Franklin, TN, 37065, USA
6 days ago
Manager Cybersecurity Engineering
**Job Summary** The Data and Application Protection department within the Cybersecurity organization ensures successful delivery and operations of critical security controls across the CSH Enterprise. The Cybersecurity Manager of Engineering leads all facets of the engineering efforts surrounding, but not limited to, data protection, application security, and various efforts that support high-priority initiatives within Cybersecurity. The manager will lead a team of engineers and will oversee the day-to-day engineering of data protection and application security efforts and projects. The role includes oversight of the Data Loss Prevention solutions, Data At Rest solutions, CASB, and application security solutions. The role will also encompass the facilitation and creation/maintaining of metrics, engineering run books, SOPs, and as-built documentation. This role will work directly with the business and service line owners to identify gaps in owned security controls. The manager will work with vendors, own and maintain vendor relationships, own and maintain internal roadmaps, and will drive projects that align to the active roadmap. The Cybersecurity Manager of Engineering reports directly to the Director, Data Protection and Application Security and is a member of the Cybersecurity leadership team. The Manager is responsible for leading, managing, and developing this team of cybersecurity professionals to ensure the success of numerous critical areas across data protection and application security. This role will collaborate on the development of an enterprise data protection program, defining the vision and strategy for the organization, review and provide recommendations on Cybersecurity policies and standards. As a member of the Cybersecurity leadership team, the Manager leads a team of Engineers that specialize in the development, implementation, management, and operations of enterprise-level platform(s) focused on data protection and application security to protect from data exfiltration from both internal and external threats. Additionally, this individual will regularly interface with Enterprise Architecture, ePMO, and other teams in Cybersecurity and IT leadership. **Essential Functions** + Leadership & Oversight + Manages the planning, implementation, and continuous improvement of Cyber Security programs in collaboration with department leads. + Leads and mentors a team of Cyber Security professionals, providing day-to-day support, performance management, and fostering career development. + Coordinates efforts with cross-functional teams across IT and business units to align Cyber Security strategies with operational goals and regulatory requirements. + Risk Management & Program Development + Oversees day-to-day risk assessment and mitigation activities, ensuring the protection of systems and data. + Continuously evaluates Cyber Security risks and provide recommendations to senior leadership on necessary improvements. + Identifies process inefficiencies and collaborate with teams to implement operational improvements. + Collaboration & Strategic Alignment + Acts as a Cyber Security representative within cross-functional teams, ensuring security controls align with operational requirements. + Builds and maintains relationships with peer groups to ensure Cyber Security efforts meet current program needs. + Works with departmental teams to deliver key Cyber Security projects, ensuring alignment with organizational objectives. + Communication & Compliance: + Communicates Cyber Security issues and updates to non-technical audiences, ensuring clarity and understanding. + Ensures Cyber Security programs meet industry regulations and internal compliance standards. + Provides regular reports on security program performance and risk mitigation efforts. + Project & Vendor Management + Manages Cyber Security projects and initiatives, ensuring on-time delivery and adherence to scope. + Maintains relationships with vendors to ensure third-party solutions align with Cyber Security requirements. + Performs other duties as assigned. + Complies with all policies and standards. **Knowledge, Skills and Abilities** + Technical Expertise & Problem Solving + Solid understanding of security principles, frameworks (SOX, HIPAA, HITRUST, NIST), and core technologies. + Ability to identify and implement effective solutions to mitigate security risks. + Strong troubleshooting skills to address and resolve technical security issues. + Leadership + Leads and manages a small Cyber Security team, providing mentorship and ensuring team growth. + Responsible for overseeing day-to-day security operations and implementing security projects. + Develops basic risk management strategies and presents solutions to immediate supervisors. + Communication & Collaboration + Clear and concise communication of technical concepts to non-technical team members and stakeholders. + Works closely with IT and business units to implement security strategies that support business needs. + Coordinates with vendors and ensures their solutions meet security requirements. + Business Acumen & Strategic Thinking + Aligns team efforts with departmental goals, ensuring that Cyber Security initiatives support broader business objectives. + Contributes to the development of security strategies in line with evolving industry threats and regulatory requirements. + Time Management & Adaptability + Manages multiple tasks and priorities efficiently in a fast-paced environment. + Proactively seeks out opportunities for professional development and staying informed of Cyber Security trends. **Required Experience:** + Preferred: Bachelor’s or Master’s Degree in Cyber Security, Computer Science, Information Systems (or other related field), or equivalent work experience. + 6+ years of IT or information security + 2+ years of people leadership Activities: + Proven track record of managing an engineering team, preferably in a health care provider environment or other highly regulated industry + Ability to translate business requirements and risks into technology and cybersecurity solutions + Ability to collaborate across IT groups and associated business areas to provide optimal security controls while balancing efficient and effective user interactions and business operations + Must have project and process management skills. + Must have excellent verbal and written communication skills to interact with all levels of staff, management, and external sources. + Experience in managing multiple vendor relationships. + Worked in process-driven structured environments, and participated in process optimization activities. Competencies: + Advanced knowledge of security principles, issues, techniques and implementations across IT platforms. + Proactive identification and solving of complex problems + Business Acumen and thought leadership to enable the business by identifying solutions that show the art of the possible. + Effective communication of technical concepts to a non-technical audience. + Excellent written and verbal communication skills **Licenses and Certifications** + Industry certifications such as:Security+, GSEC, SSCP, CISM, CISSP, GIAC, OSCP, or ITIL Certifications preferred Equal Employment Opportunity This organization does not discriminate in any way to deprive any person of employment opportunities or otherwise adversely affect the status of any employee because of race, color, religion, sex, sexual orientation, genetic information, gender identity, national origin, age, disability, citizenship, veteran status, or military or uniformed services, in accordance with all applicable governmental laws and regulations. In addition, the facility complies with all applicable federal, state and local laws governing nondiscrimination in employment. This applies to all terms and conditions of employment including, but not limited to: hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. If you are an applicant with a mental or physical disability who needs a reasonable accommodation for any part of the application or hiring process, contact the director of Human Resources at the facility to which you are seeking employment; Simply go to http://www.chs.net/serving-communities/locations/ to obtain the main telephone number of the facility and ask for Human Resources.
Confirm your E-mail: Send Email