Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

VP - Cybersecurity Governance, Risk & Compliance

$176.4k - $298.32k

Cardinal Health

What Information Security and Risk contributes to Cardinal Health

Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.

Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure or destruction. This job family develops system back-up and disaster recovery plans. Information Technology also conducts incident response, threat management, vulnerability scanning, virus management and intrusion detection and completes risk assessments.

Job Summary

The Vice President - Cybersecurity Governance, Risk & Compliance is a senior executive responsible for establishing, leading, and evolving the enterprise-wide cybersecurity governance, risk management, compliance, resilience, and third-party oversight strategy. This individual will ensure that cybersecurity risks are effectively identified, managed, and communicated in alignment with business objectives, regulatory requirements, and enterprise risk frameworks.

The role requires a seasoned leader with deep expertise in cybersecurity GRC, including risk management, regulatory compliance, policy and standards, third-party risk oversight, cyber resilience, disaster recovery, and security awareness. This individual will play a critical role in embedding security and risk-informed decision-making across the business, enabling scalable governance processes, and ensuring organizational readiness for evolving regulatory, operational, and threat landscapes. The ideal candidate brings divers perspectives gained through leadership experience across multiple organizations, industries, regulatory environments or large-scale transformation initiatives. This position reports to the SVP, Chief Information Security Officer (CISO).

Responsibilities

Organizational Leadership & Governance

  • Support CISO in operating a cybersecurity governance program that defines policies, standards, roles, and accountability structures across the enterprise

  • Serve as an advisor to executive leadership and the board on cybersecurity risk posture, regulatory exposure, and compliance readiness

  • Establish and maintain governance processes that ensure alignment between cybersecurity initiatives, enterprise risk management, and business objectives

  • Drive integration of cybersecurity governance into enterprise decision-making, transformation initiatives, and operational processes

  • Foster a culture of accountability, transparency, and risk awareness across the organization

Cyber Policy, Standards & Controls Governance

  • Maintain, and enforce cybersecurity policies and standards aligned with regulatory requirements, industry frameworks, and enterprise objectives

  • Oversee policy lifecycle management, including development, review, approval, communication, and enforcement

  • Establish and maintain a centralized controls inventory to track security controls and associated requirements across systems and applications. Ensure effective communication and adoption of policies and standards across business and technology teams

Cyber Risk Management & ERM Integration

  • Operationalize a standardized cybersecurity risk management framework, taxonomy, and methodology aligned to enterprise risk management practices

  • Oversee cyber risk assessments, including identification, evaluation, and prioritization of threats and vulnerabilities

  • Establish and maintain GRC platform to track risks, remediation activities, and risk ownership across cybersecurity and business teams

  • Oversee risk response and remediation strategies so that appropriate mitigation plans are developed, executed, and monitored

  • Partner with Enterprise Risk Management (ERM) to align cyber risks with broader organizational risk frameworks and reporting structures

Regulatory Compliance & Assurance

  • Oversee cybersecurity compliance programs to support adherence to applicable regulatory, legal, and industry requirements (e.g., SOX, HIPAA, PCI, HITRUST, SOC 2)

  • Establish and maintain processes for internal and external compliance assessments, including audit support, evidence management, and remediation tracking

  • Oversee internal compliance management efforts to enforce adherence to security policies, standards, and controls

  • Direct external compliance activities, including customer assessments, regulatory reviews, and third-party audits

  • Ensure continuous monitoring of the regulatory landscape to proactively adapt compliance programs and controls

Cyber Third Party Risk Management

  • Oversee the cybersecurity third-party risk management (TPRM) program, including risk assessments, onboarding, monitoring, and offboarding processes

  • Establish governance for third-party lifecycle management to ensure risks are identified, assessed, and mitigated throughout vendor engagements

  • Oversee contract reviews to validate inclusion of security and data protection requirements

  • Collaborate with internal stakeholders and external providers to develop joint incident response plans and ensure alignment with enterprise security expectations

  • Drive integration of third-party risk insights into overall cybersecurity risk posture and reporting

Cyber Resilience, Disaster Recovery & Crisis Management

  • Define and lead enterprise cyber resilience strategy, including IT resilience assessments and dependency mapping to identify critical system vulnerabilities

  • Oversee development and maintenance of disaster recovery (DR) and business continuity plans for IT systems and operational environments

  • Direct execution of disaster recovery testing and simulation exercises to validate effectiveness of recovery strategies and plans

  • Oversee crisis management coordination, including establishment of governance structures, escalation protocols, and communication processes for major incidents

  • Ensure alignment between resilience, incident response, and business continuity strategies

Metrics, Reporting & GRC Tooling

  • Establish and oversee cybersecurity metrics and reporting frameworks, including KPIs and KRIs, to measure program performance and risk posture

