Director, Cyber Compliance (Information Security)

Cardinal Health

Confirmed live yesterday High trust
Remote

Quick summary

Work type
Remote
Location
Remote
Salary
$137,400–$232,320 / yr
Posted
3 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $191k
This role $185k
$126k most similar roles pay here $244k

This role pays less than 51% of similar roles. Most pay $156,600–$226,350 — the shaded band above. At the midpoint, this role pays about $185k versus about $191k for comparable roles.

Based on 239 similar postings.

Employer

About Cardinal Health

Cardinal Health is a global healthcare services and products company specializing in pharmaceutical distribution, medical products, and supply chain solutions for healthcare providers and pharmacies. Industry: Healthcare Distribution & Services

Cardinal Health currently has 36 open roles on FindRole.

Listed pay typically runs $94,900–$135,600 across 32 roles with salary data.

Most-posted roles

View all roles at Cardinal Health

At a glance

TL;DR · Director, Cyber Compliance (Information Security)

The Director, Cyber Compliance (Information Security) joins the Information Security and Risk team to establish, lead, and continuously manage the cybersecurity compliance program. This leader is responsible for designing and executing compliance frameworks, overseeing regulatory audits, and managing internal and external assessments. The role involves ensuring adherence to various standards including SOX, HIPAA, PCI, GDPR, CMMC, and specialized domains like FDA GxP. Day-to-day responsibilities include developing assessment programs, identifying compliance gaps, monitoring risk indicators, and providing expert guidance to IT, legal, and business teams. The candidate will utilize expertise in NIST CSF and ISO 27001 frameworks to protect technology assets from unauthorized modification or disclosure. This position solves the critical challenge of aligning complex regulatory requirements with internal security policies to ensure secure operations within a highly regulated healthcare environment.

What you'll do

  • Develop and lead a cybersecurity compliance program aligned with regulatory requirements, risk frameworks, and business objectives.
  • Establish governance structures, processes, and accountability models to ensure consistent execution of compliance activities across the organization.
  • Manage compliance for specific regulations including SOX, HIPAA, PCI, GDPR, and FDA GxP.
  • Oversee internal and external audits, providing necessary documentation, evidence, and subject matter expertise.
  • Identify compliance gaps and partner with stakeholders to develop and execute remediation plans.
  • Monitor regulatory changes and emerging requirements to proactively update compliance programs and controls.
  • Build and lead a high-performing cybersecurity compliance team through coaching, training, and career development.
  • Report compliance metrics, audit outcomes, and remediation progress to executive leadership.

What we're looking for

  • Ideally targeting individuals with 8+ years of experience in cybersecurity compliance, risk management, or information security.
  • Strong expertise in cybersecurity compliance frameworks, regulatory requirements, and audit processes.
  • Experience leading compliance programs, including internal and external assessments, audit management, and remediation efforts.
  • Strong understanding of cybersecurity frameworks such as NIST CSF and ISO 27001.
  • Knowledge of regulatory requirements including SOX, HIPAA, GDPR, and PCI.
  • Demonstrated ability to collaborate with cross-functional teams and influence stakeholders across the organization.
  • Experience in a people leader role overseeing cybersecurity compliance or GRC functions (preferred).
  • Experience in highly regulated industries, professional certifications (CISSP, CISM, CRISC, CISA), or specialized domains like FDA GxP or CMMC (preferred).

More like this

Similar roles

Director, Cyber Risk Services (Information Security)

Cardinal Health

Remote 3 days ago $137,400$232,320
Cybersecurity Risk Management GRC NIST CSF ISO 27001 Third-Party Risk Management (TPRM) Enterprise Risk Management (ERM) Risk Assessment KPIs KRIs Information Security Compliance Audit
8+ yrs exp Remote

Director, IT Governance, Risk, Compliance & AI

General Dynamics

Scottsdale, AZ +1 24 days ago $201,481$218,009
NIST CMMC DFARS SOX COBIT ITIL ISO 27001 AI Governance Cybersecurity Risk Management Data Governance Cloud Governance Change Management Configuration Management Vulnerability Management Audit Coordination
10+ yrs exp Hybrid

Cyber Compliance Oversight Manager

3M

Maplewood, MN +1 3 days ago $164,612$201,193
ISO 27001 NIST CSF SOX PCI CMMC TISAX SWIFT CISSP CISA CISM Cybersecurity Compliance Monitoring Control Assessment Audit Project Management SLAs KPIs
5+ yrs exp

Director, Cybersecurity

LogicGate

Chicago, IL +1 2 days ago $190,000$240,000
SOC 2 ISO 27001 FedRAMP ISO 42001 CNAPP EDR SASE Zscaler CrowdStrike GitLab Wiz LLM AI Incident Response Vulnerability Management Security Architecture GRC SaaS
7+ yrs exp

Senior Cybersecurity Compliance Lead Consultant

Blue Cross Blue Shield Association (BCBSA)

Chicago, IL 14 days ago $157,600$228,550
FedRAMP NIST Cybersecurity Framework ISO 27001 AI Generative AI Cloud Security Risk Management Project Management Change Management HIPAA/HITECH EU DPD Continuous Monitoring Audit Readiness
10+ yrs exp

Cyber Security Compliance Liaison

Micron Technology

Boise, ID 30 days ago
ISO 27001 NIST CSF TISAX NIS2 SOX ITGC Cyber Resilience Act ISO 21434 ServiceNow Workiva AuditBoard OneTrust SharePoint Microsoft Purview Vulnerability Management Cloud Security Infrastructure Security Security Operations Incident Response Threat Intelligence
7+ yrs exp