Program Manager - ISRM

Highmark Health

$90K — $130K *
US-AnywhereRemote in Pennsylvania, US
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Business Education, Marketing or Information Systems
  • 5 years of experience in IS/IT or IT Security
  • Six years of relevant experience can substitute for the degree
  • Preferred: Master's Degree in Business Administration or Business Management
  • Minimum of 3 years in Project or Program Management is preferred.

Responsibilities

  • Collaborate across multiple projects and teams to ensure unified results.
  • Communicate upcoming security initiatives and their impacts clearly.
  • Establish and lead a comprehensive Information Security program.
  • Measure and report program effectiveness using business KPIs.
  • Utilize change management methodologies to mitigate security risks.
  • Understand and articulate the role of cyber governance in project delivery.
  • Implement risk-management strategies to address cyber risks.

Benefits

  • Collaborative work environment across diverse teams.
  • Opportunities for independent learning and professional growth.
  • Involvement in high-impact cybersecurity programs.
  • Development of key performance indicators for informed decision-making.
Full Job Description
JOB SUMMARY

This job is responsible for the successful definition, implementation and delivery of complex programs that requires cross-functional collaboration and interdependencies between a group of projects and/or related activities within the constraint of scope, quality, time, and budget and under circumstances involving moderate to high-impact risk factors, in a cyber security portfolio, strategy and delivery environment. Works collaboratively with a diverse group of team members and contractors across multiple project teams or departmental work groups, ensuring their efforts align to deliver unified, coordinated results. They will develop and guide the implementation of project or program roadmaps for cybersecurity-related products and technology applications, ensuring that approved business outcomes are delivered effectively. Additionally, they may be asked to supervise both the rollout and ongoing management of cybersecurity programs across multiple tenants, coordinating efforts to achieve seamless integration and sustained operational success. While there is no direct management of staffing, collaboration is emphasized to ensure the appropriate team members are fully engaged in the process to ensure approved business outcomes are delivered at lowest cost and maximized profitability. They may be asked to prepare and share comprehensive, data-driven impact analyses that address both quality and risk across cybersecurity catalogue of services. To ensure lasting results, they will apply change management strategies and actively promote positive security behaviors throughout the implementation process, supporting sustainability and ongoing improvement. Oversee a range of activities focused on gathering, analyzing, and presenting key performance indicators by creating dashboards and scorecards, conducting forecasting and trend analysis, tracking outcomes, and preparing executive-level presentations. This comprehensive approach ensures that relevant performance data is systematically collected and interpreted, enabling informed decision-making and continuous improvement across the organization.

ESSENTIAL RESPONSIBILITIES
  • Cross-functional collaboration and interdependency management between a group of projects, products/technologies, functions, and/or customers.
  • Ensure clear lines of communication including but not limited to; transparency to the business on upcoming security initiatives, identifying impact to the business and to consumers, helping shape remediation, and developing external and internal communications
  • Responsible for establishing and driving Information Security programs designed for the business to improve security behaviors.
  • Measure program effectiveness and report accordingly on progress through approved business KPIs and outcomes.
  • Utilize change management methodologies to mitigate identified security risks.
  • Understand and bring to life, the role of cyber governance and how it supports the overall mission of program delivery
  • Bring a risk-management approach to programs and projects governed ensuring cyber risks are managed and mitigated through our defined processes
  • Must have a foundational understanding of portfolio management and governance methods, including portfolio financial management.
  • Demonstrate a commitment to independent learning and possess a proactive mindset, showing the initiative and motivation necessary to successfully fulfill all job responsibilities.
  • Other duties as assigned or requested.


EDUCATION

Required
  • Bachelor's Degree in Business Education, Marketing or Information Systems


Substitutions
  • Six (6) years relevant, progressive experience


Preferred
  • Master's Degree in Business Administration or Business Management


EXPERIENCE

Required
  • 5 years in IS/IT or IT Security


Preferred
  • Minimum of 3 years of Project Management or Program Management


LICENSES or CERTIFICATIONS

Required
  • None


Preferred (any combination)
  • PMP, SAFe, or CSM (certified scrum master)
  • Cyber or IT related certifications (examples, CISSP, ITIL)
  • Risk Management related (ie., NIST)
  • Change Management, Prosci or similar


SKILLS
  • Program and Project Delivery in Cyber/IT Environments: Demonstrates expertise in managing the full lifecycle of programs and projects within cybersecurity and IT settings, ensuring objectives are consistently met.
  • Change Management: Demonstrated ability to guide organizations through transitions, implementing strategies that ensure lasting improvements and adaptability.
  • Prioritizing: Skilled at identifying critical tasks and organizing work to maximize efficiency and impact, even in complex and fast-paced environments.
  • Analytical and Logical Reasoning: Possesses strong analytical thinking, enabling them to dissect problems, evaluate solutions, and make informed decisions rooted in logic and data.
  • Risk Mitigation Planning and Remediation: Experienced in developing comprehensive strategies to identify, assess, and address risks, ensuring that potential issues are proactively managed and resolved.
  • Financial Management in Portfolio Governance: Proficient in overseeing financial aspects within a portfolio governance framework, ensuring resources are allocated effectively to support organizational objectives.
  • Communication Skills: Adept at delivering executive-level presentations and facilitating clear, persuasive communication across diverse audiences.
  • Conflict Resolution: Brings proven experience in navigating and resolving conflicts, fostering collaboration, and maintaining productive working relationships.


Language (Other than English):

None

Travel Requirement:

0% - 25%

PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS

Position Type

Remote or Office-based

Teaches / trains others regularly

Frequently

Travel regularly from the office to various work sites or from site-to-site

Rarely

Works primarily out-of-the office selling products/services (sales employees)

Never

Physical work site required

No

Lifting: up to 10 pounds

Constantly

Lifting: 10 to 25 pounds

Occasionally

Lifting: 25 to 50 pounds

Rarely

Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.

Compliance Requirement: This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.

As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company's Handbook of Privacy Policies and Practices and Information Security Policy.

Furthermore, it is every employee's responsibility to comply with the company's Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.

Similar Jobs

More Jobs at Highmark Health

More Information Technology Jobs

Find similar Program Manager - ISRM jobs: