Senior Manager - Cybersecurity Compliance

CVS Health Corporation

Cheyenne (WY)

On-site

USD 107,000 - 284,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical coverage
Dental coverage
Vision coverage
Paid time off
Retirement savings options
Wellness programs
Equity awards

Job summary

CVS Health Corporation seeks a Senior Manager of Cybersecurity Compliance to lead enterprise regulatory compliance initiatives. You will guide assessments, design controls, and coordinate audits across IT and business teams, ensuring alignment with legal and industry requirements.

The role focuses on driving risk-based regulatory programs, educating stakeholders, and delivering actionable metrics to executives.

Qualifications

  • 7+ years of experience in information technology or information security with regulatory controls.
  • 3+ years working with auditors/assessors and remediation plans.
  • 3+ years in FTC, HIPAA, NY DFS, SOX, PCI, NIST, ISO, HITRUST, NAIC regulations.
  • 3+ years of audit methodologies, internal controls, risk assessments, and testing.
  • CRISC/CISA/CISSP certifications are preferred.

Responsibilities

  • Lead and execute procedures for cybersecurity regulatory audits and compliance activities.
  • Develop processes to support regulatory assessments and audits.
  • Coach stakeholders on regulatory requirements and best practices.
  • Define risk management policies to support enterprise controls implementation.
  • Oversee submission of regulatory reports to management, auditors, and regulators.
  • Oversight of audits to measure control effectiveness and report findings.

Skills

Regulatory compliance
Audits
Risk management
Regulatory frameworks
Education liaison

Education

Bachelor's degree or equivalent

Tools

CRISC
CISA
CISSP

Job description

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.

Position Summary

The Senior Manager of Cybersecurity Compliance will lead and execute strategic initiatives related to Regulatory Compliance for CVS Health’s Enterprise Information Security team, guiding colleagues in facilitating regulatory assessments and compliance activities across the enterprise. This role develops, implements, and manages procedures, controls, and reporting to ensure compliance with regulations. Consults on efforts to continuously improve internal controls, processes, and systems to enhance the effectiveness and efficiency of the program. Partners with IT and business colleagues to educate on risk and provide actionable metrics that measure control effectiveness. This role also coordinates and manages activities of process owners to support regulatory audits, including supporting audit requests and tracking remediation. Collaborates with key stakeholders, including senior management, Legal, Internal Audit, and external assessors, to ensure alignment and support of the Regulatory Compliance Program.

Specifically, this role:

  • Manages and executes procedures to facilitate and support various cybersecurity regulatory audits and compliance activities, establishing schedules and plans to ensure deadlines are met.
  • Develops efficient processes to facilitate and support regulatory, internal audit, and industry standard assessments and audits.
  • Provides coaching, feedback, and education to stakeholders and colleagues on regulatory compliance requirements and industry best practices.
  • Defines and develops risk management policies and procedures to support the implementation of technology controls across the enterprise.
  • Oversees preparation and submission of regulatory compliance reports to management, auditors, assessors, and regulators.
  • Oversees audits and assessments to measure the effectiveness of security controls, providing results back to the responsible party/owner.
  • Educates key stakeholders on risk management frameworks and top risks related to regulatory compliance.
Required Qualifications
  • 7+ years of experience in information technology or information security related with a deep understanding of regulations, including requirements and implications for cybersecurity controls.
  • 3+ years of experience working with auditors and/or assessors, formulating responses, managing inquiries, and designing/overseeing remediation plans as necessary.
  • 3+ years of experience relevant regulations, standards, and frameworks (FTC, HIPAA, NY DFS, SOX, PCI, NIST, ISO, HITRUST, and NAIC).
  • 3+ years of experience in audit methodologies, internal control frameworks, risk assessments, and control testing techniques.
  • Relevant professional certifications such as Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), or Certified Information Systems Security Professional (CISSP).
Preferred Qualifications
  • Experience in a large and complex environment related to healthcare, insurance, or retail.
  • Demonstrated knowledge of and hands‑on experience with federal and state healthcare regulations, regulatory frameworks, examinations, audits, and compliance assessments, with the ability to interpret and apply regulatory requirements in a complex healthcare environment.
  • Proven experience designing, implementing, and managing Regulatory Change Management programs, including the identification, assessment, communication, and integration of new or changing regulatory requirements into business processes, policies, controls, and compliance frameworks.
  • Experience managing work efforts with both internal and external partners in a highly collaborative environment.
  • Excellent written and verbal communication skills, with the ability to articulate complex concepts clearly and concisely.
  • Strong analytical and problem‑solving skills, with the ability to analyze and interpret complex regulations, operational data, and trends, assess risks effectively, and make recommendations for improvement.
  • Exceptional interpersonal skills with the ability to collaborate across departments and influence stakeholders at all levels.
  • Strong attention to detail and accuracy when conducting assessments, documenting processes, and reviewing controls to ensure compliance with regulatory requirements.
  • Solid program management skills, including strategic planning, decision-making, and project management.
  • Demonstrated ability to collaborate effectively with cross‑functional teams, build relationships with key stakeholders, and influence others to achieve compliance objectives.
Education
  • Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience)
Pay Range

The typical pay range for this role is:

$106,605.00 - $284,280.00

This pay range represents the base hourly rate or base annual full‑time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short‑term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program.

Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.

Great benefits for great people

We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families.

This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility.

Additional details about available benefits are provided during the application process and on Benefits Moments (https://learn.bswift.com/cvshealth-mainland) .

We anticipate the application window for this opening will close on: 10/12/2026

Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

CVS Health is an equal opportunity/affirmative action employer, including Disability/Protected Veteran — committed to diversity in the workplace.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Columbia (SC)

On-site
USD 107,000 - 284,000
Bonus eligibility
Equity awards
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Helena (MT)

On-site
USD 107,000 - 284,000
Bonus potential
Comprehensive benefits package
Equity incentives
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Montpelier (VT)

On-site
USD 171,000 - 284,000
Comprehensive benefits
Bonus & equity program
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Indianapolis (IN)

On-site
USD 107,000 - 284,000
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Woonsocket (RI)

On-site
USD 107,000 - 284,000
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • City of Albany (NY)

On-site
USD 107,000 - 284,000
Bonus eligibility
Equity award program
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Dover (DE)

On-site
USD 107,000 - 284,000
Comprehensive benefits
Bonus eligibility
Equity target
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Raleigh (NC)

On-site
USD 107,000 - 284,000
Bonus program
Equity awards
Comprehensive benefits
+2
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Annapolis (MD)

On-site
USD 107,000 - 284,000
Senior Manager - Cybersecurity Compliance
Senior Manager - Cybersecurity Compliance

CVS Health Corporation • Phoenix (AZ)

On-site
USD 107,000 - 284,000
Medical insurance
Dental insurance
Vision insurance
+2