Manager Information Security & Risk Management - Cloud Security Manager
Listed on 2026-01-04
-
IT/Tech
Information Security, Cybersecurity
Job Summary
This role provides Information Security and Risk Management services for the Organization. Works with peers within security, HM Health Solutions customers and application teams to ensure alignment with current and future security needs. Manages activities of various Information Security personnel and makes decisions on personnel actions such as promotions, hiring and terminations. Develops talent, addresses resource management, cultivates capabilities of staff, and plans and coordinates work.
Conducts oversight of security technology products for network, systems and data, controls expenses within the operating unit and is responsible for meeting budget goals. Actively contributes to the Information Security and Risk Management (ISRM) strategic planning process and develops and presents Information Security awareness and training programs.
- Perform management responsibilities including hiring, termination decisions, coaching and development, rewards and recognition, performance management and staff productivity.
- Plan, organize, staff, direct and control the day-to-day operations of the department; develop and implement policies and programs as necessary; may have budgetary responsibility and authority.
- Provide oversight of all aspects of project management to ensure continuous improvement of processes: negotiate and collaborate with leadership and staff to develop security solutions and options; develop and adhere to internal standards and strategies; coordinate resources, time, contingency plans and risk management.
- Provide leadership to the department: lead and champion organizational change; encourage participation in activities that support relationship development; champion information security innovation; encourage and enforce proper training in regards to security issues.
- Ensure compliance to Corporate and Information Security policies, standards and procedures.
- Communicate effectively with all levels of the organization: facilitate meetings; plan, design and provide presentations; represent HM Health Solutions with outside entities; prepare divisional procedures, policies, reports and correspondence; spread awareness of new and existing security threats; provide oversight regarding metrics, funding, budgets and resources.
- Other duties as assigned or requested.
- Bachelor’s Degree in Information Security, Information Systems, Information Assurance, Computer Science or related field.
- 6 years of relevant experience may substitute for a Bachelor’s Degree.
- Master’s Degree in Computer Science, Information Security or related field – preferred.
- 7–10 years in Information Security and/or Information Risk Management and/or Information Technology.
- 7–10 years in developing, communicating and presenting Information Security and Risk Management concepts to varying audiences.
- 1–3 years in mentoring others in a leadership role.
- 1–3 years in staff management.
- 1–3 years in developing and executing strategic plans to realize business objectives.
- Preferred: 10–15 years in Information Security and/or Information Risk Management and/or Information Technology.
- Experience managing an information security function using the HITRUST Common Security Framework (HITRUST CSF) or the NIST 800‑83 cyber security framework.
- Experience supporting SSAE 16 or SOC 2 Security Trust Principle audits.
- Experience establishing budgets and meeting fiduciary goals.
- Security industry organization participation/leadership (HITRUST, ISACA, Infra Gard, ISC2, ISSA, etc.) – preferred.
- None required.
- Preferred certifications: CISSP, CISM, CRISC, ITIL.
- Knowledge of regulatory requirements such as HIPAA, PCI DSS, and FIPS‑140.
- Strong teamwork and interpersonal skills.
- Experience in leading process improvement initiatives.
- Ability to motivate high performance, multi‑discipline teams.
- Demonstrated competency in project execution.
- Demonstrated abilities in relationship management.
0% – 25%.
Physical, Mental Demands and Working ConditionsOffice‑Based. Office physical work site required. Lifting up to 25 pounds. Regular travel from the office to various work sites may be required.
Pay RangeMinimum: $ – Maximum: $.
EEO StatementHighmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).