Pharmaceutical Solutions and Services Business Information Security Officer (BISO)

Irving, TX, USA - 6555 North State Highway 161 (P001)

McKesson

The leading healthcare company for wholesale medical supplies & equipment, pharmaceutical distribution, and healthcare technology solutions.

View all jobs at McKesson

Apply now Apply later

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve – we care.

What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow’s health today, we want to hear from you.

Pharmaceutical Solutions and Services is powered by more than 10,000 team members and delivers one-third of America's medicines. Also known as PSaS, our business is made up of several dynamic sectors. Whether it's helping physicians transform cancer care, delivering medicine safely and effectively or helping a friend fight a serious disease, PSaS impacts the lives of millions of patients annually.

We are looking for a Business Information Security Officer (BISO) who will lead, plan, direct, and control activities for assurance, security (information, application, and infrastructure), and compliance across the PSAS Business Unit. This Security Principal (P6) role ensures successful delivery of Information Security and IT risk management services in compliance with McKesson Cyber Security policies, standards, and the NIST framework.

The ideal candidate has high energy, strong presence, and a passion for delivering value from the cybersecurity function. They possess deep technical security, governance, and risk expertise and will be the primary advocate for security initiatives in the BU, maintaining consistent alignment with the McKesson Cyber Security organization.

The candidate will work directly with senior leaders from each of those functions and should have the requisite capabilities to succeed at that level. This individual will work as part of a large team of security professionals in a structure designed to help them succeed in delivering best-in-class security to this stakeholder group.

This role reports directly to the Deputy CISO.

Key Accountabilities:

Risk Management:

  • Manage corporate function cyber security and risk requirements, ensuring high-quality execution.

  • Co-ordinate IT risk, compliance, and audit reviews, and assist with remediation of findings.

  • Ensure technology programs comply with relevant laws, regulations, and McKesson cyber security policies.

Compliance:

  • Participate in corporate function initiatives to represent the cybersecurity function.

  • Ensure security programs address IT risk management findings and follow relevant laws, regulations, and policies.

 Stakeholder Engagement:

  • Report Key Risk and cyber security performance Indicators to PSAS leadership for informed decision-making.

  • Develop strong partnerships with IT leaders and Cyber Security service teams to manage PSAS cyber  security risk.

Minimum Qualifications:

  • Bachelor’s Degree or equivalent experience in Information Security, Computer Science, or related field.

  • 15+ years of relevant professional experience, including 8+ years in impactful roles interacting with senior stakeholders in a cyber security or technology function

Required Skills:

  • Strategic thinker with the ability to communicate and influence at both technical team and senior management levels.

  • Ability to integrate various security and data protection controls to mitigate risk effectively.

  • Deep knowledge of regulatory, operational, information, and technology risk areas.

  • Strong familiarity with information, application, and infrastructure security control mechanisms.

  • Experience utilizing the NIST framework for effective cybersecurity and risk management.

  • Strong understanding of privacy laws, data protection regulations, breach notification practices, and incident response management.

  • Ability to act as a trusted advisor and partner.

Preferred Certifications:

CISSP, CISM, or equivalent certifications.

We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here.

Our Base Pay Range for this position

$181,300 - $302,100

McKesson is an Equal Opportunity Employer

 

McKesson provides equal employment opportunities to applicants and employees and is committed to a diverse and inclusive environment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age or genetic information. For additional information on McKesson’s full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page.

 

Join us at McKesson!

Apply now Apply later
Job stats:  2  0  0

Tags: BISO CISM CISO CISSP Compliance Computer Science Governance Incident response NIST Privacy Risk management

Perks/benefits: Career development Competitive pay Equity / stock options Health care Salary bonus

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.