Remote Director, Cyber Risk & GRC Strategy

Cardinal Health

United States

On-site

USD 137,000 - 232,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical, dental and vision coverage
Paid time off plan
Health savings account (HSA)
401k savings plan
MyFlexPay access to wages early
Flexible spending accounts (FSAs)
Disability coverage
Work-Life resources
Paid parental leave
Healthy lifestyle programs

Job summary

Cardinal Health is seeking a Director of Information Security and Risk to lead the cybersecurity risk management program, embedding risk throughout enterprise decisions and driving governance across ERM, regulatory requirements, and business objectives.

You will oversee risk framework development, third-party risk management, remediation, and executive reporting while building a high-performing team and coordinating with security architecture, IT, legal, and audit.

Qualifications

  • 8+ years in cybersecurity, risk management or information security with focus on cyber risk and governance.
  • Expertise in cybersecurity risk management frameworks, methodologies, and enterprise risk integration.
  • Experience leading risk assessment programs, risk remediation efforts, and third-party risk management.
  • Professional certifications such as CISSP, CISM, CRISC or CISA preferred.

Responsibilities

  • Develop and lead the cybersecurity risk management strategy aligned with ERM frameworks, business objectives and regulatory expectations.
  • Collaborate with enterprise stakeholders to define risk priorities, methodologies, and governance structures.
  • Lead development and enhancement of GRC tools and platforms for risk, control and compliance management.
  • Oversee third-party risk management program including vendor assessments and onboarding.
  • Define risk metrics, KPIs and KRIs, and deliver executive reporting on risk posture.
  • Partner with ERM teams to align cybersecurity risks with broader risk framework.
  • Guide risk remediation, vulnerability management, and escalation processes across teams.

Skills

Cybersecurity risk management
GRC leadership
Regulatory compliance
Executive reporting
Stakeholder management
Vendor/third-party risk

Job description

Cardinal Health is seeking a Director of Information Security and Risk to lead the cybersecurity risk management program, embedding risk throughout enterprise decisions and driving governance across ERM, regulatory requirements, and business objectives.

You will oversee risk framework development, third-party risk management, remediation, and executive reporting while building a high-performing team and coordinating with security architecture, IT, legal, and audit.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Director, Cyber Risk & GRC Strategy
Remote Director, Cyber Risk & GRC Strategy

Cardinal Health • Northern (KY)

Hybrid
USD 137,000 - 232,000
Medical, dental and vision coverage
401k savings plan
Health savings account (HSA)
+5
Remote Director of Cyber Compliance & GRC
Remote Director of Cyber Compliance & GRC

Hobbsnews • Northern (KY)

Hybrid
USD 137,000 - 232,000
Medical, dental and vision coverage
401k savings plan
Paid time off
+2
Cybersecurity Program & Operations Manager
Cybersecurity Program & Operations Manager

Cardinal Health, Inc. • Kentucky

On-site
USD 125,000 - 197,000
Medical coverage
Paid time off
401k plan
Cybersecurity Program & Operations Manager
Cybersecurity Program & Operations Manager

Socket.dev • Kentucky

On-site
USD 125,000 - 197,000
Competitive benefits
Head of Security Architecture & Strategy
Head of Security Architecture & Strategy

Cardinal Health, Inc. • Northern (KY)

Hybrid
USD 154,000 - 261,000
Medical, dental and vision coverage
Paid time off
Health savings account (HSA)
+7
Strategic Cybersecurity Program & Operations Manager
Strategic Cybersecurity Program & Operations Manager

Information Technology Senior Management Forum • Kentucky

Hybrid
USD 125,000 - 197,000
Medical coverage
Dental coverage
Vision coverage
+7
Director, Cyber Compliance — Remote (SOX, HIPAA, FDA GxP)
Director, Cyber Compliance — Remote (SOX, HIPAA, FDA GxP)

Cardinal Health • Northern (KY)

Hybrid
USD 137,000 - 232,000
Medical, dental and vision coverage
Paid time off plan
401k savings plan
+7
Director of Cybersecurity GRC - Healthcare & Research
Director of Cybersecurity GRC - Healthcare & Research

Insight Global • United States

On-site
USD 170,000 - 256,000
Security Architecture Leader - Strategy & Transformation
Security Architecture Leader - Strategy & Transformation

Cardinal Health • Northern (KY)

Hybrid
USD 154,000 - 261,000
Medical, dental and vision coverage
401k savings plan
Paid time off
+1
Senior Cyber Security Director: Strategy & Risk Leadership
Senior Cyber Security Director: Strategy & Risk Leadership

Clarivate Analytics US LLC • Hartford (CT)

On-site
USD 188,000 - 235,000