Reporting to the Vice President of Cyber Risk and Resilience, this position coordinates, communicates, integrates and is accountable for a comprehensive approach, developing metrics, dashboards and evidence artifacts to monitor controls and risks, contributing to the overall success of the Cyber GRC/Resilience Program operational strategies in alignment with Security Controls Framework (SCF) and ISO 22301 standards.
RESPONSIBILITIES
• Coordinates the day-to-day operations of the cyber governance, risk and compliance and resilience organization ensuring alignment with NIST and ISO 22301.
• Coordinates major cyber GRC and resilience initiatives providing direction on timely inputs and deliverables required to ensure projects are completed and communicated on time.
• Assist the VP, Cyber Risk and Resilience in the development of the unified cybersecurity GRC and resilience strategy, ensuring alignment with CSF and ISO 22031 standards, and corporate objectives.
• Plans and prepares to Lead the Crisis Management Planning Team which is activated when incidents occur. Creates Incident Action Plans during incidents and ensures action plans are executed. Develops briefings for the Crisis Management Team (Enterprise CITO is the Exec Sponsor, other members include Labcorp General Counsel, and key SVPs) and Senior Leadership (Executive Committee member and any business leaders whose groups were impacted by an event).
• Develop and monitor cyber risk and resilience Key Risk, Controls, and Performance Indicators (KxI). Prepare reports for senior leadership detailing departmental progress, challenges, and remediation.
• Facilitate remediation plans and actions resulting from incident findings and proactive OIS industry benchmarks, that continuously improves the organization’s cyber risk posture and resilience capabilities.
• Assist in the preparation and management of cyber GRC budget and staffing plans to ensure optimal allocation of resources.
• Develop incident briefings for the Crisis Management Team and Senior Leadership. Draft updates to the executive committee and board.
REQUIREMENTS
• Preferred 15 years of experience in strategic roles with a familiarity in the NIST and ISO 22301 framework.
• Experience working in the Cybersecurity, Governance, Risk Management, IT Compliance programs, Global InfoSec, technology or legal fields
• Strong leadership, organizational, and communication skills in a matrixed environment.
• Ability to collaborate with diverse stakeholders and navigate complex organizational structures.
• Ability to work and lead in high pressure situations.
• Analytical and critical thinker, results-driven, with a keen sense of discretion and confidentiality.
• Ability to dissect complex problems, understand the implications of various options, and use data-driven insights to make decisions.
• Strong interpersonal and negotiation skills to address and resolve conflicts that may arise due to decisions, ensuring that all parties feel heard and that the best interests or the program and organization are upheld.
• Be open to insights to inform further decisions, continuous improvement, that deliver business continuity with an Labcorp-enterprise approach.
• Ability to balance multiple factors including, allocating resources, and solving complex challenges.
• Engage stakeholders and team members in the decision-making process to gain diverse perspectives and build consensus. Make decisions that uphold the organization’s values and ethical standards, even when facing pressure or potential gains from choosing otherwise.
• Decide what tasks or projects are most important based on strategic alignment, resource availability, and timelines.
Strong emotional intelligence skills, understanding the core values of Diversity, Equity and Inclusion are a guiding principle in how Labcorp does business, with ability to recognize and manage one’s own emotions and those of others, leading to better interpersonal interactions and more informed decision-making.EDUCATION
Bachelor’s Degree and 10 years plus in a program management or similar roleLabcorp is proud to be an Equal Opportunity Employer:
As an EOE/AA employer, Labcorp strives for diversity and inclusion in the workforce and does not tolerate harassment or discrimination of any kind. We make employment decisions based on the needs of our business and the qualifications of the individual and do not discriminate based upon race, religion, color, national origin, gender (including pregnancy or other medical conditions/needs), family or parental status, marital, civil union or domestic partnership status, sexual orientation, gender identity, gender expression, personal appearance, age, veteran status, disability, genetic information, or any other legally protected characteristic. We encourage all to apply.
For more information about how we collect and store your personal data, please see our Privacy Statement (https://www.labcorp.com/hipaa-privacy/web-privacy-policy) .