Boston Medical Center (BMC) Logo

Boston Medical Center (BMC)

Manager Cybersecurity Program

Posted 25 Days Ago
Be an Early Applicant
Boston, MA
Senior level
Boston, MA
Senior level
The Manager, Cybersecurity Program oversees cybersecurity risk management, ensuring compliance and effectiveness of initiatives while managing a team of analysts.
The summary above was generated by AI

POSITION SUMMARY:

The Manager, Cybersecurity Program is responsible for overseeing, coordinating, and implementing cybersecurity risk management initiatives to help protect the organization’s information and infrastructure assets. This role involves managing multiple cybersecurity risk assessments and audits, security policy development, compliance initiatives, and incident response plans, ensuring they align with the organization's overall cybersecurity strategy. The Manager works closely with the CISO and cross-functional teams, including ITS, Privacy, Compliance, Legal, and Risk Management, to coordinate resources, track risk mitigation progress, and report on key security metrics. Additionally, they ensure that cybersecurity risk initiatives are adhering to regulatory and organizational security standards. Finally, the Manager, Cybersecurity Program will directly supervise a team of cybersecurity analysts. The role requires a strong blend of project management expertise, knowledge of cybersecurity frameworks, and excellent documentation and communication skills to drive effective cybersecurity policies and practices across the organization.

Position: Manager Cybersecurity Program       

Department: Information Technology

Schedule: Full Time

ESSENTIAL RESPONSIBILITIES / DUTIES:

The Manager, Cybersecurity Program is responsible for managing a team of cybersecurity analysts to assist in overseeing and safeguarding an organization’s cybersecurity posture utilizing Cybersecurity Frameworks and controls. The position will work closely with The Chief Information Security Officer and other key cybersecurity and ITS leaders in developing and implementing the following:

  • Developing and Implementing Cybersecurity Strategy
    The Manager, Cybersecurity Program will help to formulate a comprehensive cybersecurity strategy aligned with organizational objectives. They will create and maintain policies, standards, and guidelines to manage cybersecurity risks across the organization.
  • Risk Management and Compliance
    The Manager, Cybersecurity Program will oversee risk management programs, assessing and managing risks related to cybersecurity. They ensure compliance with relevant legal and regulatory requirements (e.g. HIPAA, PCI), industry standards, and internal policies.
  • Collaboration with Stakeholders
    The Manager, Cybersecurity Program collaborates closely with other executives, particularly the privacy and compliance departments, to align security initiatives with the organization's strategic goals. They also work with external stakeholders, such as regulators and auditors, to ensure the organization is aligned on security practices.
  • Overseeing Cybersecurity Risk Management Operations
    The Manager, Cybersecurity Program is responsible for overseeing day-to-day security operations, such as 3rd party cyber risk monitoring, threat detection, and vulnerability management. They ensure that effective preventive and detective controls are in place.
  • Security Awareness and Training
    The Manager, Cybersecurity Program promotes a culture of security awareness within the organization. They develop and lead security training and awareness programs to educate employees on best practices and potential threats.
  • Monitoring Emerging Threats
    Staying ahead of evolving threats and trends is critical. The Manager, Cybersecurity Program will monitor the cybersecurity risk landscape, assess new threats, and update the organization’s cybersecurity documentation accordingly.
  • Policy Development and Governance
    The Manager, Cybersecurity Program drafts and enforces cybersecurity policies, including appropriate use of technology, data protection, access control, and incident reporting. They help oversee governance frameworks that define roles, responsibilities, and accountability for security within the organization.

The Manager, Cybersecurity Program role requires a balance of meticulous documentation, strategic vision, and leadership to assist in advancing the organization’s cybersecurity program.

Recommends risk management enhancements to the CISO.

Performs other duties as assigned or as necessary.

Adheres to all of BMC’s RESPECT behavioral standards

(The above statements in this job description are intended to depict the general nature and level of work assigned to the employee(s) in this job. The above is not intended to represent an exhaustive list of accountable duties and responsibilities required).

JOB REQUIREMENTS

EDUCATION:

  • Bachelor’s degree in Computer Science, or related discipline, or equivalent experience, required

CERTIFICATES, LICENSES, REGISTRATIONS REQUIRED:

  • CISSP Required.

  • CISM or CISA also Preferred

EXPERIENCE:

  • Minimum of 5 years of Information Security and Cybersecurity related experience is required for this position.

  • 3-5 years of supervisory experience required.

  • Demonstrated experience with Cybersecurity Risk Management and Enterprise Security Frameworks is required

KNOWLEDGE, SKILLS & ABILITIES (KSAs):

  • Ability to translate complex security requirements into sustainable security documentation.
  • Strong managerial skills.
  • Excellent communications skills including facilitating presentations.
  • Excellent analytical skills and the ability to define problems, collect data, establish facts, and draw conclusions.
  • Excellent organization skills; someone who thrives in a dynamic and ever-changing environment.
  • The ability to express issues and communicate well with various vendors and their operations personnel.
  • A strong understanding of risk management fundamentals.
  • Ability to prioritize projects and workload independently.
  • Works and manages initiatives of moderate to advanced complexity under minimal supervision.
  • Ability to multitask and shift priorities when necessary.

Equal Opportunity Employer/Disabled/Veterans

Top Skills

Cybersecurity Frameworks
Risk Management
HQ

Boston Medical Center (BMC) Boston, Massachusetts, USA Office

One Boston Medical Center Place, Boston, MA, United States, 02118

Similar Jobs

Yesterday
Easy Apply
Hybrid
9 Locations
Easy Apply
Junior
Junior
Healthtech • Other • Sales • Software • Analytics • Conversational AI
The Customer Technical Support Engineer provides technical support for a SaaS product, troubleshooting issues, managing cases, and collaborating with teams to ensure customer satisfaction.
Top Skills: AWSCloud-Based SolutionsHl7JIRAPostmanSaaSSalesforce
Yesterday
Hybrid
3 Locations
149K-190K Annually
Mid level
149K-190K Annually
Mid level
Artificial Intelligence • Cloud • Software • Cybersecurity
As a Detection Engineer II, you will develop security detection content, enhance threat detection across corporate IT datasets, and drive innovative tooling to improve processes.
Top Skills: GoLinuxmacOSPython
Yesterday
Hybrid
2 Locations
187K-240K Annually
Mid level
187K-240K Annually
Mid level
Artificial Intelligence • Cloud • Software • Cybersecurity
As an Engineering Manager in the Red Team, you will lead and mentor a team, execute red-team exercises, enhance operational preparedness, and drive systemic improvements in security.
Top Skills: Distributed SystemsNetworkingPentestingPurple Team OperationsRed TeamingSecurity Fundamentals

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account