Manager, Cyber Resilience

CVS Health

Saint Paul, MN · Onsite · Full Time

Posted

Job description

At CVS Health, we're building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.As the nation's leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues - caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day. Position Summary Defines operational activities and executes on strategic direction related to Cyber Resiliency for CVS Health's Digital, Data, Analytics & Technology (DDAT) Cybersecurity GRC team, guiding colleagues in facilitating cyber resiliency activities across the enterprise. Manages, develops and implements procedures, controls, and reporting to ensure compliance with NIST Cyber resiliency frameworks. Consults on efforts to continuously improve internal controls, processes, and systems to enhance the effectiveness and efficiency for the program. Partners with IT and business colleagues to educate on cyber resiliency and provide actionable metrics that measure the effectiveness of controls. Coordinate and manage activities of process owners to support cyber resiliency testing, including supporting audit requests and tracking remediation. Partner with key stakeholders, including senior management, Legal, Internal Audit, and external assessors, to ensure alignment and support of the cyber resiliency Program.Responsibilities: Managing and executing procedures to facilitate and support various cybersecurity resiliency activities. Establishes schedules and plans to ensure deadlines are being met. Develops efficient processes to facilitate and support regulatory, internal audit and industry standard assessments and audits. Provides coaching, feedback, and educates stakeholders and colleagues relative to cyber resiliency requirements and industry best practices. Defines or develops risk management policies and procedures to support the implementation of cyber resiliency processes and controls across the enterprise Oversees preparation and submission of cyber resiliency metrics and reports to management, Audit Services, external auditors/assessors, and regulators. Oversees assessments to measure the effectiveness of cyber resiliency contro…

Apply for this job