CVS Health

CVS Health

20 open positions available

6 locations
1 employment type
Actively hiring
Full-time

Latest Positions

Showing 20 most recent jobs
CVS Health

Senior API Platform Engineer (Apigee X/Edge)

CVS HealthAnywhereFull-time
View Job
Compensation$90K - 140K a year

Design, build, and operate enterprise API gateway services ensuring secure, scalable integration and lead platform modernization with technical mentorship. | At least 5 years experience with API management platforms, API security, cloud infrastructure, and CI/CD practices. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary API Platforms supports CVS Health's digital transformation by delivering secure, scalable, and reliable API management capabilities across the enterprise. As a Senior API Platform Engineer, you will design, build, and operate enterprise API gateway services that enable secure and scalable integration across mission-critical applications. This role is responsible for API platform engineering, API governance, platform operations, and technical leadership, with opportunities to leverage automation, cloud, and reliability engineering practices to improve platform performance and developer experience. Experience with Apigee is strongly preferred; however, candidates with experience on other enterprise API management platforms are encouraged to apply. *This role is remote. We are open to candidates based in CST or EST time zones in the United States. Responsibilities Design, develop, and maintain API proxies, shared flows, policies, and reusable platform components using Apigee X and enterprise API management technologies Define and implement API governance, security, traffic management, observability, and operational standards across the enterprise Participate in on-call rotations and major incident management activities Lead API platform modernization and migration initiatives, partnering with application teams to onboard APIs and adopt platform best practices Support and operate enterprise API gateway services by monitoring platform health, troubleshooting incidents, performing root cause analysis, and ensuring high availability Drive continuous improvement through automation, CI/CD, Infrastructure as Code, and self-service capabilities that enhance platform reliability and engineering productivity Collaborate with Engineering, Security, Architecture, and Product teams while providing technical leadership, mentorship, and guidance on API platform solutions Required Qualifications 5+ years of software, platform, or infrastructure engineering experience 3+ years of hands-on experience with API management platforms such as Apigee X, Apigee Edge, Kong, Azure API Management, MuleSoft, or IBM API Connect Experience designing, developing, and supporting RESTful APIs and enterprise API gateway solutions Strong understanding of API security concepts, including OAuth 2.0, OpenID Connect, JWT, TLS, certificates, and API threat protection Experience building and supporting cloud-based platforms on GCP, AWS, or Azure, including CI/CD and Infrastructure as Code practices Experience supporting production environments, including monitoring, incident management, root cause analysis, on-call support, and operational excellence practices Experience working in Agile development environments with strong collaboration and communication skills Preferred Qualifications Hands-on experience administering and operating Apigee X or Apigee Edge in an enterprise environment Experience implementing SRE practices, including SLIs, SLOs, observability, alerting, and reliability engineering principles Experience with Terraform, GitOps, automation frameworks, and scripting languages such as Python, JavaScript, or Bash Experience with Kubernetes, container platforms, and cloud-native architectures Experience supporting highly available enterprise API platforms and developer self-service capabilities Healthcare technology experience, including FHIR APIs, interoperability standards, or related cloud and DevOps certifications Education Bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent practical experience (HS diploma + 4 years relevant experience) Anticipated Weekly Hours 40 Time Type Full time Pay Range The typical pay range for this role is: $83,430.00 - $203,940.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/28/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

API Design & Integration
JavaScript
REST API design & maintenance
Direct Apply
Posted 4 days ago
CVS Health

Senior Manager, Competitive and Market Insights

CVS HealthAnywhereFull-time
View Job
Compensation$85K - 120K a year

Synthesize market and competitive intelligence to influence business strategy and executive decision-making using AI and emerging technologies. | Bachelor's degree and 5+ years in healthcare PBM or payer sector with strong analytical and executive communication skills required. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Senior Manager – Competitive and Market Insights (CMI), Sales Enablement This is an exceptional opportunity for someone who enjoys understanding market dynamics, influencing business strategy, and helping leaders across the organization make better, faster, and more informed decisions. Reporting to Director and integral part of Caremark’s Sales Enablement organization, this role sits at the intersection of market strategy, competitive intelligence, sales enablement, and executive decision-making. The individual will be responsible for gathering, aggregating, understanding and synthesizing intelligence from a variety of sources—including field feedback, competitor activity, industry trends, regulatory developments, client conversations, and external research—to help leaders understand not only what is happening in the market, but why it is happening and what it means for our business. This role is also centered on truly leveraging AI and emerging technologies to build and deliver innovative insights that create real business impact. The role partners closely with leaders across Sales, Product, Pricing, Marketing, Government Affairs, and Strategy to translate complex information into actionable insights that influence go-to-market decisions, product direction, competitive positioning, and client engagement strategies. We are looking for someone who: Bachelor’s degree in business, strategy, quantitative discipline, or related field required. 5+ years of healthcare experience, with exposure to pharmacy benefits, payers, consultants, providers, sales, product, or strategy preferred. Possesses knowledge of the PBM and broader healthcare ecosystem. Has natural curiosity about competitor strategies, market dynamics, regulatory change, and emerging trends. Can connect disparate pieces of information and identify meaningful patterns, implications, and opportunities. Is equally comfortable speaking with frontline sales teams, senior executives, and cross-functional business leaders. Analytical and digital fluency, including the ability to use Microsoft 365, AI tools, Salesforce, visualization, pptx and market data platforms to accelerate insight development. Demonstrates exceptional relationship-building and influence skills across organizational boundaries. Has strong executive presence and can distill complex topics into clear, concise, business-relevant insights. Enjoys becoming the "go-to" resource for market intelligence and strategic perspective. Skilled at rapidly translating information into multiple formats (primarily PowerPoint) that meet the needs of different audiences—from detailed analyses and battlecards to executive summaries, presentations, and visual storytelling. The ideal candidate will be known for: Strategic thinking and business acumen. Intellectual curiosity and continuous learning. Strong communication and storytelling skills. Ability to work independently and thrive amid ambiguity. Collaboration, influence, and relationship management. Turning information into action and driving adoption of insights across the organization. Pay Range The typical pay range for this role is: $82,940.00 - $182,549.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/14/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Market intelligence
Competitive analysis
Strategic thinking
Sales enablement
Data synthesis
Direct Apply
Posted 4 days ago
CVS Health

Manager-SOX Governance & Reporting

CVS HealthCounty Galway, Ballinasloe Municipal District, Ireland, Scottsdale, Arizona, Woonsocket, Rhode Island, Irving, Texas, ArizonaFull-time
View Job
Compensation$70K - 120K a year

Oversee SOX Compliance Hub governance, track metrics, facilitate leadership meetings, and transform data into executive insights. | Minimum 5 years in SOX compliance or related fields with strong analytical and communication skills. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary The Manager, SOX Governance & Reporting helps run and improve the company’s SOX Compliance Hub. This includes managing governance processes, creating reports, supporting leadership meetings, and tracking performance. You’ll work with teams across the company (e.g., audit, IT, finance) to ensure SOX activities are clear, organized, and consistently executed. The role focuses on turning complex data into clear insights and executive-level updates. What You’ll Do Governance & Operations Organize leadership meetings and governance forums Prepare agendas, materials, and track decisions/action items Ensure follow-ups are completed Maintain governance documents and procedures Reporting & Analytics Build dashboards, scorecards, and KPI reports Track metrics like: SOX issues and trends Remediation progress Audit findings Control effectiveness Create regular reports (weekly, monthly, quarterly, annual) Identify improvement opportunities Communication Create presentations and leadership updates Support change management efforts Develop clear, executive-ready materials Promote awareness of SOX initiatives Project & Strategy Support Track SOX-related projects and initiatives Maintain project plans, risks, and milestones Support annual planning and roadmap development Help improve governance and reporting processes Technology & Data Maintain reporting data and documentation Support GRC (Governance, Risk, Compliance) tools Help automate reporting and improve data quality Enhance dashboards and analytics tools What Success Looks Like Clear visibility into performance Strong accountability and follow-through Well-structured governance processes High-quality executive communication Required Experience 5+ years in areas like: SOX Compliance Internal Audit Finance Risk or Program Management Strong analytical and reporting skills Advanced PowerPoint and Excel Ability to create executive-level presentations Strong communication skills Preferred (Nice to Have) Certifications (CPA, CIA, PMP, MBA) Experience in SOX, audit, or compliance teams Experience with Optro (GRC platform) Skills in Power BI, Tableau, Alteryx, etc. Experience in large or highly regulated companies Education Bachelor’s degree or equivalent experience Anticipated Weekly Hours 40 Time Type Full time Pay Range The typical pay range for this role is: $60,300.00 - $132,600.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/14/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

SOX Compliance
Governance
Reporting
Data Analytics
Project Management
Direct Apply
Posted 4 days ago
CVS Health

