{"21416693":{"jobPath":"/jobs/21416693/office-associate-ii-medical-record-governance-am-040","source":"naylor","job":"21416693","jobTitle":"Office Associate II - Medical Record Governance - AM (040)"},"21415560":{"jobPath":"/jobs/21415560/it-support-technician-iv","source":"naylor","job":"21415560","jobTitle":"IT Support Technician IV"},"21418152":{"jobPath":"/jobs/21418152/it-project-manager","source":"naylor","job":"21418152","jobTitle":"IT Project Manager"},"21418932":{"jobPath":"/jobs/21418932/information-technology-project-manager-ii-ent","source":"naylor","job":"21418932","jobTitle":"Information Technology Project Manager II - ENT"},"21417224":{"jobPath":"/jobs/21417224/campus-security-public-safety-officer","source":"naylor","job":"21417224","jobTitle":"Campus Security/Public Safety Officer"},"21417323":{"jobPath":"/jobs/21417323/information-technology-consultant-career","source":"naylor","job":"21417323","jobTitle":"Information Technology Consultant - Career"},"21419568":{"jobPath":"/jobs/21419568/museum-security-guard-part-time","source":"naylor","job":"21419568","jobTitle":"Museum Security Guard (Part-Time)"},"21415621":{"jobPath":"/jobs/21415621/executive-director-animal-health-diagnostic-center-associate-dean-for-diagnostic-operations-government-relations","source":"naylor","job":"21415621","jobTitle":"Executive Director, Animal Health Diagnostic Center Associate Dean for Diagnostic Operations & Government Relations"},"21400292":{"jobPath":"/jobs/21400292/compliance-and-risk-specialist-third-party-regulatory-oversight-issue-management-risk-and-control","source":"naylor","job":"21400292","jobTitle":"Compliance and Risk Specialist, Third Party Regulatory Oversight, Issue Management, Risk and Control"},"21165519":{"jobPath":"/jobs/21165519/senior-it-audit-manager","source":"naylor","job":"21165519","jobTitle":"Senior IT Audit Manager"},"21388183":{"jobPath":"/jobs/21388183/chief-audit-executive-audit-and-consulting-services","source":"naylor","job":"21388183","jobTitle":"Chief Audit Executive, Audit and Consulting Services"},"21353989":{"jobPath":"/jobs/21353989/senior-engineer-it-privacy-compliance-program-lead","source":"naylor","job":"21353989","jobTitle":"Senior Engineer, IT Privacy Compliance Program Lead"},"21365526":{"jobPath":"/jobs/21365526/it-internal-auditor","source":"naylor","job":"21365526","jobTitle":"IT Internal Auditor"},"21419594":{"jobPath":"/jobs/21419594/it-support-specialist","source":"naylor","job":"21419594","jobTitle":"IT Support Specialist"},"21414085":{"jobPath":"/jobs/21414085/senior-research-analyst-center-for-security-and-emerging-technology-walsh-school-of-foreign-service","source":"naylor","job":"21414085","jobTitle":"Senior Research Analyst, Center for Security and Emerging Technology - Walsh School of Foreign Service"},"21416225":{"jobPath":"/jobs/21416225/sr-principal-specialist-risk-management","source":"naylor","job":"21416225","jobTitle":"Sr. Principal Specialist, Risk Management"},"21415532":{"jobPath":"/jobs/21415532/it-instructional-technology-desktop-support-specialist","source":"naylor","job":"21415532","jobTitle":"IT Instructional Technology & Desktop Support Specialist"},"21415113":{"jobPath":"/jobs/21415113/manager-of-information-security","source":"naylor","job":"21415113","jobTitle":"Manager of Information Security"},"21345612":{"jobPath":"/jobs/21345612/ict-physical-security-senior-design-consultant","source":"naylor","job":"21345612","jobTitle":"ICT/Physical Security Senior Design Consultant"},"21415156":{"jobPath":"/jobs/21415156/community-safety-and-security-coordinator","source":"naylor","job":"21415156","jobTitle":"Community Safety and Security Coordinator"},"21414166":{"jobPath":"/jobs/21414166/it-portfolio-manager-operations","source":"naylor","job":"21414166","jobTitle":"IT Portfolio Manager - Operations"},"21289422":{"jobPath":"/jobs/21289422/it-lead-auditor","source":"naylor","job":"21289422","jobTitle":"IT Lead Auditor"},"21414954":{"jobPath":"/jobs/21414954/audit-assurance-manager","source":"naylor","job":"21414954","jobTitle":"Audit & Assurance Manager"},"21411806":{"jobPath":"/jobs/21411806/executive-director-of-operations-chief-of-staff-office-of-government-affairs","source":"naylor","job":"21411806","jobTitle":"Executive Director of Operations & Chief of Staff ? Office of Government Affairs"},"21365794":{"jobPath":"/jobs/21365794/senior-manager-it-audit","source":"naylor","job":"21365794","jobTitle":"Senior Manager IT Audit"}}
Senior Engineer, IT Privacy Compliance Program Lead
Cardinal Health
Application
Details
Posted: 23-May-25
Location: United States - Nationwide
Internal Number: 20160741
Cardinal Health Overview:
Headquarters in Dublin, Ohio, Cardinal Health, Inc. (NYSE: CAH) is a distributor of pharmaceuticals, a global manufacturer and distributor of medical and laboratory products, and a provider of performance and data solutions for health care facilities.
