×
Register Here to Apply for Jobs or Post Jobs. X

Manager IT-Cybersecurity Compliance

Job in Virginia Beach, Virginia, 23450, USA
Listing for: Sentara
Full Time position
Listed on 2026-06-24
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security, IT Consultant, Data Security
Salary/Wage Range or Industry Benchmark: 100000 - 125000 USD Yearly USD 100000.00 125000.00 YEAR
Job Description & How to Apply Below
City/State Norfolk, VAWork Shift First (Days)
Overview:

Overview The Manager – Cyber Security Compliance is responsible for establishing and maintaining the overall cyber security compliance program. This position will lead a team of cyber security compliance professionals by enabling a holistic compliance framework and assurance readiness for regulations, standards, and contract obligations within Sentara Healthcare. Managing and reporting on cyber security compliance in a manner that meets Sentara Healthcare’s requirements.

Reporting to the Director of GRC in Cyber Security, this leader ensures compliance against regulatory, industry and contractual requirements. Further, set the strategy and drive effective process, methodology and technology solutions to support the cyber defense of Sentara Healthcare, focusing on continuous improvement, data protection, governance, risk management, and mitigation.

As a domain expert in compliance and assurance, engage at management and technical levels to develop/refine strategy, identify control breakdowns, risks, and opportunities to deliver a comprehensive and robust compliance function. In addition, elevate how we engage with business and technology control owners. Establish a framework and process to execute readiness assessments for compliance against cyber security standards and requirements.

Primary Responsibilities:

Lead team of cyber security compliance professionals to measure compliance against a broad range of control requirements, both internally and externally.

Ownership of cyber security compliance strategy, programs and related initiatives including regulatory audits and compliance management, Controls testing, medical device security, metrics and risk and performance indicators.

Understand key security and compliance frameworks including but not limited to HIPAA, HICP 405(d), NIST
800-171, SOC2, ISO
27001, and laws/regulations.

Manage compliance initiatives to ensure control effectiveness with applicable laws and regulations, as well as internal policies and procedures.

Monitor activities of assigned IT areas to ensure control assurance of internal policies and standards.

Participate in the development and implementation of new business initiatives involving compliance to ensure functionality required to support required compliance.

Provide guidance to business functions on compliance/security-related matters and lead investigations.

Coordinate audit-related tasks to ensure the readiness of managers and their teams for audit testing and facilitate corrective actions process for ownership and timely remediations.

Initiate improvement activities to reduce risk, ensure compliance, lower cost, and improve quality within IT processes.

Refine and revise existing policies

Education

Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (Preferred)
OR7+ years in a cyber security management role, preferably in Governance, Risk or Compliance without a Bachelor's Degree (Required)
Certification/LicensureCISSP (Certified Information Systems Security Professional)(Preferred)
CISM (Certified Information Security Manager)(Preferred)
CRISC (Certified in Risk and Information Systems Control)(Preferred)
CISA (Certified Information Systems Auditor)(Preferred)
Experience5+ years in a cyber security management role, preferably in Governance, Risk or Compliance with a Bachelor's Degree (Required)7+ years in a cyber security management role, preferably in Governance, Risk or Compliance without a Bachelor's Degree (Required)
Preferred candidates will have moved up through the ranks of Cyber Security Governance, Risk and Compliance.

Experience with various industry regulations and frameworks (PCI, HIPAA, Data Privacy Laws, ISO
27001/2, NIST, HITRUST, etc.)Experience with GRC tools such as Service Now, Archer, etc.

Experience working in a highly regulated environment.

Experience in information security and auditing with increasing responsibilities.

Strong background in security controls, auditing, network, and system security.

Ability to express complex technical concepts in business terms.

Evaluate effectiveness of the internal security control…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary