Jobs and Careers
CV

Senior Manager, Cybersecurity Compliance

CVS Health
Work At Home-Texas, United States, United Statesfull_timeVerifiedPosted 24 Oct 2025
💰 $236,900/yr($118,450/yr$236,900/yr)

About the role

At CVS Health, we’re building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.

As the nation’s leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues – caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day.

Position Summary

Defines operational activities and executes on strategic direction related to Technology Compliance for CVS Health’s Digital, Data, Analytics & Technology (DDAT) Compliance team. Partners with process and control owners to define and develop audit response strategy in support of SOX, SOC 1, SOC 2, PCI, HITRUST, NIST 800-53, NYDFS, and other applicable cybersecurity regulations and frameworks. Manages, develops, and implements procedures, controls, and reporting to ensure technology compliance. Consults on efforts to continuously improve internal controls, processes, and systems to enhance the effectiveness and efficiency for the program. Partners with IT and business colleagues to educate on risk and provide actionable metrics that measure the effectiveness of controls. Partners with Learning and Development to create risk management training material. Partner with key stakeholders, including senior management, Legal, Internal Audit, and external assessors, to ensure alignment and support of the Technology Compliance Program. 


Required Qualifications

  • 7+ years of internal audit, external assessments, risk management, regulatory compliance, and information security in a corporate environment.
  • 5+ years of experience in audit methodologies, internal control frameworks, risks assessments, and control testing techniques.
  • 5+ years of experience in technical project and program management, working on efforts with both internal and external partners in a highly collaborative environment.
  • 3+ years of experience with Cloud Security engineering and/or architecture.


Preferred Qualifications

  • Experience with AI and Machine Learning Governance
  • In-depth knowledge and understanding of Sarbanes Oxley, SOC 1, and SOC 2 regulation including its requirements, regulations, and implications for financial reporting and internal controls.
  • Strong understanding of relevant regulations and frameworks aligning to NIST, ISO, HITRUST, HIPPA, PCI
  • DevSecOps experience and solid understanding of cloud infrastructure and cybersecurity
  • Strong attention to detail and accuracy when conducting assessments, documenting processes, and reviewing controls to ensure compliance with SOX requirements.
  • Exceptional interpersonal skills with the ability to collaborate across departments and influence stakeholders at all levels.
  • Strong analytical and problem-solving skills with the ability to analyze and interpret complex regulations, operational data, trends, assess risks effectively, and make recommendations for improvement.
  • Demonstrated ability to collaborate effectively with cross-functional teams, build relationships with key stakeholders, and influence others to achieve compliance objectives. 
  • Excellent written and verbal communication skills with the ability to articulate complex concepts clearly and concisely.
  • Experience leading design for risk management frameworks as well as defining and identifying cybersecurity risks.
  • Solid program management skills including strategic planning, decision-making, and project management.
  • Healthcare, Insurance, or Retail industry business practices and risks
  • Certifications: Certified Information Systems Security Professional (CISSP) and/or Certified in Risk and Information Systems Control (CRISC)
     

Education

  • Bachelor’s degree in Computer Science, Cybersecurity, or equivalent experience (High School Diploma and 4 years relevant experience)

Pay Range

The typical pay range for this role is:

$118,450.00 - $236,900.00


This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls.  The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors.  This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above.  This position also includes an award target in the company’s equity award program. 
 

Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CVS Health

View company profile →