Jobs and Careers
MC

Senior Director, Cybersecurity – M&A, Divestitures & Supply Chain Risk

McKesson
United Statesfull_timeVerifiedPosted 27 May 2025
💰 $295,400/yr($177,200/yr$295,400/yr)

About the role

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve – we care.

What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow’s health today, we want to hear from you.

McKesson is in the business of better health, and we touch the lives of patients in virtually every aspect of healthcare. We partner with payors, hospitals, physician offices, pharmacies, pharmaceutical companies, and others across the spectrum of care to build healthier organizations that deliver better care to patients in every setting. We believe in the importance of strong, vital organizations because we know that patients can only be healthy when our system is healthy.

Every single McKesson employee contributes to our mission—by joining McKesson you act as a catalyst in a chain of events that helps millions of people all over the globe. Talented, compassionate people are the future of our company—and of healthcare. At McKesson, you’ll collaborate on the products and solutions that help us carry out our mission to improve lives and advance healthcare. Working here is your opportunity to shape an industry that’s vital to us all.

Current Need

The Senior Director, Cybersecurity – M&A, Divestitures & Supply Chain Risk will be responsible for overseeing the development and implementation of advanced cybersecurity strategies, with a particular focus on third party security and leading cyber risk through mergers, acquisition and divestitures. This role will lead the cybersecurity strategy and execution for all merger, acquisition, and divestiture (M&A/D) activities, as well as third-party and supply chain security risk management.

The ideal candidate will bring deep expertise in cybersecurity due diligence, integration/separation planning, and third-party risk governance, with a proven ability to operate in fast-paced, high-stakes environments.

Key Responsibilities:

What You’ll Do:   

  • Lead cybersecurity due diligence and risk assessments for all M&A and divestiture transactions. 
  • Develop and execute cybersecurity integration and separation strategies aligned with business objectives. 
  • Oversee third-party risk management programs, including vendor assessments, contract reviews, and ongoing monitoring. 
  • Collaborate with legal, compliance, IT, and business leaders to ensure secure and compliant transitions during M&A/D events. 
  • Establish and maintain cybersecurity standards and controls for supply chain and third-party ecosystems. 
  • Provide executive-level reporting on cybersecurity risks, mitigation strategies, and program performance. 
  • Drive continuous improvement in cybersecurity practices across acquired/divested entities and third-party engagements. 
  • Serve as a trusted advisor to executive leadership on cyber risks related to strategic business initiatives. 
  • Lead vendor negotiations related to cybersecurity terms and conditions. 

Team Leadership and Development: 

  • Lead and mentor a team of cybersecurity professionals, fostering a culture of continuous improvement and excellence. 
  • Conduct performance reviews, provide feedback, and support professional development for team members. 
  • Promote collaboration and knowledge sharing within the team and across departments. 

Minimum Requirements

Typically requires 13+ years of professional experience and 6+ years of diversified leadership, planning, communication, organization, and people motivation skills

Critical Skills

  • Minimum of 13 years of experience in cybersecurity, with at least 6 years in a leadership role. 
  • Demonstrated experience leading cybersecurity efforts in M&A and divestiture transactions, including due diligence and post-close integration/separation. 
  • Extensive experience in a senior cybersecurity leadership role, with a focus In-depth knowledge of third-party risk management in a global business with diverse business units and technology platforms.   
  • Experience leading cyber focused dialogue with critical stakeholders through organizational activities such as mergers, acquisition and divestiture while actively promoting a culture of security first thinking. 
  • In-depth knowledge of cybersecurity frameworks, standards, and best pract

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

McKesson

View company profile →