Senior Staff Cyber Security Program Manager
GE HealthCare.com
Office
01
Full Time
Job Description Summary
As a Senior Program Manager, you will lead cross-functional initiatives to deliver high-impact cybersecurity and privacy solutions. You will orchestrateprogram strategy, execution, and continuous improvement for our team's core activities. This role demands a strategic thinker with deep expertise in program management, cybersecurity domains, and emerging technologies like GenAI. You will collaborate with engineering, product, compliance, and stakeholder teams to ensure our programs align with organizational goals, mitigate risks, and drive innovation in secure development practices.
GE Healthcare is a leading global medical technology and digital solutions innovator. Our mission is to improve lives in the moments that matter. Unlock your ambition, turn ideas into world-changing realities, and join an organization where every voice makes a difference, and every difference builds a healthier world.
Job Description
Roles And Responsibilities:
- Program Leadership and Strategy: Define and own the roadmap for cybersecurity testing programs, GenAI tool development for privacy and security use cases, SBOM generation tools, regular security scanning initiatives, and SOUP lifecycle management. Align programs with business objectives, regulatory requirements (e.g., NIST, GDPR, HIPAA), and industry standards (e.g., OWASP, ISO 27001).
- Execution and Delivery: Manage end-to-end program lifecycles, including scoping, resource allocation, budgeting, timelines, and risk mitigation. Oversee multiple concurrent projects, ensuring on-time, on-budget delivery of tools and assessments that enhance security posture.
- Cross-Functional Collaboration: Partner with engineering leads, data scientists, compliance experts, and external vendors to integrate GenAI capabilities into privacy assessment workflows and automate SBOM/security scan processes. Facilitate agile ceremonies, stakeholder communications, and issue resolution to foster team efficiency.
- Risk Management and Compliance: Identify and address program risks related to cybersecurity threats, data privacy, and supply chain vulnerabilities (e.g., SOUP dependencies). Implement metrics and KPIs to track program health, such as scan coverage, tool adoption rates, and vulnerability resolution times.
- Innovation and Process Improvement: Drive adoption of best practices in program management (e.g., SAFe, PMP methodologies) tailored to tech-heavy environments. Champion continuous improvement by incorporating feedback loops, post-mortems, and emerging trends in GenAI for security applications.
- Team Development: Mentor junior program managers and team members, build high performing teams, and promote a culture of security-first innovation. Conduct performance reviews and support professional growth aligned with team goals.
- Reporting and Governance: Prepare executive-level reports, dashboards, and presentations on program status, outcomes, and ROI. Ensure adherence to internal governance and audit requirements. Required Qualifications
Educational Qualifications:
- Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. PMP, PgMP, or equivalent certification preferred; advanced degree (MS/MBA) a plus.
Required Skills:
- 12+ years' experience in program/project management, with at least 7 years in cybersecurity, software development, or privacy-focused tech environments. Proven track record managing complex, multi-stakeholder programs involving AI/ML tools, security scanning, or compliance frameworks.
- Strong understanding of cybersecurity testing methodologies (e.g., penetration testing, vulnerability assessments), GenAI applications in security/privacy (e.g., anomaly detection, automated redaction), SBOM standards (e.g., CycloneDX, SPDX), security scanning tools (e.g., SAST/DAST), and SOUP lifecycle management principles.
- Expertise in agile/hybrid methodologies, JIRA/Confluence, or similar tools for program tracking.
- Excellent communication and influence skills for engaging technical and non-technical audiences.
- Proficiency in risk assessment frameworks and metrics-driven decision-making.
- Ability to thrive in ambiguous, high-pressure settings with a focus on results.
- Soft Skills: Strategic mindset, problem-solving acumen, and a passion for cybersecurity innovation. Experience in regulated industries (e.g., healthcare, finance) is highly desirable. Preferred Qualifications
- Experience with GenAI frameworks (e.g., LangChain, Hugging Face) applied to security use cases.
- Familiarity with supply chain security tools (e.g., Dependency-Track, Syft) and SOUP detection/mitigation strategies.
- Background in DevSecOps pipelines and CI/CD integration for security tools.
Good To Have:
- Certification in cybersecurity (e.g., CISSP, CISM) or AI ethics/privacy (e.g., IAPP).
Inclusion And Diversity
GE Healthcare is an Equal Opportunity Employer where inclusion matters. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
We expect all employees to live and breathe our behaviors: to act with humility and build trust; lead with transparency; deliver with focus, and drive ownership – always with unyielding integrity.
Our total rewards are designed to unlock your ambition by giving you the boost and flexibility you need to turn your ideas into world-changing realities. Our salary and benefits are everything you’d expect from an organization with global strength and scale, and you’ll be surrounded by career opportunities in a culture that fosters care, collaboration and support.
#Everyroleisvital
#Li-Hybrid
#Li-Sm1
Additional Information
Relocation Assistance Provided: Yes
