Manager Information Security Engineer - Remote or Hybrid in MN or DC
Indexed description
You'll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Primary Responsibilities
- Lead Connected Device Security (IoMT/IoT) and Data Protection & Insider Risk teams, developing strategic program roadmaps aligned with organizational cybersecurity objectives
- Drive the standardized deployment and operational management of Data Loss Prevention (DLP), Information Protection, and Insider Risk Management capabilities across shared services healthcare environments
- Establish repeatable deployment frameworks, standard architectures, configuration baselines, and operational runbooks to ensure continuous monitoring and prevent policy and configuration drift
- Design, implement, and mature an Insider Threat Program, establishing governance, policies, investigative workflows, case management, and escalation criteria
- Lead risk-based Connected Device Security processes for medical devices (IoMT), IoT, and connected technologies, including inventory management, visibility, vulnerability management, and network segmentation
- Develop, implement, and maintain healthcare-aligned KPIs, KRIs, operational dashboards, and metrics to measure control effectiveness, operational maturity, and risk reduction outcomes
- Partner with Security Engineering, Security Operations, Clinical Engineering, Biomedical Engineering, Privacy, Compliance, Legal, HR, and IT stakeholders to ensure aligned cyber risk reduction
- Ensure program alignment with regulatory frameworks including HIPAA, HITECH, NIST Cybersecurity Framework, NIST 800-53, CIS Controls, and HITRUST standards
- Use enterprise-approved AI tools to streamline workflows, automate threat detection analytics, and drive continuous operational improvement across data protection and device security programs
- Evaluate emerging cybersecurity trends, threat vectors, and automated tools to inform solution design and strategic innovation
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, Healthcare Technology, or a related field OR equivalent cybersecurity experience in lieu of degree
- 3+ years of progressive cybersecurity experience in an enterprise environment
- 2+ years of experience implementing or managing Data Loss Prevention (DLP), Information Protection, or Insider Risk capabilities
- 1+ years of experience in a leadership, management, or technical team lead role, mentoring and developing security professionals
- 1+ years of experience with connected device security, IoMT, IoT, or healthcare technology security environments
- Relevant cybersecurity certifications such as CISSP, CISM, or HCISPP
- Hands-on experience with Microsoft Purview (DLP, Information Protection, Insider Risk Management), Microsoft Defender XDR, and Microsoft Sentinel
- Experience with medical device security platforms (e.g., Ordr, Armis, Nozomi, Claroty), vulnerability management tools, and Microsoft Entra ID
- Experience utilizing ServiceNow and Power BI (or equivalent dashboarding tools) to build operational security metrics and executive dashboards
- In-depth understanding of healthcare cybersecurity frameworks and regulations, including HIPAA, HITECH, NIST CSF, NIST 800-53, CIS Controls, and HITRUST
- Demonstrated ability to build cybersecurity programs and lead cross-functional investigations across Legal, HR, and Compliance
- All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug-free workplace. Candidates are required to pass a drug test before beginning employment.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search