> Markdown version of [/jobs/ext/1805274-cyber-security-strategy-planning-and-program-manager](https://www.wearedevelopers.com/jobs/ext/1805274-cyber-security-strategy-planning-and-program-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Strategy Planning and Program Manager - **Company:** Regions Bank - **Location:** Birmingham, AL, United States - **Salary:** $134,051.0 - $172,590.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Technology Audit, Open Web Application Security, Software Engineering, Data Logging, Software Security - **Published:** July 3, 2026 - **Apply:** https://www.businessworkforce.com/job.asp?id=3303561242&tx=VT6156TYT&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Bachelor's degree in software development, management information systems, information technology audit, or related field and eight (8) years of related experience * Or High School Diploma or GED and twelve (12) years of related experience * Experience with cyber security projects and/or initiatives Skills and Competencies * Ability to interpret and ensure compliance with applicable rules, regulations, and industry guidance * Knowledge of application security risks (e.g. Open Web Application Security Project (OWASP) Top 10) * Knowledge of cyber security and privacy principles and best practices * Knowledge of cyber security- and privacy-related laws, regulations, policies, and ethics * Knowledge of cyber security threats and vulnerabilities, including those related to systems and applications (e.g. buffer overflow, mobile code, cross-site scripting) * Knowledge of emerging cyber security technologies * Knowledge of emerging technologies that have potential for exploitation * Knowledge of external organizations and academic institutions with cyber security focuses (e.g. cyber security curriculum/training, research and development) * Knowledge of full-spectrum cyber security capabilities (e.g. attack, defense, exploitation) * Knowledge of how cyber security lapses impact operational activities * Knowledge of industry indicators useful for identifying technology trends We're seeking a strategic storyteller who can bring our cyber security narrative to life for executive and enterprise audiences. In this role, you'll curate and synthesize complex cybersecurity initiatives into clear, compelling communications that articulate our strategic vision. You'll immerse yourself in our cyber security organization, connect the dots across programs, and craft a cohesive story that informs, engages, and influences leadership. The ideal candidate combines strong narrative development skills with a deep understanding of cybersecurity concepts, enabling them to guide how we communicate our priorities, progress, and long-term direction. Preferred Qualifications: * Exceptional storytelling ability-turning technical cybersecurity topics into clear, compelling narratives * Strong executive-level communication skills (written, visual, and verbal) * Ability to craft messaging for different audiences, especially senior leadership * Skilled at simplifying complexity without losing accuracy This position is intended to be onsite, now or in the near future . Associates will have regular work hours, including full days in the office three or more days a week. The manager will set the work schedule for this position, including in-office expectations. Regions will not provide relocation assistance for this position, and relocation would be at your expense. The locations available for this role are Birmingham, AL, Atlanta, GA, Nashville, TN, or Charlotte, NC. Regions will not sponsor applicants for work visas for this position at this time. Applicants for this position must currently be authorized to work in the United States on a full-time basis. Position Type Full time ## Description Regions is dedicated to taking appropriate steps to safeguard and protect private and personally identifiable information you submit. The information that you submit will be collected and reviewed by associates, consultants, and vendors of Regions in order to evaluate your qualifications and experience for job opportunities and will not be used for marketing purposes, sold, or shared outside of Regions unless required by law. Such information will be stored in accordance with regulatory requirements and in conjunction with Regions' Retention Schedule for a minimum of three years. You may review, modify, or update your information by visiting and logging into the careers section of the system., At Regions, the Cyber Security Strategy Planning and Program Manager develops and maintains cyber security plans, strategies, and policies to support and align cyber security initiatives and regulatory compliance. This position leads cyber security strategic initiatives that impact people, processes, and technology. This position also collaborates with internal resources and teams across the enterprise to drive change within the organization., * Develops policies, plans, and strategies in compliance with laws, regulations, existing policies, and standards in support of organizational cyber security activities * Supports the development of the cyber security strategic plan and vision in collaboration with the Chief Information Security Officer (CISO), Deputy CISO, and other applicable senior cyber security managers * Leads various aspects of cyber security transformation by executing related strategic initiatives * Leverages best practices and participates in knowledge sharing, utilizing technical skills and knowledge from prior experience * Conducts communication, training, and coaching for stakeholder groups to gain buy-in and ensure alignment of cyber security risk management activities * Develops and deploys mechanisms for the cyber security team to monitor and measure success of implemented programs, as well as identify necessary changes and/or improvements * Communicates with Legal and Procurement teams regarding strategy changes * Ensures compliance with risk management programs, rules and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices This position is exempt from timekeeping requirements under the Fair Labor Standards Act and is not eligible for overtime pay. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Jobs in Tech: The State of the European Market](https://www.wearedevelopers.com/magazine/575-jobs-in-tech-the-state-of-the-european-market)