Manager Information Security Engineer - Remote or Hybrid in MN or DC
Eden Prairie, Hennepin County, Minnesota, 55344, USA
Listed on 2026-08-29
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Optum Insight is improving the flow of health data and information to create a more connected system. We remove friction and drive alignment between care providers and payers, and ultimately consumers. Our deep expertise in the industry and innovative technology empower us to help organizations reduce costs while improving risk management, quality and revenue growth. Ready to help us deliver results that improve lives?
Join us to start Caring. Connecting. Growing together.
As the Cybersecurity Manager leading Connected Device Security and Data Protection, you will be responsible for leading the organization's Connected Device Security (IoT/IoMT) and Data Protection & Insider Risk programs across a shared services healthcare environment. You will develop, implement, and mature security capabilities that protect medical devices, connected technologies, sensitive data, and critical healthcare information assets. Additionally, you will establish and mature an Insider Threat Program including governance, technology, processes, investigative workflows, stakeholder engagement, and program metrics.
In this role, you will leverage enterprise-approved AI tools to streamline workflows, automate data protection analytics, and drive continuous operational improvements. Working closely with Security Operations, Incident Response, Security Engineering, Clinical Engineering, Compliance, Privacy, Legal, HR, and IT, you will ensure a coordinated, frictionless approach to cyber risk reduction and drive program outcomes.
You'll enjoy the flexibility to work remotely
* from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
- Lead Connected Device Security (IoMT/IoT) and Data Protection & Insider Risk teams, developing strategic program roadmaps aligned with organizational cybersecurity objectives
- Drive the standardized deployment and operational management of Data Loss Prevention (DLP), Information Protection, and Insider Risk Management capabilities across shared services healthcare environments
- Establish repeatable deployment frameworks, standard architectures, configuration baselines, and operational runbooks to ensure continuous monitoring and prevent policy and configuration drift
- Design, implement, and mature an Insider Threat Program, establishing governance, policies, investigative workflows, case management, and escalation criteria
- Lead risk-based Connected Device Security processes for medical devices (IoMT), IoT, and connected technologies, including inventory management, visibility, vulnerability management, and network segmentation
- Develop, implement, and maintain healthcare-aligned KPIs, KRIs, operational dashboards, and metrics to measure control effectiveness, operational maturity, and risk reduction outcomes
- Partner with Security Engineering, Security Operations, Clinical Engineering, Biomedical Engineering, Privacy, Compliance, Legal, HR, and IT stakeholders to ensure aligned cyber risk reduction
- Ensure program alignment with regulatory frameworks including HIPAA, HITECH, NIST Cybersecurity Framework, NIST 800-53, CIS Controls, and HITRUST standards
- Use enterprise-approved AI tools to streamline workflows, automate threat detection analytics, and drive continuous operational improvement across data protection and device security programs
- Evaluate emerging cybersecurity trends, threat vectors, and automated tools to inform solution design and strategic innovation
You’ll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.
Required Qualifications:- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, Healthcare Technology, or a related field OR equivalent cybersecurity experience in lieu of degree
- 3+ years of progressive cybersecurity experience in an enterprise environment
- 2+ years of experience implementing or managing Data…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).