We are a crucial link between the clinical and operational sides of care, working with more than 4,500 sourcing and manufacturing partners to deliver end-to-end solutions and data-driven insights that advance healthcare and improve lives every day. With deep partnerships, diverse perspectives, and innovative digital solutions, we build connections across the continuum of care.
With 50 years of experience, approximately 44,000 employees and operations in more than thirty countries, Cardinal Health seizes the opportunity to address healthcare?s most complicated challenges - now, and in the future.
Department Overview:
Information Security and Risk Management (ISRM) at Cardinal Health enables Cardinal Health to securely deliver healthcare products and solutions that improve the lives of people every day by ensuring security and controls is embedded into Cardinal Health?s people, process, and technology.
We currently have a career opening for a Sr. Engineer, Information Security and Risk, who will play a Program Lead role focused on driving IT Privacy Compliance for the organization.
Job Overview:
This role is a leader position within the team and requires having an in-depth understanding of local, national and international privacy and security regulations such as HIPAA (Health Insurance Portability and Accountability Act), GDPR (General Data Protection Regulation) and the CCPA (California Consumer Privacy Act) as well as relevant control frameworks to drive compliance to those regulatory requirements, while working with members of the Information Security and Risk Management team as well as privacy leaders in Legal, Ethics & Compliance and our various businesses throughout the Cardinal Health enterprise. Senior Engineer will be responsible for assessing current IT Privacy Compliance Program, while building and implementing a roadmap to enhance it to drive IT Privacy Compliance throughout the organization.
Accountabilities:
Lead the IT Privacy Compliance Program as a "Second Line of Defense" function.
Stay current on privacy regulatory requirements and assess impact on the organization, while implementing how to comply with the impacted requirements.
Perform current-state assessments to identify and implement enhancement to the program to address local, national, and international IT privacy and data protection requirements (both regulatory and contractual)
Implement a risk-based approach to performing IT Privacy Compliance Assessments.
Build and implement metrics to report on effectiveness of the IT Privacy Compliance Program
Partner with Legal counsel and Ethics & Compliance leaders to address regulatory or compliance requirements, issues, concerns, or questions.
Partner with IT and IT Security in the development of policies, procedures, and practices in support of privacy and data protection compliance.
Partner with a peer on privacy by design implementation for the organization.
Identify opportunities to automate various privacy and data protection compliance activities to reduce the overall cost of compliance.
Lead IT Privacy Compliance team on building, running, and managing the program success, while addressing challenges and opportunities.
Mentor members of the team on how to effectively perform compliance assessments, track and manage issues, build and report on metrics and continue to mature the program.
Effectively manage and implement changes throughout the organization.
Qualifications:
Bachelor?s Degree in related field or equivalent work experience
10+ years? experience in related field preferred
Prior experience with key IT Privacy regulation compliance including HIPAA and GDPR compliance.
Prior experience with control frameworks (e.g., NIST, HITRUST, COBIT, COSO, and ISO) to drive IT Privacy regulatory compliance.
Prior experience working with Internal or External Audit functions are a plus.
Prior experience with GRC (Governance, Risk and Compliance)
Experience with IT risk and controls identification and assessments including IT control design and effectiveness testing.
Experience in analyzing data and creating reports/dashboards/views to provide visibility into risk and control landscape.
An ideal candidate will have excellent communication skills (both verbal and written) with leaders at all levels within the organization, an ability to work in a matrixed environment to drive results, and the ability to clearly define and execute repeatable processes.
An ideal candidate will have effective time management, active listening, meeting facilitation, and influencing skills.
The ability to effectively navigate a variety of challenging environments, prioritize work and determine when to escalate to upper management.
Security, compliance, or risk certifications such as CIPT (Certified Information Privacy Technologist), CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional) and/or CIPP (Certified Information Privacy Professional) certifications are a plus.
Anticipated salary range:$121,600 - $173,700
Bonus eligible:Yes
Benefits:Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
Medical, dental and vision coverage
Paid time off plan
Health savings account (HSA)
401k savings plan
Access to wages before pay day with myFlexPay
Flexible spending accounts (FSAs)
Short- and long-term disability coverage
Work-Life resources
Paid parental leave
Healthy lifestyle programs
Application window anticipated to close:6/25/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate?s geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.
Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.
Headquartered in Dublin, Ohio, Cardinal Health, Inc. (NYSE: CAH) is a distributor of pharmaceuticals, a global manufacturer and distributor of medical and laboratory products, and a provider of performance and data solutions for healthcare facilities.We are a crucial link between the clinical and operational sides of healthcare, delivering end-to-end solutions and data-driving insights that advance healthcare and improve lives every day. With deep partnerships, diverse perspectives and innovative digital solutions, we build connections across the continuum of care. With more than 50 years of experience, we seize the opportunity to address healthcare's most complicated challenges – now, and in the future.As a global, growing company, we’re able to offer rewarding careers that let you make a positive impact on our customers and communities.