  • Provide regular reporting and insights to executive leadership and the board to support strategic decision-making

  • Oversee the design, implementation, and optimization of GRC tools and platforms to enable efficient risk, compliance, and control management

  • Leverage data analytics to drive transparency, prioritization, and continuous improvement across GRC functions

Cyber Training, Awareness & Culture

  • Support and oversee the enterprise-wide cybersecurity training and awareness programs to promote secure behaviors and risk awareness

  • Oversee role-based and executive training initiatives to ensure accountability and understanding of cybersecurity responsibilities

  • Direct phishing simulation programs and awareness campaigns to strengthen organizational resilience against social engineering threats

  • Promote continuous learning and capability development across cybersecurity and business teams

Stakeholder Engagement & Business Integration

  • Partner with business units, IT, legal, audit, and compliance teams to embed cybersecurity governance, risk, and compliance practices into business operations

  • Serve as a liaison between cybersecurity and enterprise stakeholders to ensure alignment on risk priorities and compliance requirements

  • Collaborate with security architecture and engineering teams to ensure solutions align with established security standards and policies

  • Drive consistent communication, reporting, and alignment across global cybersecurity and business teams

Talent Leadership & Program Maturity

  • Build and lead a global GRC organization with capabilities spanning risk management, compliance, resilience, third-party risk, and governance

  • Develop team capabilities through coaching, structured career development, and role-based training

  • Drive continuous improvement of GRC processes, frameworks, and tools to enhance program maturity and scalability

  • Establish succession planning and leadership development to sustain long-term organizational capability

Qualifications

  • 12+ years of progressive experience in cybersecurity, risk management, compliance, or information security leadership roles preferred

  • Demonstrated expertise in cybersecurity governance, risk management frameworks, regulatory compliance, and enterprise risk integration

  • Proven experience developing and leading enterprise-wide GRC programs, including risk assessment, compliance, and governance processes

  • Strong understanding of cybersecurity frameworks (e.g., NIST CSF, ISO 27001) and regulatory requirements

  • Demonstrated experience presenting to executive leadership, audit committees, and board members

  • Strong leadership, communication, and stakeholder management skills with the ability to influence across the organization

  • Experience serving in a senior cyber leadership role (e.g., VP, Head of GRC, or equivalent) reporting to a CISO, CIO or CRO

  • Demonstrated experience operating at the executive leadership level, driving strategic outcomes, influencing enterprise risk & governance, and tech compliance discussions with senior executives, boards and regulators

  • Experience in highly regulated industries (e.g., aviation, financial services, healthcare, or government)

  • Advanced degree (MBA, MS in Cybersecurity, Information Systems, or related field) preferred

  • Professional certifications such as CISSP, CISM, CRISC, CISA, or similar

  • Experience implementing or managing GRC platforms and enterprise risk tools

What is expected of you and others at this level

  • Provides leadership and direction for multiple operational units or disciplines through; Directors may manage Managers

  • Manages an organizational budget

  • Approves significant policies and procedures that will result in the achievement of organizational goals

  • Develops and implements functional and/or operational strategy

  • Decisions have a serious impact on overall success or failure on area of accountability and external stakeholders

  • Interacts with all levels of internal and/or external leaders

  • Influence senior level leaders regarding matters of significance

Anticipated salary range: $176,400 - $298,320

Bonus eligible: Yes

Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

  • Medical, dental and vision coverage

  • Paid time off plan

  • Health savings account (HSA)

  • 401k savings plan

  • Access to wages before pay day with myFlexPay

  • Flexible spending accounts (FSAs)

  • Short- and long-term disability coverage

  • Work-Life resources

  • Paid parental leave

  • Healthy lifestyle programs

Application window anticipated to close: 6/12/26 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here (

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the VP - Cybersecurity Governance, Risk & Compliance in Bismarck, ND vacancy
  • We are seeking an Expert Innovative Statistics Consultant to join our Strategic Consulting Practice . As a seasoned Biostatistician , you will leverage and expand Cytel's reputation for thought leadership and innovation by leading engagements for pharmaceutical...
    Suggested

    Cytel

    Bismarck, ND
    3 days ago
  •  ...AgHires is seeking a VP Ag Banker to join their team in Bottineau, North Dakota. This role involves initiating and managing agricultural banking relationships through proactive sales and community engagement. The ideal candidate will have 3–5 years of Ag Banking experience... 
    Suggested

    AgHires

    Bismarck, ND
    10 hours ago
  • $50 - $60 per hour

    1 day ago Be among the first 25 applicants We are looking for a VP Strategy & M&A to join our team to train AI models. You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of each model. In this role you will... 
    Suggested
    Hourly pay
    Full time
    Contract work
    Part time
    Remote work

