Director IS Strategy & Advisory Services
Kaiser Permanente · Pleasanton, CA · 1 mo ago
Sales$194k–$251k/yrFull-time
Key responsibilities include leading security strategy, methodologies, and standards for complex IT initiatives across multiple security domains, ensuring alignment with enterprise strategy and organizational KPIs.
Responsibilities
- Drive workforce planning, talent acquisition, and capability building at scale, addressing skill and knowledge gaps through talent development, managed-service partnerships, and vendor relationships.
- Partner with cross-functional IT and business stakeholders, serving as an escalation point for risks and dependencies, and advising executive leadership on remediation and continuous improvement.
- Scale and operate offshore, onshore, and global delivery models.
- Establish a centralized contingent workforce strategy and governance model, including effective offshoring.
- Implement standardized processes for vendor selection, rate benchmarking, and contract management.
- Drive cost optimization through vendor consolidation and rate negotiations.
- Introduce reporting frameworks and dashboards for spend, performance, and utilization.
- Oversee the development, implementation, and maintenance of assigned ITRM processes and service portfolios in collaboration with leadership to develop ITRM strategy.
- Direct the operation of multiple units/departments by identifying customer and operational needs, analyzing resources and costs, and incorporating them into business plans.
- Translate business strategy into actionable requirements, obtain and distribute resources, set standards, and measure progress.
- Ensure products/services meet customer requirements while aligning with organizational strategies.
- Demonstrate continuous learning and maintain a highly skilled workforce by aligning resource plans with business objectives, overseeing recruitment, and developing talent.
- Effectively communicate technical security findings to non-technical audiences.
- Lead and assist in developing project strategies, methodologies, and standard processes for complex IT initiatives across security domains.
- Review and approve project scope, approach, and documentation, partnering with cross-functional stakeholders.
- Research industry trends, emerging threats, and best practices to recommend security solutions.
- Serve as an escalation point for security testing issues, dependencies, and risks.
- Identify and close skill/knowledge gaps through talent development and outsourcing.
- Leverage partnerships with security consultants, project managers, and IT leaders to drive workforce planning.
- Approve and direct staff augmentation through managed service agreements.
- Oversee budgets and capital planning across departments.
- Implement and ensure adherence to standardized security tools, templates, and processes.
- Recommend and advocate for regional/national process or solution design improvements aligned with business goals.
- Provide guidance to align solutions with business strategies, operational workflows, budgets, and vendor SLAs.
- Develop and communicate trends and lessons learned to stakeholders and leadership.
- Collaborate with cross-functional IT teams to gain buy-in and approval of test plans, tracking quality metrics across testing phases.
- Ensure KPIs are defined, up-to-date, and aligned with organizational KPIs.
- Drive cybersecurity intellectual capital development through process improvements, training sessions, and documentation.
- Direct information sharing and integration procedures across cybersecurity teams.
- Provide insight to executive management on remediating security testing issues.
- Review, evaluate, and prioritize value gaps and opportunities for process enhancements.
- Establish partnerships with technology risk teams and business stakeholders to respond to and remediate identified issues.
Requirements
- Minimum three (3) years informal leadership experience with or without direct reports.
- Minimum four (4) years managing operating budgets and/or project financials.
- Bachelor’s degree in Business Administration, Computer Science, Social Science, Mathematics, or related field and minimum eight (8) years experience in IT or a related field, including minimum six (6) years in information security. Additional equivalent work experience may substitute for the degree requirement.
Preferred Qualifications
- Four (4) years of work experience interacting with executive leadership (e.g., Vice President level and above).
- Two (2) years experience overseeing projects/programs requiring cross-functional technology/business solution integration.
- Two (2) years experience in risk management, governance, or compliance.
- Two (2) years experience in business continuity, crisis management, or disaster recovery.
- Two (2) years experience in financial or statistical modeling (e.g., net present value, options analysis, Monte Carlo analysis, linear regression).
- Master’s degree in Business Administration, Computer Science, Social Science, Mathematics, or related field.
Skills
Core
- Ambiguity/Uncertainty Management
- Attention to Detail
- Business Knowledge
- Communication
- Constructive Feedback
- Critical Thinking
- Cross-Group Collaboration
- Decision Making
- Dependability
- Diversity, Equity, and Inclusion Support
- Drives Results
- Facilitation Skills
- Health Care Industry Knowledge
- Influencing Others
- Integrity
- Leadership
- Learning Agility
- Organizational Savvy
- Problem Solving
- Short- and Long-term Learning & Recall
- Strategic Thinking
- Team Building
- Teamwork
- Topic-Specific Communication
Functional
- Advanced Hacking
- Analytical Skills
- Application Design, Architecture
- Application Development (Web)
- Business Case Development
- Business Planning
- Client Focus
- Conflict Resolution
- Cross Department Coordination
- Cybersecurity Event Correlation Tools
- Debugging and Troubleshooting
- Delegation
- Demonstrating Personal Flexibility
- Financial Acumen
- Goal Setting
- IT Quality Assurance
- Information Security Management
- Innovative Mindset
- Key Performance Indicators
- Low-Level Programming
- Malicious Code Analysis
- Managing Diverse Relationships
- Mentoring and Coaching
- Negotiation
- Network Security
- Organizational Skills
- Penetration Testing
- Prioritization
- Project Management
- Project Management Tools
- Requirements Elicitation & Analysis
- Technical Communication
Pay
$193,800 - $250,800 / year. Actual base pay determined at offer will be based on labor market data, internal alignment, and a candidate's years of relevant work experience, education, certifications, skills, and geographic location.
Schedule
- Full-time
- Scheduled Weekly Hours: 40
- Shift: Day
- Workdays: Monday, Tuesday, Wednesday, Thursday, Friday
- Working Hours Start: 08:00 AM
- Working Hours End: 05:00 PM
Worker location: Flexible (must align with Kaiser Permanente's Authorized States policy). Travel: No.