This job directs and manages Identity and Access Management (IAM) services for the Enterprise. Provides leadership to the Organization's IAM program, including developing and managing the related policies, standards, architectures, and controls. Partners with Information Security, IT Infrastructure, Application Development, and business units to ensure secure and appropriate access to systems and data. Develops talent, addresses resource management, cultivates capabilities of staff, plans and coordinates work, and manages performance. Actively contributes to the IAM strategic planning process to develop and implement department strategic plans and action steps that support corporate strategic objectives. Defines service levels and monitors adherence. Sets budgets and controls expenses within the operating unit. Creates a team environment that promotes cooperation, empowerment, accountability, customer focus, and effective work relationships in order to realize business goals.
ESSENTIAL RESPONSIBILITIES
Perform management responsibilities including, but not limited to : involved in hiring and termination decisions; coaching and development; rewards and recognition; performance management and staff productivity.
Plan, organize, staff, direct and control the day-to-day operations of the department; develop and implement policies and programs as necessary; may have budgetary responsibility and authority.
Communicate effectively with all levels of the organization : facilitate meetings; plan, design and provide presentations; represent HM Health Solutions with outside entities; prepare divisional procedures, policies, reports and correspondence.
Provide Leadership to the Department : lead and champion organizational change; encourage participation in activities that support relationship development; champion information security and risk management innovation; demonstrate and champion the following characteristics in fulfilling the responsibilities of the job - passion, empowerment, accountability, collaboration and ethics.
Provide oversight of all aspects of project management to ensure continuous improvement of processes : negotiate and collaborate with senior executives and staff to develop solutions and options; develop and adhere to internal standards and strategies; ensure adherence to approved methodologies; coordinate resources, time, contingency plans and risk management; provide oversight regarding metrics, funding, budgets and resources.
Other duties as assigned or requested.
EDUCATION
Required
Bachelor’s Degree in Information Security, Information Systems, Information Assurance, Computer Science or related field, or relevant experience and / or education as determined by the company in lieu of bachelor's degree
Preferred
Master's Degree in Information Security, or a related field with a focus on Identity and Access Management.
EXPERIENCE
Required
10 - 15 years in Information Security and / or Information Risk Management and / or Information Technology
10 - 15 years in developing, communicating and presenting Information Security and Risk Management concepts to varying audiences
7 - 10 years in mentoring others in a leadership role
5 - 7 years in Staff Management
5 - 7 years in developing and executing strategic plans to realize business objectives
5 - 7 years establishing budgets and meeting fiduciary goals
Preferred
Experience managing an Identity and Access Management program using industry-standard frameworks.
Experience with cloud-based IAM solutions.
Experience with implementing and managing role-based access control (RBAC), attribute-based access control (ABAC), and policy-based access control (PBAC).
Experience with Zero Trust security models and their application to Identity and Access Management.
Experience with the application of Artificial Intelligence (AI) and Machine Learning (ML) to Identity and Access Management.
Experience with Identity Governance technologies (e.g., SailPoint).
Experience with Public Key Infrastructure (PKI).
Experience with Federated Identity Management (SAML, OAuth, OpenID Connect).
Experience with enterprise directory services such as Active Directory and LDAP.
Experience with securing APIs using IAM principles and technologies.
Experience with cloud-based identity providers like Azure AD, AWS IAM, and Google Cloud Identity.
LICENSES AND CERTIFICATIONS
Required
None
Preferred
(any of the following)
Certified Information Systems Security Professional (CISSP)
Certified Information Security Manager (CISM)
Certified in Risk and Information Systems Controls (CRISC)
Information Technology Infrastructure Library (ITIL)
SKILLS
Knowledge of regulatory requirements such as Health Insurance Portability and Accountability Act (HIPPA), HITECH, Payment Card Industry Data Security Standards (PCI DSS), and FIPS-140
Strong executive communication and presenting skills
Strong teamwork and interpersonal skills
Experience in leading process improvement initiatives
Ability to motivate high performance, multi-discipline teams
Demonstrated competency in project execution
Demonstrated abilities in relationship management
Language (Other than English) :
None
Travel Requirement :
0% - 25%
PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS
Position Type
Office-basedTeaches / trains others regularlyOccasionallyTravel regularly from the office to various work sites or from site-to-siteRarelyWorks primarily out-of-the office selling products / services (sales employees)NeverPhysical work site requiredYesLifting : up to 10 poundsConstantlyLifting : 10 to 25 poundsOccasionallyLifting : 25 to 50 poundsRarely
Disclaimer :
The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement
: This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy. Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.
Pay Range Minimum :
$126,400.00
Pay Range Maximum :
$236,000.00
Base pay is determined by a variety of factors including a candidate’s qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations. The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.
Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.We endeavor to make this site accessible to any and all users. If you would
#J-18808-Ljbffr
Create a job alert for this search
Director Risk Management • Washington, DC, United States
Related jobs
Promoted
Director Business Information Security Officer
SurescriptsArlington, VA, United States
Full-time
We deliver insights at critical points of care for better decisions - from streamlining prior authorizations to delivering comprehensive medication histories to facilitating messages between provid...Show moreLast updated: 15 days ago
Promoted
Information Systems Security Manager (ISSM)
BTIWashington, DC, United States
Full-time
Information Systems Security Manager (ISSM).Business Technology Integrators (BTI) is seeking an Information Systems Security Manager (ISSM) to lead a team in executing risk management efforts again...Show moreLast updated: 30+ days ago
Promoted
IT & Security Director
GoviniArlington, VA, United States
Full-time
Govini transforms Defense Acquisition from an outdated manual process to a software-driven strategic advantage for the United States.
Our flagship product, Ark, supports Supply Chain, Science and Te...Show moreLast updated: 2 days ago
Promoted
Information Systems Security Manager
SlopeWashington, DC, United States
Full-time
Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the def...Show moreLast updated: 1 day ago
Promoted
Director - Cybersecurity
The Security Executive CouncilAlexandria, VA, United States
Full-time
The Director - Cybersecurity is responsible for leading Five Guys cybersecurity strategy, governance, and operations to protect critical assets, data, and infrastructure.
This executive-level role o...Show moreLast updated: 15 days ago
Promoted
New!
Director - Risk Management
Cedar Hill Regional Medical CenterWashington, DC, United States
Full-time
Cedar Hill Regional Medical Center – Opening in 5!.When open in early 5, Cedar Hill Regional Medical Center GW Health will be the first new full-service hospital in Washington, DC in more than year...Show moreLast updated: 17 hours ago
Promoted
Director of Information Security / Chief Information Security Officer (CISO)
InsideHigherEdBowie, Maryland, United States
Permanent
JR101263 Director of Information Security / Chief Information Security Officer (CISO) (Open).The Director of Information Security / Chief Information Security Officer (CISO) is responsible for deve...Show moreLast updated: 30+ days ago
Promoted
Information Systems Security Manager
Leidos IncBethesda, MD, United States
Full-time
Leidos' High Fidelity Simulation Business Area is responsible for architecting and implementing large-scale System of Systems solutions in support of world-class simulation, training, and analysis ...Show moreLast updated: 30+ days ago
Promoted
IT Information Security Manager
SmartCommerceWashington, DC, United States
Full-time
IT Information Security Manager.We are better together!!! And we hope that includes you!!! We’re a community of problem solvers passionate about helping clients take their sales to the next level.W...Show moreLast updated: 1 day ago
Promoted
Information Systems Security Manager
Via Logic LLCBethesda, MD, United States
Full-time
Leidos’ High Fidelity Simulation Business Area is responsible for architecting and implementing large-scale System of Systems solutions in support of world class simulation, training, and analysis ...Show moreLast updated: 10 days ago
Information Systems Security Manager
ZTI Solutions, LLCFairfax, Virginia, United States
Full-time
Quick Apply
Senior Information Systems Security Manager (ISSM), Fairfax, VA.Provide senior-level security certification and accreditation consulting related to the maintenance, upgrade, and technology insertio...Show moreLast updated: 30+ days ago
Promoted
Sr. Director Global Risk - 1LOD Incident Management
PayPalWashington, DC, United States
Full-time
Director Global Risk - 1LOD Incident Management.PayPal has been revolutionizing commerce globally for more than 25 years.
Creating innovative experiences that make moving money, selling, and shoppin...Show moreLast updated: 4 days ago
Promoted
Director of IT and Security
George Mason UniversityFairfax, VA, United States
Full-time
Administrative or Professional Faculty .Col of Engineering and Computing.Administrative or Professional Faculty.Fairfax, VA and occasional travel to other campuses.
Not eligible for visa sponsorship...Show moreLast updated: 23 days ago
Promoted
Information Assurance Engineer / Security Manager
C2 Labs, Inc.Washington, DC, United States
Full-time
Information Assurance Engineer / Security Manager.C2 Labs partners with clients on their IT transformation journey via our industry-leading capabilities in full stack development, hyper-automation / ...Show moreLast updated: 25 days ago
Promoted
Director, IT
Tennessee Society of Association ExecutivesWashington, DC, United States
Full-time
Director, Information Technology.Operations – Information Technology.First / Mid-Level Officials & Managers.The Director, Information Technology is responsible for managing all areas of the organizat...Show moreLast updated: 30+ days ago
Promoted
Director, Cyber Security
KPMG USBaltimore, MD, United States
Full-time
KPMG Advisory practice is our fastest growing practice, experiencing tremendous client demand and a collaborative, team-driven culture.
The role focuses on advancing cyber security consulting soluti...Show moreLast updated: 30+ days ago
Promoted
Director of Information Technology and Cybersecurity
George Mason UniversityFairfax, VA, United States
Full-time
Director of Information Technology and Cybersecurity .Administrative or Professional Faculty .Administrative or Professional Faculty.
Not eligible for visa sponsorship.Salary commensurate with educa...Show moreLast updated: 24 days ago
Promoted
Director of Configuration Management
Leidos IncReston, VA, United States
Full-time
Leidos, Security Enterprise Solutions is seeking an experienced.Director of Configuration Management.This role is responsible for establishing and maintaining robust configuration management strate...Show moreLast updated: 17 days ago