Senior AI Solutions Engineer, Accessibility

CVS HealthAnywhereFull-time
View Job
Compensation$85K - 130K a year

Design and develop AI-powered accessibility automation and monitoring solutions and build data pipelines and dashboards for accessibility health insights. | Requires 3+ years software engineering experience in cloud environments with proficiency in Python, Java, or JavaScript, APIs, microservices, and stakeholder management. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary If you're eager to make a real impact in the health care industry through your own meaningful contributions, explore a role in technology with CVS Health. Our journey calls for technical innovators and data visionaries: come help us pave the way. At CVS Health, we are driven by a vision to redefine healthcare in America by placing people at the forefront of our efforts. We're seeking a motivated software engineer who shares our commitment to engineering excellence and innovation. As part of our team, you'll have the opportunity to contribute to advancing and modernizing technologies that shape the future of healthcare. As a Senior AI Solutions Engineer at CVS Health, you'll play a crucial role in building and delivering high-quality software that enhances customer experiences. You'll be involved in all phases of software engineering, from requirements analysis to deployment, while adhering to agile software development methodologies. Collaboration is key, as you'll work closely with cross-functional teams to deliver integrated solutions that meet the evolving needs of our business. As a Sr. AI Solutions Engineer, you will: Design and develop AI-powered accessibility automation and monitoring solutions that measure conformance and surface regressions across the software lifecycle Build and maintain data pipelines that bridge accessibility signals across CI/CD, component libraries, production telemetry, and assistive technology usage into unified, actionable views Develop models and pattern-detection capabilities that identify accessibility regressions, coverage gaps, and adoption drift before they reach end users Collaborate with Accessibility Engineering leadership to define and operationalize key metrics that quantify accessibility maturity across delivery teams Develop dashboards, reports, and automated notifications that give engineering teams and leadership visibility into accessibility health across the product portfolio As leaders in healthcare, our analytics and engineering teams deliver innovative solutions to business problems by collaborating with cross-functional teams in a dynamic and agile environment. You will be part of a team that values collaboration and encourages innovative thinking at all levels. You will be intellectually challenged to solve problems associated with large scale complex, structured and unstructured data, that will allow you to grow your technical skills and engineering expertise. Required Qualifications 3+ years of experience with designing and building software engineering solutions in cloud environments (preferably Google Cloud Platform) 3+ years of experience in one or more modern languages, such as Python, Java, C#, JavaScript, SQL, etc. 3+ years of experience with APIs, microservices, and modern software patterns 1+ year(s) of soliciting complex requirements and managing relationships with key stakeholders 1+ year(s) of experience independently managing deliverables Preferred Qualifications Experience with accessibility standards (WCAG 2.1/2.2, WAI-ARIA) and accessibility testing tools, and how they produce measurable conformance signals Knowledge of assistive technologies (screen readers, switch access, voice control) and how their interaction patterns can be instrumented or inferred Experience designing and building data pipelines (ETL/ELT) that integrate signals from multiple sources into unified reporting or analytics platforms Familiarity with AI/ML techniques applicable to software quality — anomaly detection, classification, pattern recognition, or natural language processing applied to accessibility findings Experience building monitoring, alerting, or observability solutions using platforms such as Datadog, Splunk, Grafana, or similar Experience with LLMs or generative AI applied to code analysis, test generation, or developer tooling Experience building developer-facing tools, CLIs, or platform capabilities that improve engineering workflows Background in metrics definition, KPI frameworks, or data governance practices Familiarity with GCP architecture and experience designing and optimizing software and data engineering patterns Working experience with CI/CD pipelines, Git, and related tooling (Jenkins, Artifactory, etc.) Formal SAFe and/or agile experience; previous healthcare experience and domain knowledge a plus Education Bachelor's Degree or equivalent work experience in Computer Science, Information Systems, Data Engineering, Data Analytics, Machine Learning, or related field required. Master's Degree preferred. Anticipated Weekly Hours 40 Time Type Full time Pay Range The typical pay range for this role is: $101,970.00 - $203,940.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/04/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

API design
Microservices
Accessibility/WCAG compliance
JavaScript
Observability
Cloud computing
Direct Apply
Posted 4 days ago
CVS Health

Manager, Specialty Digital Patient Innovation

CVS HealthAnywhereFull-time
View Job
Compensation$60K - 133K a year

Lead digital innovation projects for specialty pharmacy patient experiences by collaborating across teams and managing development pipelines. | Requires 5+ years in healthcare strategy or product management with strong analytical skills and experience in cross-functional collaboration. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary The Manager on the Specialty Pharmacy Digital Patient Innovation team will help to innovate and drive digital priorities including new and existing Specialty patient experiences, the order placement journey, the cart and checkout journey, the cost and coverage journey, the order status journey, including self-service tools in an effort to provide efficient and clear information digitally to our customers. This individual will cross-collaborate with multiple stakeholder groups including digital product and engineering, Specialty operations, legal and privacy, and leadership to bring roadmap items to market including defining the problems to solve and project vision, building business cases, outlining detailed requirements, and managing the development pipeline across stakeholder groups. This person will be responsible for leveraging data and customer feedback to develop continuous improvement ideation for projects in varying stages of development. To be successful, this individual will need to learn and understand specialty pharmacy processes and workflow, demonstrate flexibility to support rapid adjustments to in-flight projects when required, and ability to work collaboratively with various stakeholder groups. Responsibilities Include • Complete discovery efforts and clearly define problems to solve within the Specialty digital patient journey • Build detailed business cases for new or enhanced digital capabilities by utilizing data to ensure both patient and business value in alignment with our OKRs • Define high-level North Star experience based on validated problems to solve • Help define how the capability and/or feature should be prioritized amongst other digital efforts across the business unit • Work in partnership with various stakeholder groups including digital product, engineering, design, legal and compliance, IT, and operations to gain alignment • Provide leadership readouts both pre- and post-production to gain alignment and feedback • Monitor and review data and insights, customer feedback, and other analyses related to in-flight digital products and recommending steps forward when issues arise Required Qualifications • 5+ years of experience in healthcare strategy, management consulting, healthcare technology, product management, product or business development • Strong analytical and problem-solving skills • Proven ability to consolidate and interpret operational data into actionable insights Travel - Ability to travel up to 10% of time, on an as needed basis Preferred Qualifications • 3+ years of experience in business case development, building strategic roadmaps and/or bringing technology solutions to life • Experience in working in a matrixed environment with multiple stakeholder groups, project management, and collaboration with cross-functional teams • Proficiency in tools supporting data analysis and reporting (Tableau or similar) Education Bachelor's Degree Or Equivalent Work Experience Required Anticipated Weekly Hours 40 Time Type Full time Pay Range The Typical Pay Range For This Role Is $60,300.00 - $132,600.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great Benefits For Great People We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/29/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

digital product management
business case development
data analysis
Verified Source
Posted 5 days ago
CVS Health

Staff Software Development Engineer - Customer Reporting (Lead Full Stack, Angular, Spring Boot)

CVS HealthHarrisburg, PA (+7 others)Full-time
View Job
Compensation$118K - 261K a year

Lead multiple engineering teams to build high-quality software products using Agile methodologies. | 10+ years enterprise software delivery, 7+ years Java and Angular experience, Agile and TDD expertise. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary As a Lead Software Development Engineer with CVS Health, you will lead multiple pod teams comprising approximately 20 engineers in an onshore/offshore model (engineers, UX designers, and product manager) and work with the team to build high-quality, usable products to customers and stakeholders. This role involves creating work for different pods led by senior engineers, working hands-on with difficult features, and developing proofs of concept (POCs) to ensure feasibility and optimal solution approaches. You will help educate both business and technology personnel on the development process and create products from discovery and framing through iterative development and delivery. You will also maintain a user-centered and business-as-priority approach in design perspective and practice. A firm understanding of Java development principles and agile methodologies is crucial for success in the role. Responsibilities • Work in a collaborative environment, contributing to Agile team • Provide guidance and mentorship to team members • Interact with business, product, and architecture teams to understand requirements and lead the design efforts • Review solution / design / approach for different pods teams • Design efficient and user-friendly software products to advance and support business needs • Develop frontend and backend code utilizing test-driven development Required Qualifications • 10+ years of experience with enterprise solution delivery in a large-scale distributed software design environment, preferably in a J2EE development environment • 7+ years of Java development experience while utilizing Spring Boot and/or Spring MVC • 7+ years of experience with frontend development including Angular 8+, React, or similar • 7+ year of experience using Agile concepts such as continuous integration (CI/CD) and test-driven development (TDD) with strong debugging and performance optimization techniques, including feature flagging. Preferred Qualifications • Cloud development experience • PaaS and/or SaaS development experience Education Bachelor’s degree or equivalent experience Pay Range The typical pay range for this role is: $118,450.00 - $260,590.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 07/31/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

JavaScript
TypeScript
API Design
Front-end Development
Mentorship
Verified Source
Posted 6 days ago
CVS Health

