Demo

Managing Director, Information Security Risk and Resilience

Blue Cross Blue Shield companies
Washington, DC Full Time
POSTED ON 1/16/2025
AVAILABLE BEFORE 4/15/2025

The hiring range for this role is :

180,000.00 - $220,000.00

This is the lowest to highest salary we, in good faith, believe we would pay for this role at the time of this posting. We may ultimately pay more or less than the hiring range and this hiring range may also be modified in the future. A candidate's position within the hiring range may be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, relevant experience, skills, seniority, performance, shift, travel requirements, and business or organizational needs.This job is also eligible for annual bonus incentive pay.

We offer a comprehensive package of benefits including paid time off, 11 holidays, medical / dental / vision insurance, generous 401(k) matching, lifestyle spending account and many other benefits to eligible employees.

Note : No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, or any other form of compensation that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company's sole discretion, consistent with the law.

Job Description Summary :

This role will lead the overall cyber risk management and business resiliency program for BCBSA. These capabilities underpin our focus on ensuring and maintaining constant vigilance and management of cyber risk impact to our assets, teammates, and those we serve. This role is responsible for identifying, assessing, and managing information security risks, ensuring robust resiliency planning and executing resiliency drills to maintain continuous awareness and the ability to withstand business operations resulting from cyber events.

Responsibilities include but are not limited to :

Primary Job Functions :

Leadership and Strategy : Develop, implement, and execute a comprehensive information security risk management and resilience strategy for the organization by serving as a thought leader and partner to ensure effective performance of security risks and resilience initiatives.

Risk Identification and Management : Identify, assess, and prioritize information security risks. Develop and implement risk mitigation strategies and controls to protect the organization's information assets and processes. Produce meaningful reports and metrics that enable effective awareness and management to desired risk levels.

Compliance Assessments : Responsible for ensuring compliance with relevant information security standards and regulations, including SOC, NIST Cybersecurity Framework, and ISO standards. Maintain clear and effective policies and procedures to address identified gaps and ensure continuous compliance.

Resilience Planning : Enhance the organization's resilience to handle disruptions to key systems and enabling processes. Develop and implement business resiliency practices, playbooks, alternatives, and rehearsal exercises that maintain critical business processes to achieve a minimally viable company level of operations. Maintain effective disaster recovery and business continuity processes that support effective resiliency practices.

Collaboration and Communication : Work closely with other departments, including business stakeholders, legal, compliance, HR, and information technology, to ensure a coordinated approach to designing and achieving resiliency outcomes. Achieve successful results by building collaborative relationships with key business partners.

Continuous Improvement : Stay updated with the latest security trends, technologies, and best practices. Continuously improve the organization's security posture by implementing new technologies and processes for efficiency and to deliver operational excellence.

Required Education, Experience and Certification :

Education :

  • Required : Bachelor's degree in Information Security, Computer Science, or equivalent work experience.

Required Experience :

10 years of experience in information security, with a focus on risk management and resilience program development.

Experience in developing and implementing information security risk and resilience strategies.

Certification :

  • Preferred : CISSP, CISM, CBCP, or CRISC
  • Knowledge, Skills, and Abilities :

    Excellent leadership skills with the ability to effectively influence and inspire others towards a shared vision / goal.

    Strong collaboration, people management and coaching skills.

    Ability to effectively communicate and build productive work relationships

    Strong knowledge of information security frameworks, standards, and regulations (e.g., NIST, ISO 27001, GDPR, SOC 2).

    LI_HYBRID

    Salary : $180,000 - $220,000

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Managing Director, Information Security Risk and Resilience?

    Sign up to receive alerts about other jobs on the Managing Director, Information Security Risk and Resilience career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $70,462 - $84,818
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Blue Cross Blue Shield companies

    Blue Cross Blue Shield companies
    Hired Organization Address Chicago, IL Full Time
    The Cloud Computing Engineer owns the designs, development, configuration and delivery of cloud infrastructure environme...
    Blue Cross Blue Shield companies
    Hired Organization Address Washington, DC Full Time
    The hiring range for this role is : 107,666.00 - 150,995.00 This is the lowest to highest salary we, in good faith, beli...
    Blue Cross Blue Shield companies
    Hired Organization Address Chicago, IL Full Time
    The hiring range for this role is : 150,000.00 - $180,000.00 This is the lowest to highest salary we, in good faith, bel...
    Blue Cross Blue Shield companies
    Hired Organization Address Chicago, IL Full Time
    The hiring range for this role is : 0.00 This is the lowest to highest salary we, in good faith, believe we would pay fo...

    Not the job you're looking for? Here are some other Managing Director, Information Security Risk and Resilience jobs in the Washington, DC area that may be a better fit.

    Senior Director, Regulatory Digital Strategy

    10000645 - Director Information Science, Gaithersburg, MD

    AI Assistant is available now!

    Feel free to start your new journey!