    DataAnnotation

    Bismarck, ND
    4 days ago
  •  ...is designed to help people, providers, employers, health plans, government organizations, and communities optimize individual and population...  ...for everyone. To learn more, visit . Job Summary: The VP, Navigation & Member Services is responsible for leading Sharecare... 
    Suggested

    Sharecare

    Bismarck, ND
    1 day ago
  •  ...for the culture. What You'll Be Doing: The Vice President (VP), Cardiovascular Medicine is a key clinical executive...  ...several identity verification steps, including submission of a government issued photo ID. We conduct identity verification during interviews... 
    Suggested
    Work at office
    Immediate start
    Remote work

    Evolent

    Bismarck, ND
    20 hours ago
  •  ...VP of Strategic Accounts Company: Norstella Location: Remote, United States Date Posted: May 29, 2026 Employment Type: Full Time Job ID: R-1706 Description About NORSTELLA: Norstella is a premier and critical global life sciences data and AI solutions... 
    Full time
    Temporary work
    Local area
    Remote work
    Flexible hours

    Norstella

    Bismarck, ND
    4 days ago
  • $50 - $60 per hour

     ...DataAnnotation is committed to creating high-quality AI. We are looking for a VP Investor Relations to join our team to help train the next generation of AI while enjoying the flexibility of remote work and the freedom to set your own schedule. This role is designed to... 
    Hourly pay
    Full time
    Contract work
    Part time
    Work experience placement
    Remote work
    Flexible hours

    DataAnnotation

    Bismarck, ND
    4 days ago
  •  ...comprehensive services from study design through regulatory compliance and project delivery. The Opportunity We are...  ...compliance, analytics, and process improvements Participate in risk and quality governance across the portfolio Build cross-functional... 
    Remote work
    Worldwide

    PAREXEL

    Bismarck, ND
    3 days ago
  •  ...not require a clearance Company Overview GovCIO is a team of transformers--people who are passionate about transforming government IT. Every day, we make a positive impact by delivering innovative IT services and solutions that improve how government agencies... 
    Full time
    Currently hiring
    Remote work
    Flexible hours

    GovCIO

    Bismarck, ND
    2 days ago
  • $145.6k - $167.4k

     ...Champion adoption of Datavant's digital solutions, global workflows, and modernized operating models Proactively identify account risk and lead resolution of high-impact customer issues Translate operational performance into clear, value-based narratives for... 

    Datavant

    Bismarck, ND
    20 hours ago
  • $145.6k - $167.4k

     ...implementing standardized workflows across all assigned sites. The VP partners with Workforce Planning, NOC, Training, and...  ...standardization Ensure adherence to standardized workflows and compliance requirements across all sites Partner with Workforce Management... 
    Night shift

    Datavant

    Bismarck, ND
    20 hours ago
  • $200k - $250k

     ...Overview The VP, Payer & Partner Strategy is responsible...  ...enterprise growth initiatives across government and managed care ecosystems....  ..., scalability, exclusivity risk, and long-term growth...  ...employees must follow Help at Home cybersecurity and privacy policies, protect... 
    Work from home

    Help At Home

    Bismarck, ND
    1 day ago
  • $100k - $160k

     ...models and solutions are built with scalability, reliability, and compliance in mind, addressing ethical AI concerns and industry regulations...  ...for executing agents for AI use cases and coordinate with the VP, Prompt Writing to ensure timelines are met.Other activities as... 
    Full time
    Local area
    Remote work

    SitusAMC

    Bismarck, ND
    2 days ago
  • $320k - $365k

     ...Group. Reporting directly to the VP Diagnostics Solutions &...  ...global pricing strategy and governance framework to optimize revenue...  ...and international regulatory compliance, and enterprise objectives....  ...currency environments, mitigate FX risks, and ensure accurate,... 
    Contract work
    Local area
    Remote work
    Work from home
    Worldwide
    Flexible hours

    Danaher Corporation

    Bismarck, ND
    18 days ago
  •  ...and holds an opportunity for advancement Contact your local North Dakota banking recruiter, Joe Albert to learn more about this VP Ag/Commercial Loan Officer position and other banking opportunities throughout the state. Joe Albert Director | g... 
    Local area
    Flexible hours

    gpac

    Mandan, ND
    3 days ago
  •  ...consultative, in-person engagement. Develop and execute territory and account plans that identify expansion opportunities, competitive risks, and customer priorities. Champion the adoption of PagerDuty’s Operations Cloud to deliver tangible value and expand platform... 
    Local area
    Flexible hours

    PagerDuty

    Bismarck, ND
    4 days ago
  • $35 - $45 per hour

    Office Location: Bismarck, ND This is an opportunity to participate in establishing and expanding Apex Engineering Group's services in the region. The Survey Crew Chief will primarily lead survey crews in the field by providing topographic, boundary and construction...
    Hourly pay
    Temporary work
    For contractors
    Work at office
    Flexible hours

    Apex Engineering Group Inc

    Bismarck, ND
    4 days ago
  •  ...process. The Executive Director will oversee the organization's financial sustainability, manage financing programs, and ensure compliance with federal and state regulations while advocating for affordable financing initiatives. Key responsibilities for the Executive... 
    Local area

    Confidential

    Bismarck, ND
    3 days ago
  • We're looking for a Survey Crew Chief who's ready to take charge of field crews, deliver precise survey data, and keep projects running smoothly. If you're a hands-on leader who thrives outdoors and enjoys technical problem-solving, this role is for you! As a 100% employee...
    Work at office

    Moore Engineering

    Bismarck, ND
    4 days ago
  •  ...Applicants will be contacted by the LifeWise team with next steps. LifeWise Academy's hiring practices and EEO Statement are fully in compliance with both federal and state law. Federal law creates an exception to the "religion" section of employment discrimination laws for... 
    Local area

    LifeWise Academy

    Bismarck, ND
    1 day ago
  • $82.5k - $199.5k

    Job Description As the world's leading data management company, Oracle is pioneering innovative data solutions, offering customers a seamless experience across on-premises, hybrid, and fully Cloud-based deployment models. Data protection and recovery are essential...
    Temporary work
    Flexible hours

    Oracle

    Bismarck, ND
    5 days ago
  • $39.2k - $72.8k

     ..., hotel and car Express enthusiasm and energy within the organization and always act according to company Ethics, Values, and Compliance guidelines Act in accordance with all Amex GBT policies and procedures What We're Looking For ~ In depth knowledge of domestic... 
    Immediate start
    Monday to Friday
    Flexible hours
    Shift work

    American Express Global Business Travel

    Bismarck, ND
    2 days ago
  • $16 - $18 per hour

    Job Description Job Description Are you looking for an exciting opportunity to showcase your leadership skills and make a direct impact on the success of a high-performing team? Look no further! IHop, a leading player in the restaurant industry, is seeking a talented...
    Hourly pay
    Full time

    IHOP 1730 Orem

    Bismarck, ND
    a month ago
  • Executive Support Specialist The Executive Support Specialist serves the University of Mary's Executive Services by providing comprehensive administrative, logistical, and hospitality support that advances the strategic priorities of the University, including Vision...
    Work at office
    Immediate start

    University of Mary

    Bismarck, ND
    2 days ago
  • $184.4k - $394.6k

     ...change in healthcare. Responsibilities Requirements: US Citizenship is required with an ability to obtain and maintain a government security clearance. Extensive travel required; must be willing and able to travel ~80% Preferred Qualifications: ~10 or... 
    Temporary work
    Work experience placement
    Flexible hours

    Oracle

    Bismarck, ND
    1 day ago
  • $82.5k - $199.5k

     ...environments is preferred Knowledge of data privacy and compliance requirements within healthcare settings is advantageous Preferred...  ...smooth launch of new agent capabilities. Compliance & Risk Awareness: Ensure that Clinical AI Agents meet healthcare... 
    Temporary work
    Worldwide
    Flexible hours

    Oracle

    Bismarck, ND
    1 day ago
  • $82.5k - $199.5k

     ...flows Serve as the single product owner for identity alignment across EES - synthesizing requirements from security, HR, legal, compliance, and business units into a coherent, prioritized roadmap Author detailed product requirements documents (PRDs), user stories,... 
    Temporary work
    Flexible hours

    Oracle

    Bismarck, ND
    3 days ago
  • $100k - $215k

     ...Conditions and close deals. Participate in Sales Team meetings related to assigned brokers and / or territory Measure exposure/analyze risk and pricing on new business. Willingness to travel 20% including international travel roughly twice a year Executive... 
    Full time
    Temporary work
    Apprenticeship
    Currently hiring
    Work at office
    Local area
    Remote work
    Visa sponsorship
    Flexible hours
    3 days per week

    Zurich NA

    Bismarck, ND
    1 day ago
  • $50 - $60 per hour

    Join to apply for the Chief Investment Officer role at DataAnnotation We are looking for a Chief Investment Officer to join our team to train AI models. You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality...
    Hourly pay
    Full time
    Contract work
    Part time
    Remote work

    DataAnnotation

    Bismarck, ND
    4 days ago
  • $115.4k - $251.6k

    Job Description Oracle Cloud Infrastructure (OCI) delivers mission-critical applications for top tier enterprises around the world. Our cloud offers unmatched hyper-scale, multi-tenant services deployed in more than 50 regions worldwide. OCI is expanding its mission...
    Temporary work
    Work experience placement
    Worldwide
    Flexible hours
    Shift work

    Oracle

    Bismarck, ND
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to VP - Cybersecurity Governance, Risk & Compliance. Be the first to apply!