Mayo Clinic

Manager - Information Security

Mayo Clinic$100K — $130K *
Healthcare
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in information security or related field plus 8 years of relevant experience.
  • Master's degree in applicable field plus 6 years of relevant experience preferred.
  • At least 3 years of experience in leadership or management roles.
  • Experience guiding technical staff and leading projects.
  • Certifications such as CISSP, CISM, GSEC, or OSCP required at hire.

Responsibilities

  • Lead and manage the Cybersecurity Operations Center (SOC) effectively.
  • Oversee 24x7 incident monitoring and response activities.
  • Develop and mentor SOC analysts, enhancing team skills and capabilities.
  • Collaborate with various Information Security teams to address incidents.
  • Ensure compliance with healthcare regulations and maintain audit readiness.
  • Report on SOC performance metrics, showcasing operational maturity.
  • Evaluate and advance detection and response capabilities, utilizing AI and automation.

Benefits

  • Hybrid work environment with flexibility.
  • Opportunities for continuous professional development.
  • Collaborative work culture emphasizing operational excellence.
  • Focus on meaningful contributions to cybersecurity in healthcare.
  • Engagement with cutting-edge cybersecurity technologies.
Full Job Description
Job Description

The Cybersecurity Operations Center (SOC) Manager in the Office of Information Security is responsible for leading, managing, and continuously improving the SOC. This role oversees coverage for day-to-day 24x7 incident monitoring, including detection, triage, investigation, containment, eradication, and recovery of cybersecurity incidents. The SOC Manager provides leadership to SOC analysts by setting expectations, developing talent, identifying skill gaps, and promoting a culture of accountability, collaboration, and operational excellence. The position collaborates with Information Security teams such as IAM, Data Protection, Application Protection, Infrastructure Protection, Threat Intelligence, Detection Engineering, Security Testing Services, Information Security Awareness & Education, Information Technology as well as business proponents to ensure information security incidents are remediated in a timely manner. The SOC Manager supports healthcare regulatory compliance, audit readiness, and evidence retention while ensuring SOC processes align with frameworks such as NIST CSF 2.0, NIST SP 800-61, and HIPAA regulations. This leader develops and reports executive-level metrics, including MTTD, MTTR, incident trends, escalation rates, analyst productivity, and SLA performance, to demonstrate SOC effectiveness and operational maturity. The SOC Manager also evaluates detection and response capabilities, advances AI and automation opportunities, and enhances operational efficiencies to reduce organizational cyber risk, strengthen team performance, and deliver measurable cybersecurity value.

The Information Security Manager provides operational and tactical leadership for a defined security service, function, or team. This role translates Information Security strategy, risk requirements, and policies into effective day to day execution; ensures reliable, compliant service delivery; and fosters a strong security culture. Operating within the Risk organization, the Manager partners with business and technology stakeholders to identify, assess, and manage information security risk in a regulated environment.

This position is hybrid and needs to live within 100 miles from one of the following sites: Rochester, MN, Jacksonville, FL, Phoenix, AZ, La Crosse, WI, Eau Claire, WI and Mankato, MN.

This vacancy is not eligible for sponsorship/ we will not sponsor or transfer visas for this position. Also, Mayo Clinic DOES NOT participate in the F-1 STEM OPT extension program.

Qualifications

Bachelors degree in applicable field plus eight (8) years of relevant experience.
Pertinent fields of study and experience include, but are not limited to, information security, computer science, information systems, risk management, or a related field.
Three years leadership/management experience (i.e. guiding technical staff, leading technical projects, or leading teams).

Master's degree in applicable field plus six (6) years of relevant experience preferred.
Pertinent fields of study and experience include, but are not limited to, information security, computer science, information systems, risk management, or a related field.
Three years leadership/management experience (i.e. guiding technical staff, leading technical projects, or leading teams).

One or more of the following certifications (or equivalent) are required at time of hire: CISSP, CISM, GSEC, OSCP..

About Mayo Clinic

Mayo Clinic is a nonprofit academic medical center based in Rochester, Minnesota, focused on integrated clinical practice, education, and research. It employs more than 4,500 physicians and scientists and 58,400 administrative and allied health staff. The practice specializes in treating difficult cases through tertiary care and destination medicine. It is home to the Mayo Clinic College of Medicine and Science, which includes a medical school and research programs. Mayo Clinic has a large presence in three U.S. metropolitan areas: Rochester, Minnesota; Jacksonville, Florida; and Phoenix, Arizona. It also has several affiliated hospitals and clinics elsewhere in the United States and around the world.
Learn more about Mayo Clinic
Size
74,000 employees
Industry
Founded
1919

Similar Jobs

More Jobs at Mayo Clinic

More Healthcare Jobs

Find similar Manager - Information Security jobs: