Security Risk Analyst.Under senior staff supervision, assist in information security policy development, maintenance and auditing. security policy education, training, and awareness act...Show moreLast updated: 3 days ago
  • Promoted
Restaurant Delivery - Flexible Schedule

Restaurant Delivery - Flexible Schedule

DoorDashChickasha, OK, United States
Full-time +1
DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day. As a Dasher, you’ll stay busy with a variety o...Show moreLast updated: 8 days ago
IT Audit Manager | Internal Audit | Risk Advisory

IT Audit Manager | Internal Audit | Risk Advisory

CBIZUSA, Oklahoma, Oklahoma City
Full-time
With unmatched industry knowledge and expertise in accounting, tax, advisory, benefits, insurance, and technology, CBIZ delivers forward-thinking insights and actionable solutions to help clients a...Show moreLast updated: 30+ days ago