Alternative Health & Advocacy Solutions COE Senior Project Manager

CVS HealthAnywhereFull-time
View Job
Compensation$75K - 95K a year

Oversee partner performance, operational readiness, and cross-functional initiatives for navigation, advocacy, and Alternative Health partner portfolios. | 7+ years in project/program management or healthcare operations, bachelor's degree, strong analytical, communication, and leadership skills. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary This position is fully remote - hybrid model available if this is a preference. The Senior Project & Program Manager, Alternative Health & Advocacy COE serves as a strategic owner and one of the primary relationship leads for Meritain's navigation, advocacy, and emerging Alternative Health partner portfolio. This role is responsible for overseeing partner performance, operational readiness, service delivery, governance, and cross-functional initiatives that support organizational growth, client success, and partner effectiveness. Acting as the central liaison between external partners and internal stakeholders, the Senior Project & Program Manager collaborates closely with Sales, Client Management, Product, Operations, Implementation, and Executive Leadership teams to ensure partner solutions are effectively positioned, implemented, and supported throughout the client lifecycle. The role serves as a subject matter expert on navigation, advocacy, and Alternative Health solutions, providing strategic guidance and operational leadership to internal teams, clients, consultants, and partners. In addition to relationship ownership, this position leads complex projects and programs associated with partner integrations, operational improvements, service delivery, and business growth initiatives. Success in this role requires strong relationship management, project and program leadership, operational excellence, strategic thinking, and the ability to influence cross-functional teams to deliver business outcomes that enhance client experience, retention, growth, and innovation. What You Will Do Partner Strategy & Relationship Management Serve as one of the primary relationship owners for designated navigation, advocacy, and Alternative Health partners. Lead partner governance, performance management, operational reviews, and strategic planning activities. Serve as one of the primary internal subject matter experts for navigation and advocacy solutions. Partner with Sales and Client Management teams to support prospect discussions, client strategy, renewals, consultant inquiries, and growth opportunities. Represent the Alternative Health & Advocacy Center of Excellence in internal and external stakeholder engagements. Monitor market trends, partner innovation, competitive positioning, and emerging opportunities to inform partnership and solution strategy. Program & Operational Leadership Lead complex projects and programs from initiation through implementation, ensuring successful delivery within established timelines, scope, and business objectives. Drive cross-functional collaboration across operational, implementation, product, technology, and service teams to support partner solution delivery and ongoing optimization. Develop and maintain scalable operational processes, implementation playbooks, training materials, and partner enablement resources. Identify operational risks, service challenges, and process improvement opportunities, leading resolution efforts through completion. Support the integration and evolution of navigation and advocacy partners within Meritain's broader Alternative Health strategy and portfolio. Project & Program Management Develop and execute comprehensive project and program plans, including objectives, deliverables, timelines, resource allocation, and risk mitigation strategies. Ensure projects and programs align with business priorities, organizational standards, and strategic objectives. Manage project financials, including budget planning, cost tracking, forecasting, and reporting. Establish and monitor key performance indicators (KPIs) to measure project, program, and partner outcomes. Lead change management efforts to support successful implementation and adoption of new initiatives. Promote continuous improvement by identifying best practices, sharing knowledge across teams, and enhancing project delivery processes and outcomes. Utilize reporting and data visualization tools to communicate project status, operational performance, and program results to stakeholders and leadership. Required Qualifications 7+ years of experience in project management, program management, partner management, account management, healthcare operations, or related business functions. Demonstrated experience leading complex cross-functional initiatives and managing strategic external relationships. Strong knowledge of healthcare navigation, advocacy, benefits administration, Alternative Health solutions, or related healthcare services. Proven ability to influence stakeholders and drive results across multiple business areas without direct authority. Advanced problem-solving, analytical, organizational, and decision-making skills. Strong verbal and written communication, presentation, and relationship management skills. Experience facilitating executive-level discussions and presenting recommendations to senior leadership. Proficiency with project management methodologies, tools, and performance reporting. Preferred Qualifications Experience supporting health navigation, advocacy, point solutions, or Alternative Health vendor partnerships. Project Management Professional (PMP) certification or equivalent project/program management certification. Experience supporting sales enablement, client management, implementation, or healthcare product initiatives. Knowledge of healthcare benefits, self-funded plans, population health, or care navigation strategies. Experience leading operational improvement and change management initiatives. Education Bachelor's degree in Business, Healthcare Administration, Project Management, or a related field, or equivalent combination of education and experience. Pay Range The typical pay range for this role is: $67,900.00 - $199,144.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/28/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Project management
Program management
Change management
Stakeholder engagement
Data visualization
Direct Apply
Posted 7 days ago
CVS Health

Senior Web Developer

CVS HealthAnywhereFull-time
View Job
Compensation$55K - 120K a year

Design, develop, and implement digital solutions for the Aetna Health website, including coding, monitoring production, and mentoring junior developers. | At least 5 years with modern front-end frameworks, 3 years with JavaScript, HTML, CSS, and a bachelor's degree or equivalent. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary: CVS Health Enterprise Digital seeks to change the way individuals manage their healthcare by focusing on the features that matter to our customers, building software in a modern, lean way, and deploying continuously into the cloud. As part of an engineering team building the Aetna Health website, we help our members effectively find the care they need. What you'll do: The web teams are responsible for building the best experience possible for the millions of members using our Aetna Health website. You will work alongside other engineers and with the product and design teams to consistently deliver new features. You will also work to refactor existing code in order to bring greater stability and scalability for our application as our membership continues to increase. This Senior Web Software Engineer II can expect to design, develop and implements digital solutions and systems by applying advanced technical expertise to architect and code software applications, conduct system testing and debugging, collaborate with cross-functional teams and contribute to the overall technical direction and innovation of digital engineering projects. In any given day you will: Contribute code and tests according to criteria established by our product and engineering teams Monitor, troubleshoot, and support our application in production Seek opportunities to enhance the stability, performance, maintainability, and extensibility of our application Lead discussions by communicating technical ideas to non-technical individuals Participate in the design of software architecture solutions Provide input on technical feasibility, performance optimization, and scalability considerations to ensure that the overall solution meets the desired objectives Participate in knowledge sharing activities, such as code reviews, tech talks, and workshops, to foster a culture of learning and collaboration within the team Provide guidance and mentorship to junior developers, helping them improve their technical skills and grow professionally Required Qualifications: 5+ years of professional experience with modern front end web frameworks 3+ years of experience with JavaScript, HTML, and CSS Preferred Qualifications: Experience integrating with RESTful APIs Experiencwriting unit and integration tests Experience translating large features into software design Knowledge of CircleCI Knowledge of accessibility in web applications Experience with TypeScript a plus Familiarity with Agile software development principles Strong communication skills Passion for upholding code standards and software quality Desire to mentor more junior engineers Education: Bachelor’s degree or equivalent experience (HS diploma + 4 years relevant experience) Anticipated Weekly Hours 40 Time Type Full time Pay Range The typical pay range for this role is: $101,970.00 - $203,940.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 07/31/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

JavaScript
TypeScript
HTML
CSS
RESTful APIs
Web accessibility
Mentoring
Software architecture
Direct Apply
Posted 8 days ago
CVS Health

Staff Software Development Engineer (myPBM Strategy & Operations Lead)

CVS HealthAnywhereFull-time
View Job
Compensation$90K - 140K a year

Lead design and execution of scalable web and cloud applications while managing strategic and operational governance. | 7+ years in large-scale software development with Java, Spring Boot, frontend frameworks, Agile leadership, and cross-team influence. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary The Staff Software Development Engineer (Strategy & Operations Lead) is a hybrid leadership role responsible for driving both technical execution and organizational effectiveness across the myPBM organization. This individual will provide engineering leadership for strategic initiatives while serving as a trusted partner to senior leadership in driving operational excellence, organizational priorities, governance, and business outcomes. Approximately 60 % of the role will focus on software engineering leadership, technology strategy, architecture, delivery execution, and technical mentorship. The remaining 40% will focus on strategic planning, leadership reporting, operational governance, KPI management, organizational communications, financial planning support, colleague engagement, and continuous improvement initiatives. **For the right candidate, we can consider remote US but there may be travel required. What You Will Do Engineering Leadership & Delivery Lead the design, development, and delivery of scalable web applications, APIs, and cloud-native solutions supporting the myPBM platform. Provide technical leadership and architectural guidance across multiple initiatives and engineering teams. Partner with Product, Business, UX, and Engineering teams to translate business objectives into scalable technology solutions. Drive engineering excellence through modern development practices, CI/CD automation, cloud adoption, security, reliability, and performance optimization. Evaluate emerging technologies and recommend solutions that improve efficiency, scalability, and customer experience. Mentor engineers and technical leads while fostering a culture of innovation, accountability, and continuous learning. Strategy, Operations & Chief of Staff Responsibilities Partner with senior leadership to drive execution of strategic priorities and organizational objectives. Develop executive-level reporting, operating reviews, metrics dashboards, and management updates that provide visibility into organizational health and performance. Lead operational excellence initiatives focused on process optimization, productivity improvements, and organizational effectiveness. Drive KPI definition, measurement, and reporting to support data-driven decision making and accountability. Coordinate cross-functional initiatives involving finance, security, resiliency, training, and organizational governance. Facilitate leadership planning sessions, staff meetings, communications, and organizational engagement programs. Identify risks, dependencies, and operational challenges while recommending solutions and driving resolution. Support strategic workforce planning, organizational readiness, and continuous improvement initiatives. Required Qualifications 7+ years of experience in large-scale software development with demonstrated technical leadership experience including the following: Experience designing and delivering enterprise applications using modern technologies such as Java, Spring Boot, React, Angular, REST APIs, cloud-native platforms, and related technologies. Strong understanding of Agile delivery methodologies and software engineering best practices. Experience leading cross-functional programs, operational initiatives, or organizational transformation efforts. Strong analytical, communication, stakeholder management, and executive presentation skills. Demonstrated ability to influence across multiple teams and successfully lead through ambiguity and change. Preferred Qualifications Experience with cloud platforms (AWS, Azure, or GCP), CI/CD pipelines, Kubernetes, Docker, and DevOps practices. Experience building operational dashboards, KPIs, governance processes, and executive reporting frameworks. Experience supporting organizational planning, financial management, security governance, resiliency programs, and colleague engagement initiatives. Strong business acumen with the ability to connect technology investments to measurable business outcomes. Education Bachelor’s or equivalent experience Pay Range The typical pay range for this role is: $118,450.00 - $236,900.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/27/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Software Engineering Leadership
REST API Design
Frontend Development
Direct Apply
Posted 8 days ago
CVS Health

