logo
Banner with Overlay
St Louis, MO, US
1 day ago
Apply Now
Managing Director, Deputy CISO- Evernorth Health Services
St Louis, MO, US
1 day ago
Apply Now

Company: Evernorth

Overview

The Managing Director, Deputy CISO for Evernorth is a dynamic executive role within Cigna’s Information Protection organization. This position provides comprehensive oversight of cyber risk across the Evernorth business, including cyber operations, governance, risk, and compliance. It also encompasses cybersecurity oversight during mergers, acquisitions, divestitures (M&A&D), and integration within the Evernorth business line. This role is crucial for embedding security into the evolving business, managing risk, and ensuring robust governance and security operations for all business entities in the Evernorth portfolio.

The ideal candidate will be a transformative leader, capable of driving organizational change in structure, talent, technology, and processes to manage risk effectively while staying current with the evolving threat landscape. Building strong relationships with business leaders across the enterprise is essential for success in this highly visible leadership role.

Responsibilities

  • Security Operations Management: Oversee security operations for Evernorth entities, ensuring compliance with Cigna’s global cybersecurity standards throughout the integration lifecycle.
  • Strategic Integration: Develop and maintain a strategy for secure business integrations in collaboration with shared service teams, business leadership, and technology teams.
  • Risk and Compliance: Ensure risk and compliance for Evernorth entities, adhering to Cigna’s global risk management and evolving to federal and local regulations.
  • Centralized Cyber Services: Partner with the broader cybersecurity organization to establish best-in-class approaches, centralize core cyber services, and deliver security outcomes aligned with business needs, while providing governance oversight.
  • M&A Cybersecurity Leadership: Lead the risk and security program governance for all Evernorth acquisitions and non-integrated entities throughout the acquisition and integration lifecycle to ensure continuity in meeting customer and regulatory obligations.
  • Executive Collaboration: Maintain relationships with executive leaders to ensure cybersecurity is engaged as a strategic risk management function.
  • Continuous Improvement: Promote a culture of continuous improvement to streamline and enhance existing operations, risk management, compliance, and acquisition processes.
  • Team Development: Build and grow a diverse team of cybersecurity experts through recruiting, professional development, and coaching, in alignment with the company’s core values, to drive the organization to a higher level of performance.
  • Enterprise Contribution: Leverage a “defense in depth” framework and actively contribute to the Enterprise CISO Council (ECC), using best practices to improve overall cyber maturity and posture across the enterprise.

Required Skills

  • A bachelor’s degree is required, an MBA desirable. CISSP and/or other security certifications are desirable.
  • 10+ years of professional experience including cybersecurity, infrastructure and/or application leadership experience.
  • 7+ years of leadership experience leading productive, high functioning teams.
  • Strong expertise in security operations, global governance of risk and compliance, preferably with experience in a fortune 500 healthcare organization.
  • Proven ability to develop and execute security strategy and roadmap solutions..
  • Understanding of risk management life cycles in the data center and cloud environments.
  • Strong relationship skills with the ability to build trusted, productive partnerships between technology, business leaders and external partners.
  • Agility in dealing with a constantly changing business environment and areas of ambiguity.
  • Strong leadership presence with the energy, focus, and stature to excel. Demonstrates optimism and determination when facing challenges.
  • Healthcare security background and understanding of regulatory standards is preferred (HIPAA, GDPR, PCI).
  • Familiarity with IT and Cybersecurity frameworks (NIST, ISO, HTRUST, COBIT, ITIL, FIPS).
  • Knowledge of enterprise architecture related frameworks (e.g., TOGAF, SABSA, OSA, etc.)

If you will be working at home occasionally or permanently, the internet connection must be obtained through a cable broadband or fiber optic internet service provider with speeds of at least 10Mbps download/5Mbps upload.

For this position, we anticipate offering an annual salary of 199,700 - 332,900 USD / yearly, depending on relevant factors, including experience and geographic location.

This role is also anticipated to be eligible to participate in an annual bonus and long term incentive plan.

We want you to be healthy, balanced, and feel secure. That’s why you’ll enjoy a comprehensive range of benefits, with a focus on supporting your whole health. Starting on day one of your employment, you’ll be offered several health-related benefits including medical, vision, dental, and well-being and behavioral health programs. We also offer 401(k) with company match, company paid life insurance, tuition reimbursement, a minimum of 18 days of paid time off per year and paid holidays. For more details on our employee benefits programs, visit Life at Cigna Group.

About Cigna Healthcare

Cigna Healthcare, a division of The Cigna Group, is an advocate for better health through every stage of life. We guide our customers through the health care system, empowering them with the information and insight they need to make the best choices for improving their health and vitality. Join us in driving growth and improving lives.

Qualified applicants will be considered without regard to race, color, age, disability, sex, childbirth (including pregnancy) or related medical conditions including but not limited to lactation, sexual orientation, gender identity or expression, veteran or military status, religion, national origin, ancestry, marital or familial status, genetic information, status with regard to public assistance, citizenship status or any other characteristic protected by applicable equal employment opportunity laws.

If you require reasonable accommodation in completing the online application process, please email: SeeYourself@cigna.com for support. Do not email SeeYourself@cigna.com for an update on your application or to provide your resume as you will not receive a response.

The Cigna Group has a tobacco-free policy and reserves the right not to hire tobacco/nicotine users in states where that is legally permissible. Candidates in such states who use tobacco/nicotine will not be considered for employment unless they enter a qualifying smoking cessation program prior to the start of their employment. These states include: Alabama, Alaska, Arizona, Arkansas, Delaware, Florida, Georgia, Hawaii, Idaho, Iowa, Kansas, Maryland, Massachusetts, Michigan, Nebraska, Ohio, Pennsylvania, Texas, Utah, Vermont, and Washington State.
Show More
largely logo
Powered by Largely