NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs / Compliance Manager in United States of America
10 days ago
Apply with autofill
Apply with autofill
Cardinalhealth·10 days ago
10 days ago

Manager, Infrastructure Governance

OH-Ohio-Work from HomeRemoteMid · 5-10 yearsCompliance Manager

Sign up free to see how well your resume matches this role.

Boost your chances at cardinalhealth

How you compare FREE

?
Your scoreYour score: not yet known
→
20
Top 10%Top 10%: 20 out of 100

Top 10% of NextRaise users matched against Compliance Manager roles in United States.

Must-have skills for this role

  • gcp
  • azure
  • aws
  • cspm

PDF or DOCX · no account needed

Apply faster with autofill FREEThe NextRaise extension autofills your application in one click.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Lead and mentor a high-performing team of Cloud Engineers, fostering professional growth and establishing a culture of proactive exposure management.
  • Drive team evolution by expanding the governance scope beyond Cloud Security Posture Management (CSPM) and firewall rule monitoring into comprehensive security policy enforcement, vulnerability, data, and application security management.
  • Champion Automation & AI to deliver real-time compliance results, reduce manual verification cycles, and accelerate auto-remediation of cloud risks.
  • Govern Firewall Rule Policies to guarantee alignment with network standards, and direct the rule certification program for all in-scope firewalls.
  • Oversee CSPM & Cloud-Native Security Solutions to ensure robust, continuous alerting, monitoring, and audit reporting across GCP, Azure, and AWS.
  • Orchestrate remediation campaigns for non-compliant issues, leveraging ServiceNow and GRC platforms to assign, track, and verify resolution by solution owners.
  • Manage critical certifications to ensure Sarbanes-Oxley (SOX) server quarterly certifications are executed on time, addressing any findings with urgency.
  • Analyze and address non-compliance proactively, including deprecated network protocols, violations of least privilege, or any configurations drifting from internal Information Security policies.
  • Ensure compliance with exception management policies and standards by maintaining accountability for approved exceptions and their timely remediation, renewal, or closure.
  • Formulate governance metrics, providing monthly Key Performance Indicator (KPI) and Key Risk Indicator (KRI) reports for internal operations, and quarterly Reports of Compliance (ROC) for executive leadership.
  • Support regulatory audits, serving as a key stakeholder and evidence provider for FDA audits and HITRUST certifications (monthly, quarterly, and annual reporting).
  • Drive M&A security onboarding, collaborating with Enterprise Technology Platform and InfoSec Operations teams to seamlessly integrate newly acquired entities onto the Infrastructure Governance platforms.

What they're looking for

  • Experience: 4 to 6 years of progressive experience in security compliance governance, cloud security engineering, or an equivalent technical risk management role preferred.
  • Leadership: Demonstrated experience leading, mentoring, or technically directing a team of engineering professionals.
  • Cloud Expertise: Extensive, hands-on knowledge of multi-cloud environments, specifically Google Cloud Platform (GCP), Microsoft Azure, and Amazon Web Services (AWS).
  • Framework Proficiency: Working knowledge of security frameworks, particularly NIST CSF (Cybersecurity Framework).
  • Regulatory & Compliance Acumen: Solid understanding of industry regulations and compliance standards, including HIPAA, HITRUST, SOX, and GDPR.
  • Systems Familiarity: Experience using and integrating GRC platforms, ServiceNow, and cloud-native security tools (e.g., Prisma, Wiz, Sentinel, or cloud-native CSPMs).

Nice to have

  • Bachelor’s degree in related field, or equivalent work experience, preferred

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer

What Infrastructure Governance contributes to Cardinal Health

Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.

Infrastructure Governance enforces Cardinal Health’s risk and security policies to ensure compliance with internal and external regulations, and to maintain a secure infrastructure environment.

Responsibilities

  • Lead and mentor a high-performing team of Cloud Engineers, fostering professional growth and establishing a culture of proactive exposure management.
  • Drive team evolution by expanding the governance scope beyond Cloud Security Posture Management (CSPM) and firewall rule monitoring into comprehensive security policy enforcement, vulnerability, data, and application security management.
  • Champion Automation & AI to deliver real-time compliance results, reduce manual verification cycles, and accelerate auto-remediation of cloud risks.

Governance, Risk, & Compliance (GRC) Execution

  • Govern Firewall Rule Policies to guarantee alignment with network standards, and direct the rule certification program for all in-scope firewalls.
  • Oversee CSPM & Cloud-Native Security Solutions to ensure robust, continuous alerting, monitoring, and audit reporting across GCP, Azure, and AWS.
  • Orchestrate remediation campaigns for non-compliant issues, leveraging ServiceNow and GRC platforms to assign, track, and verify resolution by solution owners.
  • Manage critical certifications to ensure Sarbanes-Oxley (SOX) server quarterly certifications are executed on time, addressing any findings with urgency.
  • Analyze and address non-compliance proactively, including deprecated network protocols, violations of least privilege, or any configurations drifting from internal Information Security policies.
  • Ensure compliance with exception management policies and standards by maintaining accountability for approved exceptions and their timely remediation, renewal, or closure.

Audit, Reporting, & Mergers & Acquisitions (M&A)

  • Formulate governance metrics, providing monthly Key Performance Indicator (KPI) and Key Risk Indicator (KRI) reports for internal operations, and quarterly Reports of Compliance (ROC) for executive leadership.
  • Support regulatory audits, serving as a key stakeholder and evidence provider for FDA audits and HITRUST certifications (monthly, quarterly, and annual reporting).
  • Drive M&A security onboarding, collaborating with Enterprise Technology Platform and InfoSec Operations teams to seamlessly integrate newly acquired entities onto the Infrastructure Governance platforms.
  • Align with Cyber Operations strategies, ensuring direct support of foundational programs such as Unified Vulnerability Management (UVM).

Qualifications:

  • Experience: 4 to 6 years of progressive experience in security compliance governance, cloud security engineering, or an equivalent technical risk management role preferred.
  • Leadership: Demonstrated experience leading, mentoring, or technically directing a team of engineering professionals.
  • Cloud Expertise: Extensive, hands-on knowledge of multi-cloud environments, specifically Google Cloud Platform (GCP), Microsoft Azure, and Amazon Web Services (AWS).
  • Framework Proficiency: Working knowledge of security frameworks, particularly NIST CSF (Cybersecurity Framework).
  • Regulatory & Compliance Acumen: Solid understanding of industry regulations and compliance standards, including HIPAA, HITRUST, SOX, and GDPR.
  • Systems Familiarity: Experience using and integrating GRC platforms, ServiceNow, and cloud-native security tools (e.g., Prisma, Wiz, Sentinel, or cloud-native CSPMs).

What is expected of you and others at this level

  • Manages department operations and supervises professional employees, front line supervisors and/or business support staff
  • Participates in the development of policies and procedures to achieve specific goals
  • Ensures employees operate within guidelines
  • Bachelor’s degree in related field, or equivalent work experience, preferred
  • Interacts with subordinates, peers, customers, and suppliers at various management levels; may interact with senior management
  • Interactions normally involve resolution of issues related to operations and/or projects
  • Gains consensus from various parties involved

Anticipated salary range: $125,300 - $178,900

Bonus eligible: yes

Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

  • Medical, dental and vision coverage

  • Paid time off plan

  • Health savings account (HSA)

  • 401k savings plan

  • Access to wages before pay day with myFlexPay

  • Flexible spending accounts (FSAs)

  • Short- and long-term disability coverage

  • Work-Life resources

  • Paid parental leave

  • Healthy lifestyle programs

Application window anticipated to close: 9/30/2026 *if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate’s geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here

Company

Cardinalhealth
OH-Ohio-Work from Home

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Cardinalhealth's careers site·first seen 11 Sept 2026·last verified 11 Sept 2026·How we source jobs

Similar jobs

  • Unical Aviation Senior Export Trade & Compliance Manager at AirbusGlendale, United States of America–match not yet calculated
  • Compliance Manager, Transparency at summittherapeuticsPrinceton, United States of America–match not yet calculated
  • Sr Director Analyst, Data Management, Governance & AI (Remote US) at GartnerRemote - United States–match not yet calculated
  • Senior People Compliance Manager at remitlySeattle, United States of America–match not yet calculated
  • Medical Staff Systems & Data Governance Manager at luriechildrensStreeterville, United States of America–match not yet calculated

Browse more jobs

  • Compliance Manager jobs in United States
  • Company Secretary jobs in United States
  • Compliance Specialist jobs in United States
  • Data Privacy Officer jobs in United States
  • Compliance Manager jobs in India
  • Compliance Manager jobs in United Kingdom