Director, IT Security Risk

R1 RCM

Confirmed live today High trust
Remote

Quick summary

Work type
Remote
Location
Remote
Salary
$122,366–$178,767 / yr
Employment
Full-time
Posted
6 days ago
Freshness
Confirmed live today

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $208k
This role $151k
$107k most similar roles pay here $264k

This role pays less than 86% of similar roles. Most pay $169,687–$246,225 — the shaded band above. At the midpoint, this role pays about $151k versus about $208k for comparable roles.

Based on 240 similar postings.

Employer

About R1 RCM

R1 RCM is a leading provider of technology-driven revenue cycle management services to healthcare organizations, helping hospitals and health systems improve financial performance and patient experience. Industry: Healthcare Revenue Cycle Management

View all roles at R1 RCM

At a glance

TL;DR · Director, IT Security Risk

As Director, IT Security Risk, you will lead cybersecurity governance, risk, and compliance capabilities to protect information assets and infrastructure within a global healthcare organization. Reporting to the Deputy CISO, you will manage a team across the US and India while owning critical programs including third-party cyber risk, customer inquiries, risk exceptions, and the cyber risk register. You will build and mature scalable governance capabilities by developing procedures, documentation, and automated workflows. The role requires collaborating with internal teams like Product Development and Procurement to address regulatory requirements and security standards. Essential qualifications include a Bachelor’s degree, over ten years of cybersecurity experience, and at least five years in people management. Preferred credentials include CISM certification and CISSP or other risk certifications, specifically within highly regulated industries such as healthcare or financial services.

What you'll do

  • Develop and execute the strategy for assessing and mitigating third-party and supplier cybersecurity risks.
  • Lead, mentor, and manage a global team of security professionals across US and India locations.
  • Oversee responses to customer cybersecurity questionnaires, risk assessments, and the maintenance of the cyber risk register.
  • Build and mature scalable governance and third-party risk capabilities through standardized procedures and automation.
  • Partner with internal business leaders and external customers to address time-sensitive cybersecurity inquiries and requirements.
  • Translate complex cybersecurity risks into clear business impacts and metrics for senior management reporting.
  • Ensure all programs align with regulatory requirements, industry standards, and corporate security policies.

What we're looking for

  • Bachelor’s degree or an equivalent combination of education and relevant experience.
  • 10+ years of cybersecurity, technology risk, governance, risk and compliance, or related experience.
  • At least five years of experience in a people-management role.
  • Demonstrated experience leading cyber GRC programs with significant responsibility for third-party risk management.
  • Experience managing customer cybersecurity questionnaires, risk assessments, exceptions, and risk-register processes.
  • Experience leading and developing teams across geographies, including US- and India-based employees.
  • Ability to translate cybersecurity risk into clear business impact, metrics, and executive-level reporting.
  • CISM certification required; CISSP or other relevant certifications are preferred (preferred).

More like this

Similar roles

Senior Director, Cyber Third-Party Risk Management

McDonald’s Corporation

Chicago, IL 1 day ago $237,102–$296,377
Third-Party Risk Management (TPRM) Cybersecurity Threat Modeling Penetration Testing Vulnerability Assessment Automation Continuous Monitoring NIST CSF ISO 27001 GDPR CCPA CISSP CISM CRISC CISA
10+ yrs exp

Director, IT Governance, Risk, Compliance & AI

General Dynamics

Scottsdale, AZ +1 39 days ago $201,481–$218,009
NIST CMMC DFARS SOX COBIT ITIL ISO 27001 AI Governance Cybersecurity Risk Management Data Governance Cloud Governance Change Management Configuration Management Vulnerability Management Audit Coordination
10+ yrs exp Hybrid

Director, Security Architecture

Cardinal Health

18 days ago $154,400–$261,250
Security Architecture NIST CSF ISO 27001 SABSA TOGAF CISSP CCSP DevSecOps Cloud Security Risk Management Incident Response Disaster Recovery Secure Design Data Security
10+ yrs exp

Director, Cybersecurity

LogicGate

Chicago, IL +1 18 days ago $190,000–$240,000
SOC 2 ISO 27001 FedRAMP ISO 42001 CNAPP EDR SASE Zscaler CrowdStrike GitLab Wiz LLM AI Incident Response Vulnerability Management Security Architecture GRC SaaS
7+ yrs exp

Senior Director, IT Governance and Security Controls

The Coca‑Cola Company

Atlanta, GA 5 days ago $202,000–$229,000
SOX ITGC GRC SAP Artificial Intelligence Data Analytics Risk Management Audit PCAOB User Access Reviews Segregation of Duties Privileged Access Management Continuous Controls Monitoring Agile CISA CPA CRISC CISM
10+ yrs exp

Senior Manager, GRC Strategy & AI

TransUnion

Chicago, IL +3 4 days ago $142,500–$237,500
NIST Cybersecurity Framework ISO/IEC 27001 COBIT CIS Controls FFIEC PCI DSS SOX Microsoft 365 Power BI Artificial Intelligence Workflow Automation Data Analysis Lean Six Sigma Cybersecurity Governance Risk Management Compliance Information Security
10+ yrs exp Hybrid