Inventory Optimization Manager

CVS HealthAnywhereFull-time
View Job
Compensation$70K - 120K a year

Develop and implement strategies to improve inventory performance and lead cross-functional initiatives to drive enterprise transformation. | 5+ years in inventory or supply chain planning with proficiency in analytical tools and leadership of strategic initiatives. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary The Inventory Optimization Manager is responsible for developing, evaluating, and implementing strategies that improve inventory performance across the enterprise. This role partners closely with Supply Chain, Merchandising, Store Operations, Category Management, Finance, Technology, and external partners to balance product availability, sales growth, margin, inventory investment, and operational efficiency. In this highly visible role, the Manager will lead analytical efforts and cross-functional programs supporting key strategic initiatives including Product Lifecycle Management (PLM), On Shelf Availability (OSA), Next Generation Planning Solutions (NGPS), Sales, Inventory & Operations Planning (SIOP), inventory productivity programs, and other enterprise transformation efforts. The successful candidate will combine strong analytical skills, business acumen, project leadership, and communication capabilities to identify opportunities, build business cases, influence stakeholders, support testing and operational readiness, and drive execution of initiatives that improve inventory performance and customer experience across the CVS Health network. Key Responsibilities Inventory Strategy & Optimization Identify and evaluate opportunities to improve inventory productivity while maintaining or improving customer service levels. Analyze inventory, sales, forecast, service level, supply chain, and process performance metrics to identify risks and value creation opportunities. Develop recommendations that balance inventory investment, availability, sales, margin, and operational efficiency. Support enterprise inventory targets, long-range planning efforts, and working capital optimization programs. Strategic Initiative Leadership Lead and support high-impact initiatives related to PLM, OSA, NGPS, SIOP, replenishment optimization, inventory analytics, and forecasting enhancement. Coordinate workstreams across business, technology, vendor, and operational teams to ensure successful implementation and value realization. Support pilot design, testing, readiness, adoption, and post-implementation stabilization for new tools, processes, and capabilities. Help connect initiative objectives to measurable business outcomes, including availability, inventory productivity, planning accuracy, and operational efficiency. Analytics & Business Case Development Develop financial and operational business cases to support investment decisions and prioritization. Quantify expected benefits, risks, dependencies, implementation costs, and operational impacts for strategic initiatives. Create executive-level analysis, reporting, and presentations that support decision making and stakeholder alignment. Monitor initiative performance and track delivery against expected outcomes, milestones, and value commitments. Cross-Functional Partnership Partner with Supply Chain, Merchandising, Finance, Store Operations, Digital, Technology, and external partners to align priorities and drive results. Collaborate with vendors, solution providers, consulting partners, and supplier partners to identify opportunities and support implementation. Facilitate stakeholder discussions, summarize decisions, communicate progress, and help resolve issues or risks that could affect execution. Build trust and alignment across diverse teams through clear communication, strong follow-through, and fact-based recommendations. Process Improvement & Change Management Evaluate process improvement opportunities across planning, forecasting, replenishment, allocation, inventory, and operational execution. Support documentation, training, knowledge transfer, and adoption of new processes and tools. Translate business requirements into practical operating models, reporting needs, and readiness plans. Drive continuous improvement by surfacing lessons learned and embedding repeatable practices across initiatives. Qualifications Required Qualifications 5+ years of experience in Inventory Management, Supply Chain Planning, Demand Planning, Replenishment, SIOP/S&OP, Category Management, Supply Chain Analytics, Strategy, or related fields. 1+ years of hands-on Experience with Power BI, SQL, Python, Alteryx, Access, or other analytical tools. Experience leading complex cross-functional projects or strategic business initiatives. Up to 15% travel for meetings at our corporate office in Rhode Island. Preferred Qualifications Strong analytical skills with experience evaluating inventory, service level, forecasting, sales, and operational performance metrics. Experience building financial analyses, ROI models, and business cases. Ability to translate complex data into clear, actionable recommendations for business leaders. Advanced Microsoft Excel and PowerPoint skills. Strong communication, facilitation, and stakeholder management skills. Demonstrated ability to influence without direct authority and drive accountability across teams. Master's Degree in Supply Chain, Operations Research, Engineering, Analytics, Finance, or MBA. Experience with inventory optimization, replenishment, forecasting, allocation, or retail planning systems. Experience supporting large-scale transformation programs or technology implementations. Knowledge of retail supply chain processes including forecasting, replenishment, allocation, assortment planning, inventory management, and store execution. APICS/ASCM, CSCMP, Lean, Six Sigma, or related certifications. Experience operating within a SIOP, S&OP, or Integrated Business Planning environment. Strong understanding of the relationships between inventory planning, finance, merchandising, store operations, suppliers, and supply chain execution. Education Bachelor's degree preferred; equivalent experience may be considered. Anticipated Weekly Hours 40 Time Type Full time Pay Range The typical pay range for this role is: $66,330.00 - $145,860.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/24/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Inventory Optimization
Supply Chain Planning
Power BI
SQL
Python
Direct Apply
Posted 8 days ago
CVS Health

Staff Cloud Security Engineer- Vulnerability Management

CVS HealthAnywhereFull-time
View Job
Compensation$118K - 237K a year

Lead vulnerability management and cloud security programs, oversee compliance, and coordinate cross-functional teams to remediate security threats. | 7+ years in cloud/database security, 5+ years with cloud platforms and scripting, 3+ years vulnerability scanning, 2+ years Openshift/Kubernetes security, plus leadership and compliance expertise. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary Seeking a highly skilled Security Specialist with deep expertise in cloud and database security, hands-on experience with OpenShift, and a proven track record in operational vulnerability management and team leadership. This role will drive vulnerability remediation efforts across cloud platforms (AWS, Azure, GCP) and database environments, ensuring the protection of critical enterprise assets. The Security Specialist will serve as a technical advisor, championing secure configurations, leading strategic security initiatives, and fostering collaboration between security, operations, and development teams to deliver robust, enterprise-wide security solutions to remediate security threats. Key Responsibilities Cloud Security • Oversee the administration, and implementation of the vulnerability and Minimum Security Baseline program. • Acts as a SME (subject matter expertise) in Cloud Security area, offering solutions and recommendations to the operation teams. • Design, implement, and maintain security measures for cloud-based systems (AWS, Azure, GCP, Openshift) • Develop and enforce security policies and procedures for cloud platforms. • Manage cloud security monitoring, incident response, and remediation. • Work closely with cross-realm security teams to ensure adequate security solutions and controls are in place to meet business and regulatory requirements • Ensure compliance with regulatory requirements (GDPR, HIPAA, SOC 2, PCI-DSS). • Automate security processes and integrate with CI/CD pipelines. Database Security • Implement and maintain security controls for enterprise databases (on-premises, cloud, DBaaS). • Lead database security audits, risk assessments, and compliance initiatives. • Develop and enforce database access controls, encryption, and authentication solutions. • Collaborate with IT and development teams to integrate security throughout the software lifecycle. Openshift & Container Security • Manage and secure Openshift/Kubernetes clusters, including deployment, upgrades, and lifecycle management. • Implement RBAC, compliance controls, and vulnerability scanning for containerized environments. • Troubleshoot and resolve security issues across cluster, OS, network, and storage layers. • Support image scanning, import, and registry management in Openshift runtime projects. Vulnerability Management & Team Coordination • Lead vulnerability management programs, including regular scans, risk assessments, and remediation tracking. • Coordinate cross-functional teams to prioritize and remediate vulnerabilities. • Develop and maintain vulnerability management policies, procedures, and reporting. • Mentor and guide team members in security best practices and operational workflows. • Communicate security issues, risks, and recommendations to management and stakeholders. Required Qualifications • 7+ years in cloud security, database security, or related security roles. • 5+ years of experience with Cloud Platforms (AWS, Azure, GCP) and Database technologies. • 5+ years of experience in scripting and automation (Python, PowerShell, Bash, Terraform, Ansible). • 3+ years of experience with vulnerability scanning tools and security assessment techniques (Wiz, Qualys, Tenable, etc). • 2+ years of hands-on experience with Openshift/Kubernetes administration and security. Preferred Qualifications • Knowledge of regulatory compliance standards and frameworks (GDPR, HIPAA, PCI-DSS, NIST, ISO 27001). • Excellent communication, problem-solving, and team leadership skills. • Experience with database activity monitoring solutions (IBM Guardium, SIEM integration). • Familiarity with DevOps practices and CI/CD security integration. • Relevant certifications (CISSP, CCSP, AWS/Azure Security, Red Hat OpenShift Security) preferred. Education • Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience). Pay Range The Typical Pay Range For This Role Is $118,450.00 - $236,900.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great Benefits For Great People We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/04/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Cloud Security
Vulnerability Management
Compliance Frameworks
Information Security Leadership
Incident Response
Verified Source
Posted 12 days ago
CVS Health

