Bachelor's degree in CS / IT / Cybersecurity5+ years in ITSecurity engineering leadershipTeam leadership & mentoringVulnerability & risk managementCloud & infrastructure securityDevSecOps / Agile deliveryNIST / ISO 27000 / HIPAA / SOCSecurity roadmap & strategyDisaster recovery & business continuityRegulatory & audit supportStakeholder communication
Job Description
Wellmark is seeking an experienced Security Engineering leader to guide their Security Engineering team and advance organizational security capabilities. The role involves building and developing a team, driving innovative security solutions, fostering collaboration across technology and business units, and strengthening the company's security posture through modern engineering practices, automation, and emerging technologies. The position requires 5+ years of IT experience, a bachelor's degree in a related field, demonstrated leadership abilities, and expertise in cybersecurity frameworks and regulatory compliance.
Overview
Wellmark is a mutual insurance company owned by its policyholders across Iowa and South Dakota, built on over 80 years of trust. We are seeking an experienced and inspiring Security Engineering Manager to guide our Security Engineering team and advance our organization's security capabilities.
This role is responsible for building, developing, and empowering the team while driving the delivery of innovative security solutions that protect critical applications, data, and technology platforms. The successful candidate will foster a culture of collaboration, accountability, and continuous improvement, partnering across technology, risk, compliance, and business teams to align security priorities with organizational objectives.
Responsibilities
•Provide day-to-day leadership and guidance to team members through coaching, mentoring, performance management, career development, workload planning, budgeting, and resource coordination.
•Foster a culture of accountability, collaboration, innovation, and continuous improvement.
•Support the development and execution of Security Engineering roadmaps, priorities, and operational processes to align with cybersecurity objectives, risk management priorities, and regulatory requirements.
•Lead and coordinate efforts to strengthen the organization's security posture by identifying security gaps, evaluating risks, reducing technical security debt, improving vulnerability management processes, and prioritizing remediation activities based on business and cybersecurity risk.
•Drive the adoption of automation, orchestration, AI-enabled capabilities, and modern engineering practices to improve efficiency, scalability, resilience, and security outcomes.
•Oversee the implementation, operational readiness, lifecycle management, and support of security technologies and services.
•Support organizational change initiatives and evolving cybersecurity priorities by building strong partnerships with business, technology, architecture, product, risk, compliance, audit, and external stakeholders.
•Oversee day-to-day observability and monitoring capabilities, operational reporting, compliance activities, audit support, and adherence to industry standards and internal security policies.
•Escalate and communicate risks, issues, and progress to leadership and key stakeholders.
•Provide technical leadership and coordination for disaster recovery planning, recovery testing, and preparedness activities across supported environments.
•Partner with technology and business teams to validate recovery readiness, support recovery efforts during significant incidents, and identify opportunities to improve resilience and business continuity capabilities.
•Perform other duties as assigned.
Required Qualifications
•Bachelor's degree in computer science, information systems, cybersecurity, engineering, or a related field, or equivalent combination of education and relevant experience.
•Minimum 5+ years of progressive experience in information technology.
•Understanding of security principles, secure system design, and cybersecurity best practices.
•Demonstrated experience leading, mentoring, coaching, and developing technical professionals through formal or informal leadership responsibilities, including employee development, workload planning, and project or initiative leadership.
•Ability to influence technical decisions, promote adoption of security controls and engineering best practices, and support the implementation of security standards across technology teams.
•Proven ability to build collaborative relationships and communicate effectively with engineering, architecture, operations, risk, compliance, audit, and business partners, including the ability to explain technical concepts and risks to diverse audiences.
•Strong analytical, problem-solving, and decision-making skills, with the ability to evaluate complex situations and recommend practical, risk-based solutions.
•Demonstrated experience leading projects, programs, or technical initiatives, including managing competing priorities, tracking progress, and delivering results.
•Experience supporting organizational change, continuous improvement efforts, and operational excellence initiatives within a technical environment.
•Ability to develop and execute tactical plans and team objectives that align with departmental goals and business priorities.
•Travel required intermittently, up to 5%.
Preferred Qualifications
•Experience leading security engineering, Security Operations Engineering, Infrastructure Security, Application Delivery, Identity Security, or Cloud Security teams.
•Experience developing or contributing to security strategies, technology roadmaps, and multi-year modernization initiatives.
•Experience supporting regulatory examinations, security audits, and compliance programs within a regulated industry.
•4+ years in information security, cybersecurity, or security engineering roles.
•Experience leading design, implementation, operation, and support of enterprise security controls, platforms, and services across infrastructure, cloud, applications, identity, data protection, and endpoint environments.
•Experience integrating security practices into technology delivery processes, including secure software development, Agile and product-based delivery, automation, DevSecOps, and operational excellence initiatives.
•Knowledge of cybersecurity frameworks, industry standards, and regulatory requirements including NIST, ISO 27000 series, HIPAA, SOC, and other applicable security and privacy standards.
Resume Intelligence
Assess your experience against this job and tailor your bullet points instantly.
Sign in required
Please sign in to assess your resume alignment and generate custom copyable work bullets.