Talent.com
Senior Engineer, IT Governance and Compliance - Third Party Certifications
Senior Engineer, IT Governance and Compliance - Third Party CertificationsCardinal Health • Providence, RI, United States
Senior Engineer, IT Governance and Compliance - Third Party Certifications

Senior Engineer, IT Governance and Compliance - Third Party Certifications

Cardinal Health • Providence, RI, United States
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Company Overview :

Cardinal Health, Inc. (NYSE : CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.

Department Overview :

Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.

Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.

The IT Governance and Compliance function within the organization develops, enhances, and maintains security policies and IT compliance programs in alignment with regulatory, legal, and contractual requirements, while collaborating closely with key stakeholders to maintain a security and compliant technology environment.

We are committed to building a resilient, secure, and compliant digital ecosystem, and you will play a critical role in safeguarding our information and supporting our mission to improve the lives of people every day.

Job Overview :

This role is a leader position within the team and requires having an in-depth understanding of local, national and international privacy and security regulations such as HIPAA (Health Insurance Portability and Accountability Act), GDPR (General Data Protection Regulation), CCPA (California Consumer Privacy Act), and PCI DSS (Payment Card Industry Data Security Standard) as well as third-party certifications (e.g., HITRUST, SOC 2, ISO) available that enable in meeting those regulatory requirements.

Senior Engineer will co-lead third-party certification (e.g., HITRUST and SOC 2) program to confirm policies, standards, procedures, and audit activities are in alignment with CAH customer, business, IT, and HITRUST and SOC 2 requirements, while working with members of the Information Security and Risk Management team as well as key stakeholders throughout the enterprise such as enterprise architects, IT solution owners, training teams, etc. Success in the role will be measured by the effectiveness of the implementation and operation of HITRUST and SOC 2 program including the ability to retain all current HITRUST and SOC 2 certifications and provide guidance / advice on future certifications from cost models to balancing between compliance, risk, and business benefit.

Daily Responsibilities :

Partner with Sales, Business and IT organizations to determine third-party certifications needs and recommend best approach on obtaining and maintaining third-party certifications such as HITRUST and SOC 2 that meet the business needs, while balancing cost of compliance.

Develop and implement cost and resource models to help leadership understand funding and resource requirements to obtain and maintain third-party certifications such as HITRUST and SOC-2

Manage third-party certification Program from both build and run perspective. Some of the key responsibilities include :

Partner with HITRUST Alliance and external assessor to identify, understand and incorporate HITRUST and SOC 2 requirements into existing and future CAH certifications.

Partner with internal CAH teams to confirm there are processes in place to appropriately meet the needs of HITRUST and SOC 2 requirements, including tracking and resolution of corrective action plans.

Coordinate and manage all activities across the third-party certification program including planning, scoping, testing, reporting, and educating key stakeholders as needed to successfully obtain and maintain HITRUST certifications.

Develop and manage relevant artifacts to manage the third-party certification program (e.g., SOP, roadmap, RACI, etc.)

Build and implement metrics to report on effectiveness of the third-party certification Program

Lead and mentor team members through all third-party certification activities.

Facilitate / assist in response to security assessments and questionnaires.

Identify opportunities to streamline and automate processes to manage third-party certification programs more effectively and efficiently, while reducing the overall cost of compliance.

Effectively manage and implement changes throughout the organization.

Any other duties as assigned.

Qualifications :

Bachelor's Degree in related field or equivalent work experience

10+ years' experience in related field preferred

Prior experience leading HITRUST and SOC 2 audits in a large healthcare organization

Demonstrated leadership in driving cross-functional governance initiatives

Deep understanding of healthcare industry regulations and standards (e.g., PCI DSS, HIPAA, GDPR, NIST, HITRUST, SOC 2)

Proven experience supporting IT due-diligence and integration during M&A initiatives.

Experience building or significantly improving GRC programs within high-growth technology organizations, particularly those dealing with emerging technologies

Experience gathering and analyzing business requirements, translating them into actionable plans and technical specifications

Strong technical knowledge of enterprise IT environments (cloud, network, infrastructure, applications, data lake / data warehouse) and ability to design and implement control framework across it

Hands-on experience with GRC platforms, project management tools, and service management systems, with a focus on scaling and automating GRC processes

Experience in analyzing data and creating reports / dashboards / views to provide visibility into risk and control landscape.

Excellent analytical and problem-solving skills - able to translate technical concepts into business outcomes

Excellent communication skills (both verbal and written) - able to facilitate discussions with leaders at all levels within the organization, work in a matrixed environment to drive results, and clearly define and execute repeatable processes.

Excellent time management, active listening, meeting facilitation, and influencing skills.

Professional certifications preferred : CGEIT (Certified in the Governance of Enterprise IT), CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CRISC (Certified in Risk and Information Systems Control)

Anticipated salary range : $123,400 - $176,300

Bonus eligible : Yes

Benefits : Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

Medical, dental and vision coverage

Paid time off plan

Health savings account (HSA)

401k savings plan

Access to wages before pay day with myFlexPay

Flexible spending accounts (FSAs)

Short- and long-term disability coverage

Work-Life resources

Paid parental leave

Healthy lifestyle programs

Application window anticipated to close : 12 / 20 / 2025

  • if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity / expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here ()

serp_jobs.job_alerts.create_a_job

Senior It Compliance • Providence, RI, United States

Job_description.internal_linking.related_jobs
Engineer Senior - Systems

Engineer Senior - Systems

General Dynamics Electric Boat • North Kingstown, RI, US
serp_jobs.job_card.full_time
There's never been a better time to join the shipbuilding industry.As demand for cutting-edge naval technology grows, General Dynamics Electric Boat is at the forefront-designing, building, and...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
Associate IT Software Engineer