AVP, Application Security

CVS HealthAnywhereFull-time
View Job
Compensation$185K - 376K a year

Lead enterprise application security strategy, manage security teams, and integrate security into software development lifecycle. | 12+ years in information security with 5+ years in application security leadership, strong technical software development background, and experience managing security tooling and compliance frameworks. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary CVS Health is seeking a polished and experienced security leader to serve as Associate Vice President of Application Security, responsible for defining and executing the enterprise strategy for securing software across its full development lifecycle. This role owns the policies, technical standards, and tooling that enable CVS Health's engineering teams to build and deploy secure applications at scale. The AVP will lead a high-performing team of application security engineers and architects, partner deeply with Developer Experience leadership to embed security seamlessly into agile development practices and serve as a trusted advisor to executive stakeholders on software security risk. This leader will balance targeted security outcomes with developer productivity, ensuring that security is an enabler — not a barrier — to innovation. Key Responsibilities Strategic Leadership • Define and own the enterprise application security strategy, roadmap, and policy framework, aligned with CVS Health's business objectives and regulatory obligations. • Establish and enforce technical standards for secure software development, including code scanning, code vulnerability management, and secure-by-design principles. • Serve as a subject matter expert and trusted advisor to senior technology and business executives on emerging application security risks, attack trends, and industry best practices. • Drive continuous improvement across the application security program through metrics, benchmarking, and innovation. Application Security Engineering & Controls • Secure Development Lifecycle (SDLC) Integration: Lead the integration of application security scanning, testing, and policy enforcement gates into CI/CD pipelines across the enterprise. Partner with Developer Experience leadership to ensure security tooling is frictionless, developer-friendly, and compatible with agile delivery practices. • Static Application Security Testing (SAST): Define strategy, standards, and tooling for enterprise-wide SAST scanning. Manage tuning of rulesets to reduce false positives, drive remediation workflows, and ensure coverage across all critical code repositories. • Dynamic Application Security Testing (DAST): Oversee DAST program covering pre-production and production environments. Establish automated scanning schedules, triage processes, and integration with enterprise vulnerability management platforms. • Web Application Firewall (WAF) Management: Own the strategy, configuration, and operations of the enterprise WAF platform. Define and maintain rule sets, monitor for emerging threats, and ensure alignment with zero-trust and defense-in-depth principles. • Code Repository Scanning: Implement and manage continuous scanning of source code repositories for secrets, misconfigurations, exposed credentials, and policy violations. Establish guardrails and automated enforcement to prevent insecure code from reaching production. • AI-Assisted Code Generation Security: Develop policies and technical controls to assess and govern security risks introduced by AI-assisted code generation tools (e.g., GitHub Copilot, generative AI coding assistants). Define standards for safe use and implement scanning capabilities to detect AI-generated code vulnerabilities. • Third-Party and Open-Source Software (SCA) Scanning: Manage the Software Composition Analysis (SCA) program to identify and remediate vulnerabilities in third-party libraries and open-source dependencies. Maintain visibility into the software supply chain and drive compliance with internal ingestion policies. • Content Delivery Network (CDN) Security Management: Oversee security configuration and policy enforcement for content delivery network infrastructure. Ensure CDN-layer protections — including DDoS mitigation, bot management, and TLS standards — are aligned with enterprise security policy. • Application Security Technology Stack: Own the full application security tooling portfolio. Manage vendor relationships, licensing, platform health, and roadmap alignment. Evaluate and introduce emerging technologies to improve coverage, automation, and developer experience. Governance & Compliance • Define and maintain application security policies, standards, and operational procedures. • Ensure compliance with applicable regulatory frameworks and industry standards, including HIPAA, PCI-DSS, CCPA, NIST SSDF, and OWASP. • Provide executive-level reporting and governance dashboards that communicate program health, risk posture, and remediation progress. • Establish and maintain a risk-based vulnerability management process focused specifically on software development vulnerabilities, including those introduced through code, dependencies, and the build and deployment pipeline, in partnership with peer security organizations. Leadership & Collaboration • Build, lead, and develop a high-performing team of application security engineers, architects, and program managers. • Partner closely with Developer Experience leadership to align security tooling and practices with developer workflows, ensuring security is integrated seamlessly into agile and DevSecOps pipelines. • Collaborate with Cyber Defense, Data Protection, Infrastructure Security, Legal, Compliance, and Technology leadership to deliver integrated security outcomes. • Partner with Chief Data and Technology Officers (CDTOs) across CVS Health business units to understand technology strategies, influence security-targeted outcomes, and ensure application security priorities are embedded within divisional roadmaps and investment decisions. • Foster a security-minded engineering culture through developer education, secure coding training, security champion programs, and engagement with engineering communities of practice. Key Performance Indicators (KPIs) • Pipeline Coverage: Percentage of active software development pipelines with integrated SAST, DAST, and SCA scanning controls. • Vulnerability Remediation SLA: Mean time to remediate (MTTR) critical and high application security vulnerabilities, tracked against defined SLAs. • Secrets & Policy Violations: Reduction in secrets exposed in code repositories and policy violations detected year-over-year. • WAF Effectiveness: Percentage of malicious web traffic blocked; reduction in application-layer incidents attributed to WAF-protected assets. • Third-Party Risk Coverage: Percentage of production applications with up-to-date SCA coverage and no unaddressed critical open-source vulnerabilities. • AI Code Security: Coverage rate of AI-assisted code generation under security policy and scanning controls. • Developer Experience Satisfaction: Developer NPS and feedback scores related to security tooling and friction within the SDLC. • Regulatory Compliance: Audit findings related to application security controls, targeting zero critical findings. • Program Adoption: Number of development teams operating under the secure SDLC framework and security champion program. • Roadmap Delivery: On-time completion of strategic application security initiatives and tooling milestones. Required Qualifications • 12+ years of progressive experience in information security, with at least 5 years in application security leadership roles. • Deep technical background in software development, including hands-on coding experience in one or more modern programming languages (e.g., Java, Python, Go, JavaScript, or similar). Candidates must bring developer-level fluency to credibly engage with engineering teams, evaluate code-level risks, and drive meaningful secure coding practices. • Demonstrated expertise in application security engineering and secure software development lifecycle (SDLC) practices, grounded in first-hand experience building or shipping software. • Strong understanding of software architecture patterns, CI/CD pipelines, containerization, and cloud-native development — with the ability to assess security implications at every layer of the stack. • Hands-on experience managing enterprise application security tooling, including SAST, DAST, SCA, WAF, and repository scanning platforms. • Deep knowledge of application security standards and frameworks, including OWASP Top 10, NIST SSDF, and relevant regulatory requirements (HIPAA, PCI-DSS, CCPA). • Proven ability to influence engineering culture and drive security adoption at scale within agile development environments. • Strong leadership skills with experience building and managing cross-functional technical teams and influencing senior stakeholders. • Excellent communication and presentation skills; ability to translate complex security concepts for both technical and non-technical audiences. Preferred Qualifications • Advanced degree in Computer Science, Information Security, or a related field. • Certifications such as CISSP, CSSLP, CISM, GWEB, or equivalent. • Experience in healthcare or other highly regulated industries. • Familiarity with AI/ML-driven security tooling and modern cloud-native application security architectures. • Experience implementing security programs within large-scale DevOps or platform engineering organizations. Education Bachelor's Degree Pay Range The Typical Pay Range For This Role Is $185,400.00 - $375,950.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great Benefits For Great People We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/13/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Application security leadership
Governance Risk and Compliance
Security program management
Verified Source
Posted 12 days ago
CVS Health

AVP, Application Security

CVS HealthAnywhereFull-time
View Job
Compensation$185K - 376K a year

Lead enterprise application security strategy and teams to secure software development lifecycle and ensure compliance. | 12+ years in information security with 5+ years in application security leadership, deep technical software development knowledge, and strong leadership skills. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary CVS Health is seeking a polished and experienced security leader to serve as Associate Vice President of Application Security, responsible for defining and executing the enterprise strategy for securing software across its full development lifecycle. This role owns the policies, technical standards, and tooling that enable CVS Health's engineering teams to build and deploy secure applications at scale. The AVP will lead a high-performing team of application security engineers and architects, partner deeply with Developer Experience leadership to embed security seamlessly into agile development practices and serve as a trusted advisor to executive stakeholders on software security risk. This leader will balance targeted security outcomes with developer productivity, ensuring that security is an enabler — not a barrier — to innovation. Key Responsibilities Strategic Leadership • Define and own the enterprise application security strategy, roadmap, and policy framework, aligned with CVS Health's business objectives and regulatory obligations. • Establish and enforce technical standards for secure software development, including code scanning, code vulnerability management, and secure-by-design principles. • Serve as a subject matter expert and trusted advisor to senior technology and business executives on emerging application security risks, attack trends, and industry best practices. • Drive continuous improvement across the application security program through metrics, benchmarking, and innovation. Application Security Engineering & Controls • Secure Development Lifecycle (SDLC) Integration: Lead the integration of application security scanning, testing, and policy enforcement gates into CI/CD pipelines across the enterprise. Partner with Developer Experience leadership to ensure security tooling is frictionless, developer-friendly, and compatible with agile delivery practices. • Static Application Security Testing (SAST): Define strategy, standards, and tooling for enterprise-wide SAST scanning. Manage tuning of rulesets to reduce false positives, drive remediation workflows, and ensure coverage across all critical code repositories. • Dynamic Application Security Testing (DAST): Oversee DAST program covering pre-production and production environments. Establish automated scanning schedules, triage processes, and integration with enterprise vulnerability management platforms. • Web Application Firewall (WAF) Management: Own the strategy, configuration, and operations of the enterprise WAF platform. Define and maintain rule sets, monitor for emerging threats, and ensure alignment with zero-trust and defense-in-depth principles. • Code Repository Scanning: Implement and manage continuous scanning of source code repositories for secrets, misconfigurations, exposed credentials, and policy violations. Establish guardrails and automated enforcement to prevent insecure code from reaching production. • AI-Assisted Code Generation Security: Develop policies and technical controls to assess and govern security risks introduced by AI-assisted code generation tools (e.g., GitHub Copilot, generative AI coding assistants). Define standards for safe use and implement scanning capabilities to detect AI-generated code vulnerabilities. • Third-Party and Open-Source Software (SCA) Scanning: Manage the Software Composition Analysis (SCA) program to identify and remediate vulnerabilities in third-party libraries and open-source dependencies. Maintain visibility into the software supply chain and drive compliance with internal ingestion policies. • Content Delivery Network (CDN) Security Management: Oversee security configuration and policy enforcement for content delivery network infrastructure. Ensure CDN-layer protections — including DDoS mitigation, bot management, and TLS standards — are aligned with enterprise security policy. • Application Security Technology Stack: Own the full application security tooling portfolio. Manage vendor relationships, licensing, platform health, and roadmap alignment. Evaluate and introduce emerging technologies to improve coverage, automation, and developer experience. Governance & Compliance • Define and maintain application security policies, standards, and operational procedures. • Ensure compliance with applicable regulatory frameworks and industry standards, including HIPAA, PCI-DSS, CCPA, NIST SSDF, and OWASP. • Provide executive-level reporting and governance dashboards that communicate program health, risk posture, and remediation progress. • Establish and maintain a risk-based vulnerability management process focused specifically on software development vulnerabilities, including those introduced through code, dependencies, and the build and deployment pipeline, in partnership with peer security organizations. Leadership & Collaboration • Build, lead, and develop a high-performing team of application security engineers, architects, and program managers. • Partner closely with Developer Experience leadership to align security tooling and practices with developer workflows, ensuring security is integrated seamlessly into agile and DevSecOps pipelines. • Collaborate with Cyber Defense, Data Protection, Infrastructure Security, Legal, Compliance, and Technology leadership to deliver integrated security outcomes. • Partner with Chief Data and Technology Officers (CDTOs) across CVS Health business units to understand technology strategies, influence security-targeted outcomes, and ensure application security priorities are embedded within divisional roadmaps and investment decisions. • Foster a security-minded engineering culture through developer education, secure coding training, security champion programs, and engagement with engineering communities of practice. Key Performance Indicators (KPIs) • Pipeline Coverage: Percentage of active software development pipelines with integrated SAST, DAST, and SCA scanning controls. • Vulnerability Remediation SLA: Mean time to remediate (MTTR) critical and high application security vulnerabilities, tracked against defined SLAs. • Secrets & Policy Violations: Reduction in secrets exposed in code repositories and policy violations detected year-over-year. • WAF Effectiveness: Percentage of malicious web traffic blocked; reduction in application-layer incidents attributed to WAF-protected assets. • Third-Party Risk Coverage: Percentage of production applications with up-to-date SCA coverage and no unaddressed critical open-source vulnerabilities. • AI Code Security: Coverage rate of AI-assisted code generation under security policy and scanning controls. • Developer Experience Satisfaction: Developer NPS and feedback scores related to security tooling and friction within the SDLC. • Regulatory Compliance: Audit findings related to application security controls, targeting zero critical findings. • Program Adoption: Number of development teams operating under the secure SDLC framework and security champion program. • Roadmap Delivery: On-time completion of strategic application security initiatives and tooling milestones. Required Qualifications • 12+ years of progressive experience in information security, with at least 5 years in application security leadership roles. • Deep technical background in software development, including hands-on coding experience in one or more modern programming languages (e.g., Java, Python, Go, JavaScript, or similar). Candidates must bring developer-level fluency to credibly engage with engineering teams, evaluate code-level risks, and drive meaningful secure coding practices. • Demonstrated expertise in application security engineering and secure software development lifecycle (SDLC) practices, grounded in first-hand experience building or shipping software. • Strong understanding of software architecture patterns, CI/CD pipelines, containerization, and cloud-native development — with the ability to assess security implications at every layer of the stack. • Hands-on experience managing enterprise application security tooling, including SAST, DAST, SCA, WAF, and repository scanning platforms. • Deep knowledge of application security standards and frameworks, including OWASP Top 10, NIST SSDF, and relevant regulatory requirements (HIPAA, PCI-DSS, CCPA). • Proven ability to influence engineering culture and drive security adoption at scale within agile development environments. • Strong leadership skills with experience building and managing cross-functional technical teams and influencing senior stakeholders. • Excellent communication and presentation skills; ability to translate complex security concepts for both technical and non-technical audiences. Preferred Qualifications • Advanced degree in Computer Science, Information Security, or a related field. • Certifications such as CISSP, CSSLP, CISM, GWEB, or equivalent. • Experience in healthcare or other highly regulated industries. • Familiarity with AI/ML-driven security tooling and modern cloud-native application security architectures. • Experience implementing security programs within large-scale DevOps or platform engineering organizations. Education Bachelor's Degree Pay Range The Typical Pay Range For This Role Is $185,400.00 - $375,950.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great Benefits For Great People We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/13/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Application Security Leadership
Governance Risk Compliance
Secure Software Development Lifecycle
Verified Source
Posted 12 days ago
CVS Health

