As the world around us becomes more connected and more digital, there are increased opportunities for disruption due to cybersecurity attacks. The need for companies, products, and services to be secure is more important than ever in this constantly changing landscape. Are you passionate about keeping good people safe from bad actors? We are too!
Role Summary
The HP Sr. Program Manager - Cybersecurity Risk Management is responsible to lead important cybersecurity programs across enterprise operations for a complex global company. The role includes partnering with teams within our supply chain organization and third‑party partners to review business operations, identify areas of cybersecurity risk, and drive the implementation of ongoing cybersecurity practices and process improvements. The person in this role will develop and implement strategies and plans to mature cybersecurity practices as part of our goal of continual improvement. This includes providing cybersecurity oversight and governance over global end‑to‑end supply chain operations (Plan, Source, Make, Deliver), implementing cybersecurity practices into operations, and driving closure of identified risks. The role involves communicating with key stakeholders, influencing business prioritization, and tracking milestones against committed timelines.
In this role, you will develop key relationships across the business to become a trusted partner and subject matter expert to train and influence on cybersecurity initiatives. As cybersecurity trends and risks continue to evolve and supply chain transformation and resilience efforts are implemented, this role will play a key function in keeping business operations aligned with current and future cybersecurity risk management best practices. The position reports to the Enterprise Operations Cybersecurity Business Information Security Officer (BISO) and works closely with teams across Supply Chain Operations, HP Corporate Cybersecurity, IT, Legal, and Business Units to help protect HP’s infrastructure and products. This is a hybrid work position requiring both in‑office work and flexibility to perform some work from home.
What a Senior Program Manager - Cybersecurity Risk Management does at HP
Drives complex projects from initiation to completion including identifying key stakeholders, reviewing business processes, and recommending cybersecurity process improvements to business operations
Provides leadership and guidance about cybersecurity best practices to business operations teams
Partners with business operations and third‑party partners to assess compliance to cybersecurity standards and drives cybersecurity risk management process improvements
Leads risk remediation efforts to communicate and drive resolution of identified cybersecurity risks in the business
Creates and presents program status reports, updates, and briefings as required
Understands HP’s business and operations strategy and how cybersecurity fits into business success
Monitors industry cybersecurity threats, cybersecurity best practices, regulatory changes, corporate updates, and geo‑political changes impacting HP’s supply chain security
Responsibilities may vary over time and include, but are not limited to, those listed.
Individuals who thrive in this role at HP, typically have
Bachelor’s degree required, preferably in cybersecurity, information systems, computer science, supply chain operations, or a related area of study
Typically 10+ years of relevant experience; cybersecurity, program management, project management, supply chain operations
Excellent program management skills including the ability to evaluate complex business processes, develop a structure and scope to review the process, and develop methods, techniques, and criteria to improve cybersecurity practices in business operations
In‑depth cyber and IT security knowledge and understanding of cyber and IT security risks, threats, and prevention measures
Superior verbal and written communication, leadership, consulting, influence, negotiation, presentation, and problem‑solving skills
Have or obtain upon hire Technical Cybersecurity Certification through one of the recognized bodies preferred: (ISC)², CompTIA, ISACA, etc.
About The Team
The Enterprise Operations Cybersecurity team is a key pillar of the Supply Chain Operations and IT organizations responsible for protecting our supply chain and products against cyber threats. The team is a group of cybersecurity and supply chain professionals who collaborate with business and functional stakeholders as trusted advisors to effectively manage cybersecurity risks in our manufacturing supply chain operations.
Pay & Benefits
The pay range for this role is $130,700 to $205,200 USD annually with additional opportunities for pay in the form of bonus and/or equity (applies to United States of America candidates only). Pay varies by work location, job—related knowledge, skills, and experience.
Benefits
Health insurance
Dental insurance
Vision insurance
Long term/short term disability insurance
Employee assistance program
Flexible spending account
Life insurance
Generous time off policies, including;
4‑12 weeks fully paid parental leave based on tenure
11 paid holidays
Additional flexible paid vacation and sick leave
US benefits overview
The compensation and benefits information is accurate as of the date of this posting. The Company reserves the right to modify this information at any time, with or without notice, subject to applicable law.
#J-18808-Ljbffr