Manager, Information Security Risk Job
Methodist Le Bonheur HealthcareAbout the role
Summary
Lead and manage Information Security Risk Management team to identify measure, assess, and manage information security risk. Establish and communicate metrics and reporting on information security risks, remediation progress, and outcomes. Manage vendor due diligence and disaster recovery processes. Assist in the development and distribution of information security policies and standards and information security awareness training and testing. Models appropriate behavior as exemplified in MLH Mission, Vision and Values.
Education/Experience/Licensure
Education/Formal Training
Work Experience
Credential/Licensure
REQUIRED:
BS in Computer Science, Business, Health Care or closely related discipline.
Must have at least four (4) years of experience in information security working with risk management, audit, and compliance
Credentialed in one or more of the following:
CISA, CRISC, or CISSP
PREFERRED:
MBA/MS in Computer Science, Business, Health Care or closely related discipline.
N/A
N/A
SUBSTITUTIONS ALLOWED:
Four (4) years of applicable information security experience working with risk management, audit, and compliance and five (5) years of management experience in lieu of education requirements.
N/A
Four (4) years of applicable information security experience working with risk management, audit, and compliance and five (5) years of management experience in lieu of certification requirements.
Knowledge/Skills/Abilities
- Strong communication and presentation skills.
- Ability to identify opportunities and help create/implement solutions with senior management.
- Ability to make appropriate decisions in a timely manner.
- Ability to listen and assess the needs of various internal and external customers and to prioritize their needs.
- Ability to manage several broad scoped projects at one time.
- Ability to work and maintain composure in an often-stressful environment.
- Ability to effectively handle and positively resolve conflict.
Key Job Responsibilities
- Lead and manage team of Information Security Risk Analysts.
- Identity, measure, analyze, and manage information security risk and provide risk metrics and reporting on remediation progress and outcomes.
- Guide team on IT vendor risk management and due diligence.
- Guide the development of and maintenance of Technology Disaster Recovery Plan and ensure periodic testing.
- Assist in the development and maintenance of information security policies and standards.
- Coordinate the development, maintenance, and presentation of information security awareness training and testing and the reports of its ongoing effectiveness.
- Coordinate activities related to external security audits and reviews.
Physical Requirements
- The physical activities of this position may include climbing, pushing, standing, hearing, walking, reaching, grasping, kneeling, stooping, and repetitive motion.
- Must have good balance and coordination.
- The physical requirements of this position are: light work - exerting up to 25 lbs. of force occasionally and/or up to 10 lbs. of force frequently.
- The Associate is required to have close visual acuity to perform an activity, such as preparing and analyzing data and figures; transcribing; viewing a computer terminal; or extensive reading.
- The conditions to which the Associate will be subject in this position: The Associate is not substantially exposed to adverse environmental conditions; job functions are typically performed under conditions such as those found in general office or administrative work.
- Frequent travel between various MLH Facilities and locations.
- The Associate has 24 hours accountability for assigned area.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s