Program Manager - ISRM
Highmark Health · United States · 1 mo ago
RemoteRemoteProject ManagementFull-time
This role is responsible for defining, implementing, and delivering complex cybersecurity programs that require cross-functional collaboration and interdependencies across multiple projects. The position ensures alignment of efforts to deliver unified, coordinated results within scope, quality, time, and budget constraints, while managing moderate to high-impact risk factors. The role involves developing and guiding the implementation of cybersecurity roadmaps, supervising program rollouts, and coordinating efforts for seamless integration and sustained operational success. Additionally, the role includes preparing data-driven impact analyses, applying change management strategies, and promoting positive security behaviors.
Responsibilities
- Manage cross-functional collaboration and interdependencies between projects, products, technologies, functions, and customers.
- Ensure clear communication, including transparency on upcoming security initiatives, business impact assessments, and development of internal/external communications.
- Establish and drive Information Security programs to improve security behaviors within the business.
- Measure program effectiveness and report progress through approved business KPIs and outcomes.
- Utilize change management methodologies to mitigate identified security risks.
- Implement cyber governance practices to support program delivery and overall mission.
- Apply a risk-management approach to programs and projects, ensuring cyber risks are managed and mitigated through defined processes.
- Demonstrate foundational understanding of portfolio management, governance methods, and portfolio financial management.
- Gather, analyze, and present key performance indicators through dashboards, scorecards, forecasting, trend analysis, and executive-level presentations.
- Commit to independent learning and proactive fulfillment of job responsibilities.
- Perform other duties as assigned or requested.
Requirements
- Bachelor’s Degree in Business Education, Marketing, or Information Systems (or equivalent experience).
- Six (6) years of relevant, progressive experience may substitute for the Bachelor’s Degree.
- Five (5) years of experience in IS/IT or IT Security.
- Minimum of 3 years of Project Management or Program Management (preferred).
Skills
- Program and Project Delivery in Cyber/IT Environments: Expertise in managing the full lifecycle of programs and projects within cybersecurity and IT settings.
- Change Management: Ability to guide organizations through transitions and implement strategies for lasting improvements.
- Prioritizing: Skilled at identifying critical tasks and organizing work for maximum efficiency and impact.
- Analytical and Logical Reasoning: Strong analytical thinking to dissect problems, evaluate solutions, and make data-driven decisions.
- Risk Mitigation Planning and Remediation: Experience in developing strategies to identify, assess, and address risks proactively.
- Financial Management in Portfolio Governance: Proficiency in overseeing financial aspects within a portfolio governance framework.
- Communication Skills: Adept at delivering executive-level presentations and facilitating clear, persuasive communication.
- Conflict Resolution: Proven experience in navigating and resolving conflicts to foster collaboration.
Qualifications
- Master’s Degree in Business Administration or Business Management (preferred).
- Certifications (preferred, any combination):
- PMP, SAFe, or CSM (Certified Scrum Master).
- Cyber or IT-related certifications (e.g., CISSP, ITIL).
- Risk Management-related certifications (e.g., NIST).
- Change Management (e.g., Prosci).
Schedule
- Travel requirement: 0% - 25%.
- Position Type: Remote or Office-based.
- Physical work site: Not required.
- Lifting requirements:
- Up to 10 pounds: Constantly.
- 10 to 25 pounds: Occasionally.
- 25 to 50 pounds: Rarely.