Staff Cloud Security Engineer- Vulnerability Management

CVS HealthAnywhereFull-time
View Job
Compensation$118K - 237K a year

Lead vulnerability management and cloud security initiatives across multiple platforms, ensuring compliance and secure configurations while mentoring team members. | Requires 7+ years in cloud/database security, 5+ years with cloud platforms and scripting, 3+ years with vulnerability tools, 2+ years with Openshift, plus leadership and compliance knowledge. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary Seeking a highly skilled Security Specialist with deep expertise in cloud and database security, hands-on experience with OpenShift, and a proven track record in operational vulnerability management and team leadership. This role will drive vulnerability remediation efforts across cloud platforms (AWS, Azure, GCP) and database environments, ensuring the protection of critical enterprise assets. The Security Specialist will serve as a technical advisor, championing secure configurations, leading strategic security initiatives, and fostering collaboration between security, operations, and development teams to deliver robust, enterprise-wide security solutions to remediate security threats. Key Responsibilities Cloud Security • Oversee the administration, and implementation of the vulnerability and Minimum Security Baseline program. • Acts as a SME (subject matter expertise) in Cloud Security area, offering solutions and recommendations to the operation teams. • Design, implement, and maintain security measures for cloud-based systems (AWS, Azure, GCP, Openshift) • Develop and enforce security policies and procedures for cloud platforms. • Manage cloud security monitoring, incident response, and remediation. • Work closely with cross-realm security teams to ensure adequate security solutions and controls are in place to meet business and regulatory requirements • Ensure compliance with regulatory requirements (GDPR, HIPAA, SOC 2, PCI-DSS). • Automate security processes and integrate with CI/CD pipelines. Database Security • Implement and maintain security controls for enterprise databases (on-premises, cloud, DBaaS). • Lead database security audits, risk assessments, and compliance initiatives. • Develop and enforce database access controls, encryption, and authentication solutions. • Collaborate with IT and development teams to integrate security throughout the software lifecycle. Openshift & Container Security • Manage and secure Openshift/Kubernetes clusters, including deployment, upgrades, and lifecycle management. • Implement RBAC, compliance controls, and vulnerability scanning for containerized environments. • Troubleshoot and resolve security issues across cluster, OS, network, and storage layers. • Support image scanning, import, and registry management in Openshift runtime projects. Vulnerability Management & Team Coordination • Lead vulnerability management programs, including regular scans, risk assessments, and remediation tracking. • Coordinate cross-functional teams to prioritize and remediate vulnerabilities. • Develop and maintain vulnerability management policies, procedures, and reporting. • Mentor and guide team members in security best practices and operational workflows. • Communicate security issues, risks, and recommendations to management and stakeholders. Required Qualifications • 7+ years in cloud security, database security, or related security roles. • 5+ years of experience with Cloud Platforms (AWS, Azure, GCP) and Database technologies. • 5+ years of experience in scripting and automation (Python, PowerShell, Bash, Terraform, Ansible). • 3+ years of experience with vulnerability scanning tools and security assessment techniques (Wiz, Qualys, Tenable, etc). • 2+ years of hands-on experience with Openshift/Kubernetes administration and security. Preferred Qualifications • Knowledge of regulatory compliance standards and frameworks (GDPR, HIPAA, PCI-DSS, NIST, ISO 27001). • Excellent communication, problem-solving, and team leadership skills. • Experience with database activity monitoring solutions (IBM Guardium, SIEM integration). • Familiarity with DevOps practices and CI/CD security integration. • Relevant certifications (CISSP, CCSP, AWS/Azure Security, Red Hat OpenShift Security) preferred. Education • Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience). Pay Range The Typical Pay Range For This Role Is $118,450.00 - $236,900.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great Benefits For Great People We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/04/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

cloud security
vulnerability management
openshift
AWS
Azure
GCP
database security
automation scripting
team leadership
Verified Source
Posted 12 days ago
CH

Staff Cloud Security Engineer- Vulnerability Management

CVS HealthAnywhereFull-time
View Job
Compensation$118K - 237K a year

Lead vulnerability management and cloud security initiatives including policy enforcement, remediation, and team coordination. | 7+ years in cloud and database security, experience with AWS, Azure, GCP, Openshift, scripting, vulnerability scanning, and team leadership. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary Seeking a highly skilled Security Specialist with deep expertise in cloud and database security, hands-on experience with OpenShift, and a proven track record in operational vulnerability management and team leadership. This role will drive vulnerability remediation efforts across cloud platforms (AWS, Azure, GCP) and database environments, ensuring the protection of critical enterprise assets. The Security Specialist will serve as a technical advisor, championing secure configurations, leading strategic security initiatives, and fostering collaboration between security, operations, and development teams to deliver robust, enterprise-wide security solutions to remediate security threats. Key Responsibilities Cloud Security • Oversee the administration, and implementation of the vulnerability and Minimum Security Baseline program. • Acts as a SME (subject matter expertise) in Cloud Security area, offering solutions and recommendations to the operation teams. • Design, implement, and maintain security measures for cloud-based systems (AWS, Azure, GCP, Openshift) • Develop and enforce security policies and procedures for cloud platforms. • Manage cloud security monitoring, incident response, and remediation. • Work closely with cross-realm security teams to ensure adequate security solutions and controls are in place to meet business and regulatory requirements • Ensure compliance with regulatory requirements (GDPR, HIPAA, SOC 2, PCI-DSS). • Automate security processes and integrate with CI/CD pipelines. Database Security • Implement and maintain security controls for enterprise databases (on-premises, cloud, DBaaS). • Lead database security audits, risk assessments, and compliance initiatives. • Develop and enforce database access controls, encryption, and authentication solutions. • Collaborate with IT and development teams to integrate security throughout the software lifecycle. Openshift & Container Security • Manage and secure Openshift/Kubernetes clusters, including deployment, upgrades, and lifecycle management. • Implement RBAC, compliance controls, and vulnerability scanning for containerized environments. • Troubleshoot and resolve security issues across cluster, OS, network, and storage layers. • Support image scanning, import, and registry management in Openshift runtime projects. Vulnerability Management & Team Coordination • Lead vulnerability management programs, including regular scans, risk assessments, and remediation tracking. • Coordinate cross-functional teams to prioritize and remediate vulnerabilities. • Develop and maintain vulnerability management policies, procedures, and reporting. • Mentor and guide team members in security best practices and operational workflows. • Communicate security issues, risks, and recommendations to management and stakeholders. Required Qualifications • 7+ years in cloud security, database security, or related security roles. • 5+ years of experience with Cloud Platforms (AWS, Azure, GCP) and Database technologies. • 5+ years of experience in scripting and automation (Python, PowerShell, Bash, Terraform, Ansible). • 3+ years of experience with vulnerability scanning tools and security assessment techniques (Wiz, Qualys, Tenable, etc). • 2+ years of hands-on experience with Openshift/Kubernetes administration and security. Preferred Qualifications • Knowledge of regulatory compliance standards and frameworks (GDPR, HIPAA, PCI-DSS, NIST, ISO 27001). • Excellent communication, problem-solving, and team leadership skills. • Experience with database activity monitoring solutions (IBM Guardium, SIEM integration). • Familiarity with DevOps practices and CI/CD security integration. • Relevant certifications (CISSP, CCSP, AWS/Azure Security, Red Hat OpenShift Security) preferred. Education • Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience). Pay Range The Typical Pay Range For This Role Is $118,450.00 - $236,900.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great Benefits For Great People We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/04/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Cloud Security
Vulnerability Management
Compliance Frameworks
Verified Source
Posted 12 days ago
CVS Health