Associate IT Software Engineer

Ford Motor Company • Providence, RI, United States
serp_jobs.job_card.full_time
We are the movers of the world and the makers of the future.We get up every day, roll up our sleeves and build a better world together. At Ford, we’re all a part of something bigger than ourselve...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
IT Operations Professional 3

IT Operations Professional 3

TekWissen LLC • Walpole, Massachusetts, USA
serp_jobs.job_card.full_time +1
TekWissen is a global workforce management provider headquartered in Ann Arbor Michigan that offers strategic talent solutions to our clients world-wide The opportunity below is with one of our cli...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
IT Snr Manager

IT Snr Manager

Rhode Island Staffing • Providence, RI, US
serp_jobs.job_card.full_time
Work with a world class team to develop, implement, and support cutting edge Oracle technology.Manages a team supporting and / or implementing software projects and / or internal systems.Defines, docum...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Senior Software Engineer - Provider Engineering

Senior Software Engineer - Provider Engineering

Datavant • Providence, RI, United States
serp_jobs.job_card.full_time
Datavant is a data platform company and the world's leader in health data exchange.Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format....serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
VP IS - Coverage System

VP IS - Coverage System

NY Staffing • Providence, RI, US
serp_jobs.job_card.full_time
VP Information Systems - Coverage System.The VP Information Systems - Coverage System is responsible for planning, developing, and implementing information technology (IT) solutions for Baylor Scot...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
IT ProgramSite Lead (On-Site)

IT ProgramSite Lead (On-Site)

Oxley Enterprises • Norfolk, Massachusetts, USA
serp_jobs.job_card.full_time
The following states / districts are excluded from this job ad : AK CA CO.MA MN MO NE NV NH NJ NM NY ND OR PR RI VT.Future Need - Actively Interviewing. COMNAVSURFLANT (CNSL) Naval Base Norfolk VA.Info...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
Manager - IT Audit

Manager - IT Audit

Western Digital • Providence, RI, United States
serp_jobs.job_card.full_time
At Western Digital, our vision is to power global innovation and push the boundaries of technology to make what you thought was once impossible, possible. At our core, Western Digital is a company o...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Software Engineer - In-Store Systems

Senior Software Engineer - In-Store Systems

Qsic • Providence, RI, United States
serp_jobs.job_card.full_time
Join QSIC in redefining in-store audio experiences! Our innovative technology incorporates Audio, AI, and Creativity to create exceptional audio environments that engage shoppers and transform the ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Specialty Software Engineer

Senior Specialty Software Engineer

Sentara Hospitals • Norfolk, Massachusetts, USA
serp_jobs.job_card.full_time
Software product development focuses on developing multiple types / categories of software including end-user applications enterprise data architecture and operating systems / utility software and tool...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Manager, IT Web Services

Senior Manager, IT Web Services

Sumitomo Pharma • Providence, RI, United States
serp_jobs.job_card.full_time
Japan with operations in the U.With several marketed products and a diverse pipeline of early- to late-stage investigational assets, we aim to accelerate discovery, research, and development to bri...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
IT Operations Professional 3

IT Operations Professional 3

Cube hub • Walpole, Massachusetts, USA
serp_jobs.job_card.full_time
Provide daily onsite IT support at the Walpole MA site.Qualified candidate will be responsible for daily IT support of PCs (Laptop and Desktop) Networking & Servers physical topology cabling an...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Software Engineer - PSI Solutions

Senior Software Engineer - PSI Solutions

Educational Testing Service • Providence, RI, United States
serp_jobs.job_card.full_time
ETS is a global education and talent solutions organization enabling lifelong learners worldwide to be future-ready.For more than 75 years, we've been advancing the science of measurement to build ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Security Engineer, Cloud Platforms (Remote)

Senior Security Engineer, Cloud Platforms (Remote)

eClinical Solutions • Mansfield, MA, United States
serp_jobs.filters.remote
serp_jobs.job_card.full_time
Clinical Solutions helps life sciences organizations around the world accelerate clinical development initiatives with expert data services and the elluminate Clinical Data Cloud - the foundation o...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Lead Network Information Security Architect

Senior Lead Network Information Security Architect

Lumen Inc • Providence, RI, United States
serp_jobs.job_card.full_time
We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly.Together, we are building a culture and company from the people up - committed to t...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Senior Software Engineer - Enterprise Solutions

Senior Software Engineer - Enterprise Solutions

Mozilla • Providence, RI, United States
serp_jobs.job_card.full_time
Join Mozilla Corporation, a non-profit-backed technology company with a mission to improve the internet for people.With popular products like Firefox, which boasts over 225 million users monthly, w...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Oracle Health Senior Integrated Technologies Owner

Oracle Health Senior Integrated Technologies Owner

Oracle • Providence, RI, United States
serp_jobs.job_card.full_time
NOTE : US Citizen Only and must be able to commit to 50% travel anywhere in US.We are looking for an experienced Technical Project manager that will be accountable for the technical components of cl...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Integration Architect

Integration Architect

Omni Inclusive • Providence, RI, United States
serp_jobs.job_card.full_time
Enterprise Integration Strategies.Knowledge of system design and development used with in Service Oriented architecture and web services integration (REST, SOAP, WSDL, JAXWS).Strong knowledge of IT...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted