What Information Security and Risk contributes to Cardinal Health
Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
Information Security and Risk develops, implements, and enforces security controls to protect the organization’s technology assets from intentional or inadvertent modification, disclosure or destruction. This job family develops system back-up and disaster recovery plans. Information Technology also conducts incident response, threat management, vulnerability scanning, virus management and intrusion detection and completes risk assessments.
The Manager, CISO Program & Operations is responsible for supporting the execution, governance, and continuous improvement of the enterprise cybersecurity program. Reporting to the Director of Cybersecurity Strategy & Program Operations, this role serves as a central coordination point to ensure cybersecurity and infrastructure initiatives are effectively planned, executed, monitored, and aligned with organizational priorities and risk objectives.
This role manages core CISO program capabilities including project intake, portfolio and project management, financial and vendor oversight, and performance monitoring. It plays a critical role in enabling transparency, consistency, and operational discipline across the CISO Program by establishing standardized processes, facilitating cross-functional collaboration, and delivering data-driven insights to support decision-making.