Jobs / United States / CVS Pharmacy INC
Senior Manager - Cybersecurity Compliance
CVS Pharmacy INC · 🇺🇸 RI - Cumberland
Sponsorship verdict
Sponsorship possible
One solid signal, not two — worth applying, and worth asking about sponsorship early.
- Employer is on a government sponsor recordThe US Department of Labor certified 191 H-1B/E-3 labor condition applications for this employer between Oct 2025 and Jun 2026 (latest Jun 2026) — the step every H-1B hire needs first. USCIS also records 217 H-1B approvals in FY2023. Source: LCA disclosure data (US Department of Labor (OFLC)).
- The posting doesn’t mention sponsorshipSilence isn’t a refusal — ask the recruiter before investing much time.
- No salary bar for this routeH-1B has no fixed salary bar: the employer must pay at least the prevailing wage for the role and area. Cap-subject employers enter a lottery weighted by wage level. Source: https://www.federalregister.gov/documents/2025/12/29/2025-23853/weighted-selection-process-for-registrants-and-petitioners-seeking-to-file-cap-subject-h-1b, rules effective 2026-02-27.
- What CVS Pharmacy INC paid sponsored hires in similar roles3 certified filings for “Manager, Data Engineer” (Data Scientists) in GA: $110k–$162k, median $110k. Most were filed at wage level II (67%) — 2 lottery entries, ≈31% projected selection odds for cap-subject employers. Source: US Department of Labor LCA disclosure data (Oct 2025 – Jun 2026).
- Confirmed live todayWhen a source last listed this job as open.
US H-1B: cap-subject employers enter a lottery weighted by wage level — Level I gets 1 entry, Level IV gets 4 (DHS projected selection odds ≈15% at Level I to ≈61% at Level IV). Universities and non-profit research employers are cap-exempt. The $100,000 fee for new petitions from abroad is currently blocked by a court order (appeal pending).
A verdict summarises public evidence; it is not legal advice and never a guarantee — the employer and the immigration authority decide. Sign in to factor in where you can already work.
Or apply yourself on the official page →
Sponsor Radar — CVS Pharmacy INC
The US Department of Labor certified 191 H-1B/E-3 labor condition applications for this employer between Oct 2025 and Jun 2026 (latest Jun 2026) — the step every H-1B hire needs first. USCIS also records 217 H-1B approvals in FY2023. Source: LCA disclosure data (US Department of Labor (OFLC)).
Past sponsorship or register membership never guarantees sponsorship for this vacancy or for you. Full Sponsor Radar for CVS Pharmacy INC →
About the role
We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary The Senior Manager of Cybersecurity Compliance will lead and execute strategic initiatives related to Regulatory Compliance for CVS Health’s Enterprise Information Security team, guiding colleagues in facilitating regulatory assessments and compliance activities across the enterprise. This role develops, implements, and manages procedures, controls, and reporting to ensure compliance with regulations. Consults on efforts to continuously improve internal controls, processes, and systems to enhance the effectiveness and efficiency of the program. Partners with IT and business colleagues to educate on risk and provide actionable metrics that measure control effectiveness. This role also coordinates and manages activities of process owners to support regulatory audits, including supporting audit requests and tracking remediation. Collaborates with key stakeholders, including senior management, Legal, Internal Audit, and external assessors, to ensure alignment and support of the Regulatory Compliance Program. Specifically, this role: • Manages and executes procedures to facilitate and support various cybersecurity regulatory audits and compliance activities, establishing schedules and plans to ensure deadlines are met. • Develops efficient processes to facilitate and support regulatory, internal audit, and industry standard assessments and audits. • Provides coaching, feedback, and education to stakeholders and colleagues on regulatory compliance requirements and industry best practices. • Defines and develops risk management policies and procedures to support the implementation of technology controls across the enterprise. • Oversees preparation and submission of regulatory compliance reports to management, auditors, assessors, and regulators. • Oversees audits and assessments to measure the effectiveness of security controls, providing results back to the responsible party/owner. • Educates key stakeholders on risk management frameworks and top risks related to regulatory compliance. Required Qualifications • 7+ years of experience in information technology or information security related with a deep understanding of regulations, including requirements and implications for cybersecurity controls. • 3+ years of experience working with auditors and/or assessors, formulating responses, managing inquiries, and designing/overseeing remediation plans as necessary. • 3+ years of experience relevant regulations, standards, and frameworks (FTC, HIPAA, NY DFS, SOX, PCI, NIST, ISO, HITRUST, and NAIC). • 3+ years of experience in audit methodologies, internal control frameworks, risk assessments, and control testing techniques. • Relevant professional certifications such as Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), or Certified Information Systems Security Professional (CISSP). Preferred Qualifications • Experience in a large and complex environment related to healthcare, insurance, or retail. • Demonstrated knowledge of and hands-on experience with federal and state healthcare regulations, regulatory frameworks, examinations, audits, and compliance assessments, with the ability to interpret and apply regulatory requirements in a complex healthcare environment. • Proven experience designing, implementing