Cybersecurity Manager
Manager
Cloud Platforms
Data Security
Endpoint Security
Facilities Management
Hipaa Security Rule
Identity and Access Management
Identity Governance
Incident Management
Incident Response
Information Security
Information Technology (IT)
InfoSec
Management
Network Security
Privileged Access Management
Product Security
Project Management
Risk Governance
Risk Management
Secure Remote Access
Security
Security Automation
Security Compliance
Security Engineering
Security Operations
Security Standards
Security Testing
Vulnerability Management
Job Description
Confluence Health is hiring a Cybersecurity Manager for an onsite role in Wenatchee, WA.
Responsibilities
- Supervise assigned staff across cybersecurity, security operations/identity, and network security engineering, including setting expectations, assigning work, reviewing results, coaching and feedback, performance management, and cross-training/succession readiness.
- Translate security priorities set by the Information Security Officer, Director into team plans, service objectives, assignments, schedules, and measurable outcomes.
- Balance security execution across operational support, incident response, projects, maintenance, compliance activities, and technical debt using risk and business impact.
- Own security operations for daily monitoring, alert triage, investigations, containment, remediation, and recovery coordination, including vulnerability management and operational use of security platforms.
- Ensure process rigor for security activity so work is timely, documented, repeatable, and escalated via approved procedures.
- Oversee identity and access workflows, including account lifecycle support, authentication controls, privileged access processes, access reviews, exception handling, and audit evidence.
- Partner across teams (Application, HR, Compliance, Privacy, and IT) to strengthen access governance and reduce inappropriate access risk.
- Manage network security operations and lifecycle management for enterprise network and services: WAN/LAN, wireless, firewalls, segmentation, secure remote access, network access control, load balancing, monitoring, and connectivity dependencies.
- Maintain resiliency and change discipline with documentation, effective escalation during outages or security events, and operational readiness.
- Serve as incident escalation point for cybersecurity incidents, identity-related events, and high-impact network operational issues, coordinating technical resources, communications, evidence preservation, remediation, recovery, and after-action improvements.
- Drive risk escalation for material risk and required decisions to the Information Security Officer, Director.
- Run intake and prioritization for incidents, requests, problems, and recurring work, including queue reviews, dashboards, documentation review, and addressing barriers and trends impacting customers.
- Ensure platform operations for assigned security and network platforms: maintained, monitored, documented, supported, and operated in line with architecture, change management, access, backup, recovery, and configuration standards.
- Lead or support initiatives for security and network improvements, including implementation planning, resource coordination, testing, operational acceptance, documentation, and transition to support.
- Produce management visibility through meaningful team metrics, service dashboards, risk and remediation tracking, initiative status reporting, and trend analysis aligned with executive visibility through the Information Security Officer, Director.
- Support compliance obligations by implementing and monitoring operational practices supporting HIPAA Security Rule requirements and organizational/audit commitments (including DNV-related expectations), coordinating evidence collection and remediation tracking without assuming the designated HIPAA Security Officer function.
- Manage vendors for assigned relationships, support performance, licensing, renewals, quotes, and assigned contracts; assist with capital and operating budget development, forecasting, prioritization, and business justification.
- Maintain cross-functional relationships with IT, Clinical Applications, Privacy, Compliance, Legal, Human Resources, Project Management, business leaders, and vendors.
- Keep documentation current, including procedures, runbooks, standards, inventories, architecture references, escalation paths, and knowledge articles; recommend policy/control improvements to the Information Security Officer, Director.
- Stay current on cybersecurity threats, healthcare security requirements, identity and access practices, network security, and leadership methods; participate in after-hours support/on-call escalation as assigned.
- Other duties as assigned.
Requirements
- Bachelor’s Degree in Cybersecurity, Computer Science, Information Technology, or a related field (or an equivalent combination of education and relevant experience).
- 6+ years progressive experience in cybersecurity, information security, identity/access security, network security, or related enterprise technology disciplines, plus 2+ years of formal leadership, supervision, or management experience within technical or security teams.
- Two or more certifications such as CISSP, CISM, Security+, CCNP Security, GIAC, CRISC, or a role-aligned cloud, identity, network, or vendor certification.
- Experience in healthcare or another highly regulated environment.
- Experience with Microsoft security technologies, SIEM/SOAR, endpoint security, vulnerability/exposure management, firewalls, network access control, privileged access management, identity governance, cloud security, and secure remote access.
Technologies
- Microsoft security technologies
- SIEM/SOAR
- Endpoint security
- Vulnerability/exposure management
- Firewalls
- Network access control
- Privileged access management
- Identity governance
- Cloud security
- Secure remote access
- HIPAA Security Rule
- DNV
Benefits
- Medical, Dental & Vision Insurance
- Flexible Spending Accounts & Health Saving Accounts
- Paid Time Off
- Generous Retirement Plans
- Life Insurance
- Long-Term Disability
- Gym Membership Discount
- Tuition Reimbursement
- Employee Assistance Program
- Adoption Assistance
- Shift Differential
Other Details
- Reports to: Information Security Officer, Director
- Location: Wenatchee, WA (onsite)
- Compensation: USD 55 - 96 per hourly
- FLSA: Exempt
- Hourly/Salary: Salary
Working Conditions
- Substantial independence and discretion in a fast-paced healthcare technology environment.
- May require flexible hours, after-hours escalation rotation participation, and response to cybersecurity incidents, technology outages, planned maintenance, or urgent operational needs.
- Handles confidential, security-sensitive, and potentially regulated information; follows organizational privacy, security, records, and acceptable-use requirements.
Physical/Sensory Demands for This Position
- Walking: F
- Sitting/Standing: F
- Reaching: Shoulder Height: O
- Reaching: Above shoulder height: O
- Reaching: Below shoulder height: O
- Climbing: O
- Pulling/Pushing: 25 pounds or less: O
- Pulling/Pushing: 25 pounds to 50 pounds: O
- Pulling/Pushing: Over 50 pounds: O
- Lifting: 25 pounds or less: O
- Lifting: 25 pounds to 50 pounds: O
- Lifting: Over 50 pounds: O
- Carrying: 25 pounds or less: O
- Carrying: 25 pounds to 50 pounds: O
- Carrying: Over 50 pounds: O
- Crawling/Kneeling: O
- Bending/Stooping/Crouching: O
- Twisting/Turning: O
- Repetitive Movement: F
Physical Exposures for This Position
- Unprotected Heights: No
- Heat: No
- Cold: No
- Mechanical Hazards: No
- Hazardous Substances: No
- Blood Borne Pathogens Exposure Potential: No
- Lighting: Yes
- Noise: Yes
- Ionizing/Non-Ionizing Radiation: No
- Infectious Diseases: No