This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We're building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you'll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.
Job Responsibility:
Managing and executing procedures to facilitate and support various cybersecurity resiliency activities
Establishes schedules and plans to ensure deadlines are being met
Develops efficient processes to facilitate and support regulatory, internal audit and industry standard assessments and audits
Provides coaching, feedback, and educates stakeholders and colleagues relative to cyber resiliency requirements and industry best practices
Defines or develops risk management policies and procedures to support the implementation of cyber resiliency processes and controls across the enterprise
Oversees preparation and submission of cyber resiliency metrics and reports to management, Audit Services, external auditors/assessors, and regulators
Oversees assessments to measure the effectiveness of cyber resiliency controls and provides results back to responsible party/owner
Educates key stakeholders on risk management frameworks and top risks related to the system(s) or Line of Business for cyber resilience
Communicating and contributing to broad secure architectural solutions for Cyber Resiliency functions such as Incident Response, Disaster Recovery, and Business Continuity
Requirements:
7+ years of experience in cyber resiliency related activities, internal audit, external assessments, risk management, regulatory compliance, healthcare industry program management and/or information security in a corporate environment
5+ years of experience in understanding of cyber security compliance frameworks including its requirements, regulations, and implications for financial reporting, program management and internal controls
5+ years of experience in audit methodologies, internal control frameworks, risks assessments, project management and control testing techniques
3+ years of experience in networking as it relates to resilient systems
3+ years of program management including strategic planning, decision-making, and project management
Nice to have:
Strong understanding of relevant regulations and frameworks aligning to NIST and ISO
Strong analytical and problem-solving skills with the ability to analyze and interpret complex regulations, operational data, trends, assess risks effectively, and make recommendations for improvement
Exceptional interpersonal skills with the ability to collaborate across departments and influence stakeholders at all levels
Demonstrated ability to collaborate effectively with cross-functional teams, build relationships with key stakeholders, and influence others to achieve compliance objectives