Jobs and Careers
AM

Security Portfolio Manager Principal

AmerisourceBergen
USA - PA - Remote, United States, United StatesRemotefull_timeVerifiedPosted 22 Jul 2025

About the role

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!

Job Details

Summary:

The Security Portfolio Manager Principal is responsible for leading and overseeing the planning, execution, and management of the holistic Information Security portfolio ensuring alignment of all portfolio resources (financials, labor, services, tools, etc.) with organizational goals. Principal Security Portfolio Managers develop, review, and analyze portfolio performance data to measure portfolio effectiveness, identify risks and opportunities, and use data-driven insights to inform decision making. They lead the design, development, and execution of portfolio management practices and guardrails for Security including resource prioritization and allocation, portfolio risk assessment, and stakeholder engagement. They collaborate closely with multiple internal and external stakeholders including Information Security leadership, operations, Finance, Procurement, and Project Management Office (PPMO) to ensure appropriate financial and organizational support is allocated to address organizational goals, providing robust protection while maintaining fiscal responsibility. They are expected to have a deep understanding of the Information Security domains in which they are aligned. They play a key expert role in defining Information Security portfolio principles and best practices. They act as a subject matter expert for Information Security portfolio management and participate in senior leadership meetings to bring Information Security perspective to company-wide practices.

Responsibilities:

  • Provides leadership of one or more security domain portfolios involving large-scale, complex and highly analytical tasks.

  • Manages and leads oversight of all portfolio resources (Run and investment financials, labor, tools, services, etc.) for one or more security domains to ensure that the portfolio is prioritized and aligned optimally for the protection of information systems and networks. 

  • Formulates methodologies to monitor and assess portfolio performance against organizational benchmarks and key performance indicators (KPIs) to evaluate effectiveness, provide actionable insights, identify risk, and drive continuous optimization of our resources.

  • Delivers clear and comprehensive reporting that summarizes full portfolio performance, outcomes, risks, and strategic insights to Security leadership to ensure transparent communications and drive proactive, informed decision making.

  • Analyzes trends, news, and changes in threat and business environment with respect to organizational portfolio risk; advises organizational management and develops and executes plans for mitigation of portfolio risk.

  • Continuously analyzes and recommends opportunities for cost, resource, service, operational efficiencies, and portfolio process improvements.

  • Provides technical guidance, coaching, and mentorship to other Security Portfolio Managers in executing their tasks and responsibilities.

  • Develops and implements strategies to drive on-going prioritization and align Information Security budget and resources with business objectives and goals, maximize control effectiveness, and ensure operational efficiency.

  • Guides, coaches, and mentors Information Security team and key stakeholders  to drive awareness and adoption of consistent Information Security portfolio policies, processes, and guardrails.

  • Leads comprehensive security planning, forecasting, and analysis activities in partnership with Security leadership and partners (Finance, Procurement, PMO, etc.) to provide strategic and tactical direction and align to organizational objectives.

Education:

  • Bachelor’s Degree in Computer Science, Information Technology or any other related discipline or equivalent related experience.

Preferred Certifications:

  • Industry Agile certification (e.g., SAFe Agilist, SAFe LPM, etc.)

  • Industry project management certification (e.g., PMP)

  • Certified Cloud Security Professional (CCSP)

  • Certification in Information Security Strategy Management (CISM)

  • Certified Information Systems Security Professional (CISSP)

  • CompTIA Security + Certification

  • Systems Security Certified Practitioner (SSCP)

  • TS-SCI Security Clearance Certification

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

AmerisourceBergen

View company profile →