AVP, Application Security

CVS HealthAnywhereFull-time
View Job
Compensation$185K - 376K a year

Lead enterprise application security strategy, manage security teams, and integrate security into software development lifecycle. | 12+ years in information security with 5+ years in application security leadership, deep technical software development background, and strong leadership and communication skills. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary CVS Health is seeking a polished and experienced security leader to serve as Associate Vice President of Application Security, responsible for defining and executing the enterprise strategy for securing software across its full development lifecycle. This role owns the policies, technical standards, and tooling that enable CVS Health's engineering teams to build and deploy secure applications at scale. The AVP will lead a high-performing team of application security engineers and architects, partner deeply with Developer Experience leadership to embed security seamlessly into agile development practices and serve as a trusted advisor to executive stakeholders on software security risk. This leader will balance targeted security outcomes with developer productivity, ensuring that security is an enabler — not a barrier — to innovation. Key Responsibilities Strategic Leadership • Define and own the enterprise application security strategy, roadmap, and policy framework, aligned with CVS Health's business objectives and regulatory obligations. • Establish and enforce technical standards for secure software development, including code scanning, code vulnerability management, and secure-by-design principles. • Serve as a subject matter expert and trusted advisor to senior technology and business executives on emerging application security risks, attack trends, and industry best practices. • Drive continuous improvement across the application security program through metrics, benchmarking, and innovation. Application Security Engineering & Controls • Secure Development Lifecycle (SDLC) Integration: Lead the integration of application security scanning, testing, and policy enforcement gates into CI/CD pipelines across the enterprise. Partner with Developer Experience leadership to ensure security tooling is frictionless, developer-friendly, and compatible with agile delivery practices. • Static Application Security Testing (SAST): Define strategy, standards, and tooling for enterprise-wide SAST scanning. Manage tuning of rulesets to reduce false positives, drive remediation workflows, and ensure coverage across all critical code repositories. • Dynamic Application Security Testing (DAST): Oversee DAST program covering pre-production and production environments. Establish automated scanning schedules, triage processes, and integration with enterprise vulnerability management platforms. • Web Application Firewall (WAF) Management: Own the strategy, configuration, and operations of the enterprise WAF platform. Define and maintain rule sets, monitor for emerging threats, and ensure alignment with zero-trust and defense-in-depth principles. • Code Repository Scanning: Implement and manage continuous scanning of source code repositories for secrets, misconfigurations, exposed credentials, and policy violations. Establish guardrails and automated enforcement to prevent insecure code from reaching production. • AI-Assisted Code Generation Security: Develop policies and technical controls to assess and govern security risks introduced by AI-assisted code generation tools (e.g., GitHub Copilot, generative AI coding assistants). Define standards for safe use and implement scanning capabilities to detect AI-generated code vulnerabilities. • Third-Party and Open-Source Software (SCA) Scanning: Manage the Software Composition Analysis (SCA) program to identify and remediate vulnerabilities in third-party libraries and open-source dependencies. Maintain visibility into the software supply chain and drive compliance with internal ingestion policies. • Content Delivery Network (CDN) Security Management: Oversee security configuration and policy enforcement for content delivery network infrastructure. Ensure CDN-layer protections — including DDoS mitigation, bot management, and TLS standards — are aligned with enterprise security policy. • Application Security Technology Stack: Own the full application security tooling portfolio. Manage vendor relationships, licensing, platform health, and roadmap alignment. Evaluate and introduce emerging technologies to improve coverage, automation, and developer experience. Governance & Compliance • Define and maintain application security policies, standards, and operational procedures. • Ensure compliance with applicable regulatory frameworks and industry standards, including HIPAA, PCI-DSS, CCPA, NIST SSDF, and OWASP. • Provide executive-level reporting and governance dashboards that communicate program health, risk posture, and remediation progress. • Establish and maintain a risk-based vulnerability management process focused specifically on software development vulnerabilities, including those introduced through code, dependencies, and the build and deployment pipeline, in partnership with peer security organizations. Leadership & Collaboration • Build, lead, and develop a high-performing team of application security engineers, architects, and program managers. • Partner closely with Developer Experience leadership to align security tooling and practices with developer workflows, ensuring security is integrated seamlessly into agile and DevSecOps pipelines. • Collaborate with Cyber Defense, Data Protection, Infrastructure Security, Legal, Compliance, and Technology leadership to deliver integrated security outcomes. • Partner with Chief Data and Technology Officers (CDTOs) across CVS Health business units to understand technology strategies, influence security-targeted outcomes, and ensure application security priorities are embedded within divisional roadmaps and investment decisions. • Foster a security-minded engineering culture through developer education, secure coding training, security champion programs, and engagement with engineering communities of practice. Key Performance Indicators (KPIs) • Pipeline Coverage: Percentage of active software development pipelines with integrated SAST, DAST, and SCA scanning controls. • Vulnerability Remediation SLA: Mean time to remediate (MTTR) critical and high application security vulnerabilities, tracked against defined SLAs. • Secrets & Policy Violations: Reduction in secrets exposed in code repositories and policy violations detected year-over-year. • WAF Effectiveness: Percentage of malicious web traffic blocked; reduction in application-layer incidents attributed to WAF-protected assets. • Third-Party Risk Coverage: Percentage of production applications with up-to-date SCA coverage and no unaddressed critical open-source vulnerabilities. • AI Code Security: Coverage rate of AI-assisted code generation under security policy and scanning controls. • Developer Experience Satisfaction: Developer NPS and feedback scores related to security tooling and friction within the SDLC. • Regulatory Compliance: Audit findings related to application security controls, targeting zero critical findings. • Program Adoption: Number of development teams operating under the secure SDLC framework and security champion program. • Roadmap Delivery: On-time completion of strategic application security initiatives and tooling milestones. Required Qualifications • 12+ years of progressive experience in information security, with at least 5 years in application security leadership roles. • Deep technical background in software development, including hands-on coding experience in one or more modern programming languages (e.g., Java, Python, Go, JavaScript, or similar). Candidates must bring developer-level fluency to credibly engage with engineering teams, evaluate code-level risks, and drive meaningful secure coding practices. • Demonstrated expertise in application security engineering and secure software development lifecycle (SDLC) practices, grounded in first-hand experience building or shipping software. • Strong understanding of software architecture patterns, CI/CD pipelines, containerization, and cloud-native development — with the ability to assess security implications at every layer of the stack. • Hands-on experience managing enterprise application security tooling, including SAST, DAST, SCA, WAF, and repository scanning platforms. • Deep knowledge of application security standards and frameworks, including OWASP Top 10, NIST SSDF, and relevant regulatory requirements (HIPAA, PCI-DSS, CCPA). • Proven ability to influence engineering culture and drive security adoption at scale within agile development environments. • Strong leadership skills with experience building and managing cross-functional technical teams and influencing senior stakeholders. • Excellent communication and presentation skills; ability to translate complex security concepts for both technical and non-technical audiences. Preferred Qualifications • Advanced degree in Computer Science, Information Security, or a related field. • Certifications such as CISSP, CSSLP, CISM, GWEB, or equivalent. • Experience in healthcare or other highly regulated industries. • Familiarity with AI/ML-driven security tooling and modern cloud-native application security architectures. • Experience implementing security programs within large-scale DevOps or platform engineering organizations. Education Bachelor's Degree Pay Range The Typical Pay Range For This Role Is $185,400.00 - $375,950.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great Benefits For Great People We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/13/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Application Security Leadership
Governance Risk Compliance
Security Program Management
Verified Source
Posted 12 days ago
CVS Health

Staff Cloud Security Engineer- Vulnerability Management

CVS HealthAnywhereFull-time
View Job
Compensation$118K - 237K a year

Lead vulnerability management and cloud security initiatives across multiple platforms, ensuring compliance and secure configurations while mentoring teams. | Requires 7+ years in cloud/database security, experience with cloud platforms and Openshift, scripting skills, vulnerability scanning expertise, and leadership capabilities. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary Seeking a highly skilled Security Specialist with deep expertise in cloud and database security, hands-on experience with OpenShift, and a proven track record in operational vulnerability management and team leadership. This role will drive vulnerability remediation efforts across cloud platforms (AWS, Azure, GCP) and database environments, ensuring the protection of critical enterprise assets. The Security Specialist will serve as a technical advisor, championing secure configurations, leading strategic security initiatives, and fostering collaboration between security, operations, and development teams to deliver robust, enterprise-wide security solutions to remediate security threats. Key Responsibilities Cloud Security • Oversee the administration, and implementation of the vulnerability and Minimum Security Baseline program. • Acts as a SME (subject matter expertise) in Cloud Security area, offering solutions and recommendations to the operation teams. • Design, implement, and maintain security measures for cloud-based systems (AWS, Azure, GCP, Openshift) • Develop and enforce security policies and procedures for cloud platforms. • Manage cloud security monitoring, incident response, and remediation. • Work closely with cross-realm security teams to ensure adequate security solutions and controls are in place to meet business and regulatory requirements • Ensure compliance with regulatory requirements (GDPR, HIPAA, SOC 2, PCI-DSS). • Automate security processes and integrate with CI/CD pipelines. Database Security • Implement and maintain security controls for enterprise databases (on-premises, cloud, DBaaS). • Lead database security audits, risk assessments, and compliance initiatives. • Develop and enforce database access controls, encryption, and authentication solutions. • Collaborate with IT and development teams to integrate security throughout the software lifecycle. Openshift & Container Security • Manage and secure Openshift/Kubernetes clusters, including deployment, upgrades, and lifecycle management. • Implement RBAC, compliance controls, and vulnerability scanning for containerized environments. • Troubleshoot and resolve security issues across cluster, OS, network, and storage layers. • Support image scanning, import, and registry management in Openshift runtime projects. Vulnerability Management & Team Coordination • Lead vulnerability management programs, including regular scans, risk assessments, and remediation tracking. • Coordinate cross-functional teams to prioritize and remediate vulnerabilities. • Develop and maintain vulnerability management policies, procedures, and reporting. • Mentor and guide team members in security best practices and operational workflows. • Communicate security issues, risks, and recommendations to management and stakeholders. Required Qualifications • 7+ years in cloud security, database security, or related security roles. • 5+ years of experience with Cloud Platforms (AWS, Azure, GCP) and Database technologies. • 5+ years of experience in scripting and automation (Python, PowerShell, Bash, Terraform, Ansible). • 3+ years of experience with vulnerability scanning tools and security assessment techniques (Wiz, Qualys, Tenable, etc). • 2+ years of hands-on experience with Openshift/Kubernetes administration and security. Preferred Qualifications • Knowledge of regulatory compliance standards and frameworks (GDPR, HIPAA, PCI-DSS, NIST, ISO 27001). • Excellent communication, problem-solving, and team leadership skills. • Experience with database activity monitoring solutions (IBM Guardium, SIEM integration). • Familiarity with DevOps practices and CI/CD security integration. • Relevant certifications (CISSP, CCSP, AWS/Azure Security, Red Hat OpenShift Security) preferred. Education • Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience). Pay Range The Typical Pay Range For This Role Is $118,450.00 - $236,900.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great Benefits For Great People We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/04/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Cloud Security
Vulnerability Management
Openshift/Kubernetes Security
AWS Azure GCP
Security Compliance
Verified Source
Posted 13 days ago
CVS Health

