Cyber Security Strategy Planning and Program Manager

Regions Bank
Birmingham, AL, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$134,051.0 - $172,590.0
Working hours
Regular working hours

Tech stack

Cyber Security Information Technology Audit Open Web Application Security Software Engineering Data Logging Software Security

Job description

Regions is dedicated to taking appropriate steps to safeguard and protect private and personally identifiable information you submit. The information that you submit will be collected and reviewed by associates, consultants, and vendors of Regions in order to evaluate your qualifications and experience for job opportunities and will not be used for marketing purposes, sold, or shared outside of Regions unless required by law. Such information will be stored in accordance with regulatory requirements and in conjunction with Regions’ Retention Schedule for a minimum of three years. You may review, modify, or update your information by visiting and logging into the careers section of the system., At Regions, the Cyber Security Strategy Planning and Program Manager develops and maintains cyber security plans, strategies, and policies to support and align cyber security initiatives and regulatory compliance. This position leads cyber security strategic initiatives that impact people, processes, and technology. This position also collaborates with internal resources and teams across the enterprise to drive change within the organization., * Develops policies, plans, and strategies in compliance with laws, regulations, existing policies, and standards in support of organizational cyber security activities

  • Supports the development of the cyber security strategic plan and vision in collaboration with the Chief Information Security Officer (CISO), Deputy CISO, and other applicable senior cyber security managers
  • Leads various aspects of cyber security transformation by executing related strategic initiatives
  • Leverages best practices and participates in knowledge sharing, utilizing technical skills and knowledge from prior experience
  • Conducts communication, training, and coaching for stakeholder groups to gain buy-in and ensure alignment of cyber security risk management activities
  • Develops and deploys mechanisms for the cyber security team to monitor and measure success of implemented programs, as well as identify necessary changes and/or improvements
  • Communicates with Legal and Procurement teams regarding strategy changes
  • Ensures compliance with risk management programs, rules and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices

This position is exempt from timekeeping requirements under the Fair Labor Standards Act and is not eligible for overtime pay.

Requirements

  • Bachelor’s degree in software development, management information systems, information technology audit, or related field and eight (8) years of related experience
  • Or High School Diploma or GED and twelve (12) years of related experience
  • Experience with cyber security projects and/or initiatives

Skills and Competencies

  • Ability to interpret and ensure compliance with applicable rules, regulations, and industry guidance
  • Knowledge of application security risks (e.g. Open Web Application Security Project (OWASP) Top 10)
  • Knowledge of cyber security and privacy principles and best practices
  • Knowledge of cyber security- and privacy-related laws, regulations, policies, and ethics
  • Knowledge of cyber security threats and vulnerabilities, including those related to systems and applications (e.g. buffer overflow, mobile code, cross-site scripting)
  • Knowledge of emerging cyber security technologies
  • Knowledge of emerging technologies that have potential for exploitation
  • Knowledge of external organizations and academic institutions with cyber security focuses (e.g. cyber security curriculum/training, research and development)
  • Knowledge of full-spectrum cyber security capabilities (e.g. attack, defense, exploitation)
  • Knowledge of how cyber security lapses impact operational activities
  • Knowledge of industry indicators useful for identifying technology trends

We’re seeking a strategic storyteller who can bring our cyber security narrative to life for executive and enterprise audiences. In this role, you’ll curate and synthesize complex cybersecurity initiatives into clear, compelling communications that articulate our strategic vision. You’ll immerse yourself in our cyber security organization, connect the dots across programs, and craft a cohesive story that informs, engages, and influences leadership. The ideal candidate combines strong narrative development skills with a deep understanding of cybersecurity concepts, enabling them to guide how we communicate our priorities, progress, and long-term direction.

Preferred Qualifications:

  • Exceptional storytelling ability-turning technical cybersecurity topics into clear, compelling narratives
  • Strong executive-level communication skills (written, visual, and verbal)
  • Ability to craft messaging for different audiences, especially senior leadership
  • Skilled at simplifying complexity without losing accuracy

This position is intended to be onsite, now or in the near future . Associates will have regular work hours, including full days in the office three or more days a week. The manager will set the work schedule for this position, including in-office expectations. Regions will not provide relocation assistance for this position, and relocation would be at your expense. The locations available for this role are Birmingham, AL, Atlanta, GA, Nashville, TN, or Charlotte, NC.

Regions will not sponsor applicants for work visas for this position at this time. Applicants for this position must currently be authorized to work in the United States on a full-time basis.

Position Type

Full time

Benefits & conditions

Regions offers a benefits package that is flexible, comprehensive and recognizes that “one size does not fit all” for benefits-eligible associates. (https://www.regions.com/about-regions/benefits/benefits-eligibility) Listed below is a synopsis of the benefits offered by Regions for informational purposes, which is not intended to be a complete summary of plan terms and conditions.

  • Paid Vacation/Sick Time
  • 401K with Company Match
  • Medical, Dental and Vision Benefits
  • Disability Benefits
  • Health Savings Account
  • Flexible Spending Account
  • Life Insurance
  • Parental Leave
  • Employee Assistance Program
  • Associate Volunteer Program

Please note, benefits and plans may be changed, amended, or terminated with respect to all or any class of associate at any time. To learn more about Regions’ benefits, please click or copy the link below to your browser.

https://www.regions.com/about-regions/welcome-portal/benefits

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.businessworkforce.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · WWC 2023

Videos

See all

Related articles

See all