At Cencora, our team members are vital to our mission of creating healthier futures. If you're passionate about making a meaningful impact in the health sector, we encourage you to join our innovative company and help improve lives globally.
Position Overview :
The Senior Cyber Risk Management Director will spearhead initiatives to identify, assess, and mitigate cyber risks, while ensuring the effective management of Governance, Risk, and Compliance (GRC) functions. This leader will oversee crucial areas, including risk management, GRC tooling, security policy formation, audit findings oversight, and quality assurance. The ideal candidate will possess a strategic vision and operational excellence to synchronize cybersecurity practices with business goals and regulatory demands.
Key Responsibilities :
- Risk and Issue Management : Lead the identification, assessment, and prioritization of cyber risks across the organization. Develop processes for effective tracking and resolution of risks while ensuring quality assurance of submitted risks.
- GRC Tooling : Oversee the implementation and optimization of GRC tooling to streamline risk management workflows and enhance reporting capabilities.
- Security Policy Development : Create and maintain information security policies and procedures that align with industry standards, ensuring compliance with regulatory requirements.
- GRC Reporting : Manage the creation of GRC reports for leadership and stakeholders, providing crucial insights into risk management metrics and compliance status.
- Audit Findings Management : Supervise the resolution of IT audit findings, collaborating with teams for timely remediation and identifying trends to mitigate future risks.
- Change Request Oversight : Manage the approval process for firewall and security change requests, ensuring alignment with security policies.
- Policy Exceptions : Handle the process for policy exceptions, including evaluation and tracking to ensure risk comprehension and compliance with controls.
- Leadership : Build and lead a high-performing team dedicated to cyber risk management, fostering collaboration and continuous improvement.
Qualifications :
Bachelor's degree in a related field; Master’s preferred.10+ years in cybersecurity or risk management, including leadership experience.Expertise managing GRC tools and processes.Skills :
Deep knowledge of security frameworks (e.g., NIST CSF, ISO 27001).Proven analytical and communication skills.Experience managing audit findings and regulatory compliance.Certifications (Preferred) :
CISSP, CISM, CISA, or GRC certifications.What We Offer :
We provide competitive compensation and a comprehensive benefits package that promotes a healthy work-life balance. This includes support for working families, professional development resources, and various wellness programs. Join us to make a positive difference.
Equal Employment Opportunity : Cencora is an equal opportunity employer committed to diversity and inclusion. We welcome applicants from all backgrounds and ensure that our recruitment process is free from discrimination.