Senior Manager, Supply Chain - Trade

CVS HealthCumberland, Rhode IslandFull-time
View Job
Compensation$85K - 120K a year

Lead pharmaceutical wholesaler supply relations team focusing on contracts, compliance audits, and financial cost modeling. | 7+ years experience with vendor management, financial modeling, project management, and proficiency in Excel and Access. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Duties & Responsibilities: Supporting the day-to-day pharmaceutical wholesaler supply relations team with a focus on being the lead for CVS’ medical supply wholesaler contracts Weekly service level reporting on specialty, mail and generic preferred and non-preferred sourcing. Collaborate closely with key contacts at wholesalers as well as internal various internal stakeholders in finance, operations, legal, and trade. Identifying, partnering, and driving wholesaler performance opportunities, contractual purchasing, and service level compliance. Perform audits to ensure contractual compliance that includes but is not limit GPO maintenance, purchase discounts, and rebates. Maintaining a knowledge of the pharmaceutical wholesaler landscape that includes ensuring adherence to contractual obligations and ensuring consistency in delivered services across wholesalers Develop cost models as well as perform operational & financial impact analysis in reaction to market dynamics & contractual changes Preparing, revising, and making recommendations within the RFP and contractual language The successful candidate will: Be a self-starter with a high level of confidence and demonstrate ability to perform in a fast-pace healthcare business environment Be well versed in Microsoft Excel with a working knowledge of Microsoft Access Have excellent written, verbal, and presentation skills Possess good analytical knowledge base and financial acumen with shown ability to summarize data into key facts and insights Have excellent organizational and time management skills with an ability to successfully balance business priorities and maintain a sense of urgency. Required qualifications: Vendor relationship management experience Financial modelling experience Project management experience 7+ years of overall related experience *This position will be located in Cumberland, Rhode Island on a Hybrid/Remote schedule Pay Range The typical pay range for this role is: $82,940.00 - $182,549.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/10/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Vendor Relationship Management
Financial Modelling
Project Management
Microsoft Excel
Microsoft Access
Direct Apply
Posted 13 days ago
CVS Health

Sr Manager - Corporate Compliance

CVS HealthColumbia, Maryland, MarylandFull-time
View Job
Compensation$85K - 120K a year

Lead compliance program ensuring regulatory adherence and manage audits and risk mitigation for Medicaid health plan. | 7+ years healthcare compliance or 5+ with advanced degree, project management experience, bachelor's required, master's preferred. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary ***This position is to be filled within the state of Maryland This role leads and manages the compliance program for Aetna's Maryland Medicaid health plan. The Compliance Officer ensures the health plan follows all state Medicaid regulations, contract requirements, and company policies. The position works closely with state agencies, internal business partners, and compliance team members to identify risks, manage audits, and promote ethical and compliant operations. Key Responsibilities Serve as the Compliance Officer for Aetna's Maryland Medicaid health plan. Act as the primary contact with the Maryland Medicaid agency for compliance and contract-related matters. Track, monitor, and submit required regulatory reports and responses on time. Lead preparation and coordination for state audits, including corrective action plans and issue resolution. Manage all aspects of the Medicaid compliance program. Research regulatory requirements and provide recommendations to support compliant business practices. Draft and coordinate responses to inquiries and requests from state Medicaid agencies. Maintain expert knowledge of Medicaid regulations, contracts, and program requirements. Serve as a compliance resource for staff, providing guidance, education, and training. Maintain compliance tools, risk assessments, reporting systems, and tracking processes. Identify compliance risks, conduct monitoring activities, and recommend corrective actions. Support business teams in developing solutions to address compliance concerns. Utilize compliance management tools, including Microsoft Office and Archer. Build and maintain strong relationships with internal and external stakeholders. Provide guidance and coaching to less experienced team members. Perform other duties as assigned. Required Qualifications 7+ years of compliance experience in healthcare, managed care, insurance, or a related field. Candidates with an advanced degree may qualify with 5+ years of relevant experience. Project management experience. Preferred Qualifications Experience with Medicaid or Medicaid managed care programs. Experience supporting audits or regulatory reviews. Bachelor's degree in Public Policy, Government Affairs, Healthcare Administration, Public Administration, or a related field. Master's degree or Juris Doctor (JD). Education Bachelor degree OR equivalent experience. Pay Range The typical pay range for this role is: $82,940.00 - $182,549.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/05/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Compliance Management
Audit Coordination
Risk Assessment
Direct Apply
Posted 13 days ago
CVS Health

Manager - Cyber Resilience

CVS HealthPennsylvaniaFull-time
View Job
Compensation$70K - 120K a year

Defines and executes strategic operational activities for cyber resiliency within the Cybersecurity GRC team, managing procedures, controls, and reporting to ensure compliance with NIST frameworks and coordinating resiliency testing across the enterprise. | Requires 5+ years of experience in cyber resiliency, risk management, or information security, with expertise in compliance frameworks and audit methodologies, a bachelor's degree or equivalent experience, and technical knowledge of cloud technologies. | We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary Defines operational activities and executes on strategic direction related to Cyber Resiliency for CVS Health’s Digital, Data, Analytics & Technology (DDAT) Cybersecurity GRC team, guiding colleagues in facilitating cyber resiliency activities across the enterprise. Manages, develops and implements procedures, controls, and reporting to ensure compliance with NIST Cyber resiliency frameworks. Consults on efforts to continuously improve internal controls, processes, and systems to enhance the effectiveness and efficiency for the program. Partners with IT and business colleagues to educate on cyber resiliency and provide actionable metrics that measure the effectiveness of controls. Coordinate and manage activities of process owners to support cyber resiliency testing, including supporting audit requests and tracking remediation. Partner with key stakeholders, including senior management, Legal, Internal Audit, and external assessors, to ensure alignment and support of the cyber resiliency Program. Responsibilities: Managing and executing procedures to facilitate and support various cybersecurity resiliency activities. Establishes schedules and plans to ensure deadlines are being met. Develops efficient processes to facilitate and support regulatory, internal audit and industry standard assessments and audits. Provides coaching, feedback, and educates stakeholders and colleagues relative to cyber resiliency requirements and industry best practices. Defines or develops risk management policies and procedures to support the implementation of cyber resiliency processes and controls across the enterprise Oversees preparation and submission of cyber resiliency metrics and reports to management, Audit Services, external auditors/assessors, and regulators. Oversees assessments to measure the effectiveness of cyber resiliency controls and provides results back to responsible party/owner Educates key stakeholders on risk management frameworks and top risks related to the system(s) or Line of Business for cyber resilience Communicating and contributing to broad secure architectural solutions for Cyber Resiliency functions such as Incident Response, Disaster Recovery, and Business Continuity Required Qualifications: 5+ years of experience in cyber resiliency related activities, internal audit, external assessments, risk management, regulatory compliance, healthcare industry program management and/or information security in a corporate environment 3+ years of experience in understanding of cyber security compliance frameworks including its requirements, regulations, and implications for financial reporting, program management and internal controls. 3+ years of experience in audit methodologies, internal control frameworks, risks assessments, project management and control testing techniques. 1+ years of technical experience in cloud technologies 1+ years of program management including strategic planning, decision-making, and project management Preferred Qualifications: Strong understanding of relevant regulations and frameworks aligning to NIST and ISO Strong analytical and problem-solving skills with the ability to analyze and interpret complex regulations, operational data, trends, assess risks effectively, and make recommendations for improvement. Exceptional interpersonal skills with the ability to collaborate across departments and influence stakeholders at all levels Demonstrated ability to collaborate effectively with cross-functional teams, build relationships with key stakeholders, and influence others to achieve compliance objectives. Education: Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience) Anticipated Weekly Hours 40 Time Type Full time Pay Range The typical pay range for this role is: $83,430.00 - $222,480.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 08/10/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Cyber Resilience
NIST Framework
ISO Framework
Risk Management
Internal Audit
Regulatory Compliance
Cloud Technologies
Program Management
Incident Response
Disaster Recovery
Business Continuity
Control Testing
Stakeholder Management
Strategic Planning
Analytical Skills
Problem Solving
Direct Apply
Posted 14 days ago

Ready to join CVS Health?

Create tailored applications specifically for CVS Health with our AI-powered resume builder

Get Started for Free

Ready to have AI work for you in your job search?

Sign-up for free and start using JobLogr today!

Get Started »
JobLogr badgeTinyLaunch BadgeJobLogr - AI Job Search Tools to Land Your Next Job Faster than Ever | Product Hunt