Jobs / United States / CVS Pharmacy INC

Executive Director, Data Protection & Privacy

CVS Pharmacy INC · 🇺🇸 AZ - Scottsdale

Sponsorship verdict

Sponsorship possible

One solid signal, not two — worth applying, and worth asking about sponsorship early.

  • Employer is on a government sponsor recordThe US Department of Labor certified 191 H-1B/E-3 labor condition applications for this employer between Oct 2025 and Jun 2026 (latest Jun 2026) — the step every H-1B hire needs first. USCIS also records 217 H-1B approvals in FY2023. Source: LCA disclosure data (US Department of Labor (OFLC)).
  • The posting doesn’t mention sponsorshipSilence isn’t a refusal — ask the recruiter before investing much time.
  • No salary bar for this routeH-1B has no fixed salary bar: the employer must pay at least the prevailing wage for the role and area. Cap-subject employers enter a lottery weighted by wage level. Source: https://www.federalregister.gov/documents/2025/12/29/2025-23853/weighted-selection-process-for-registrants-and-petitioners-seeking-to-file-cap-subject-h-1b, rules effective 2026-02-27.
  • What CVS Pharmacy INC paid sponsored hires in similar roles4 certified filings for “Data Engineer” (Software Developers) in GA: $146k–$177k, median $158k. Most were filed at wage level IV (50%) — 4 lottery entries, ≈61% projected selection odds for cap-subject employers. Source: US Department of Labor LCA disclosure data (Oct 2025 – Jun 2026).
  • Confirmed live todayWhen a source last listed this job as open.

US H-1B: cap-subject employers enter a lottery weighted by wage level — Level I gets 1 entry, Level IV gets 4 (DHS projected selection odds ≈15% at Level I to ≈61% at Level IV). Universities and non-profit research employers are cap-exempt. The $100,000 fee for new petitions from abroad is currently blocked by a court order (appeal pending).

A verdict summarises public evidence; it is not legal advice and never a guarantee — the employer and the immigration authority decide. Sign in to factor in where you can already work.

Start free →

Or apply yourself on the official page →

Sponsor Radar — CVS Pharmacy INC

191 H-1B filings certified since Oct 2025

The US Department of Labor certified 191 H-1B/E-3 labor condition applications for this employer between Oct 2025 and Jun 2026 (latest Jun 2026) — the step every H-1B hire needs first. USCIS also records 217 H-1B approvals in FY2023. Source: LCA disclosure data (US Department of Labor (OFLC)).

Past sponsorship or register membership never guarantees sponsorship for this vacancy or for you. Full Sponsor Radar for CVS Pharmacy INC →

About the role

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Job Summary We are seeking a highly experienced and strategic Executive Director of Data Protection and Privacy to own and mature the enterprise data protection program. This role is accountable for the strategy, design, and operational execution of data loss prevention (DLP), data discovery and classification, data privacy engineering, and the broader set of controls that safeguard sensitive, regulated, and member data across the enterprise. The successful candidate will bring deep technical fluency in data security architecture alongside the executive presence to engage senior leadership, legal, compliance, and business stakeholders on data risk. This is a highly visible leadership role responsible for reducing the organization's data exposure risk, ensuring regulatory alignment, and building a scalable, defensible data protection program in a large, complex, highly regulated healthcare environment. Key Responsibilities • Data Protection Strategy: Define and drive the enterprise Data Protection and Privacy strategy, roadmap, and multi-year investment plan, aligning with business, legal, and regulatory priorities. • Data Loss Prevention (DLP): Own the design, deployment, and continuous tuning of enterprise DLP controls across endpoint, network, email, cloud, and SaaS channels to prevent unauthorized exfiltration of sensitive data. • Data Discovery: Lead enterprise-wide data discovery efforts to identify, inventory, and map sensitive and regulated data across structured, unstructured, and cloud data stores. • Data Classification: Establish and operationalize data classification standards, taxonomy, and labeling schemes, ensuring consistent application across systems, applications, and third-party platforms. • Data Privacy Engineering: Partner with engineering and application teams to embed privacy-by-design and privacy-enhancing technologies (encryption, tokenization, masking, anonymization, differential privacy) directly into data pipelines, platforms, and AI/ML workflows. • Regulatory & Compliance Alignment: Ensure the data protection program aligns with HIPAA, GDPR, CCPA/CPRA, and other applicable state and federal privacy regulations; partner with Legal and Compliance on data subject requests, breach notification obligations, and audits. • Insider Risk & Incident Response: Partner with Detection Engineering and Incident Response to build and refine use cases for detecting data exfiltration, insider risk, and unauthorized data movement; lead data-related incident response and forensics as needed. • Governance & Reporting: Establish metrics, KPIs, and executive reporting to measure the maturity and effectiveness of the data protection program; present regularly to senior leadership and risk committees (e.g., GRC SteerCo). • Team Leadership: Build, mentor, and scale a high-performing team of data protection and privacy engineers and analysts; foster a culture of technical excellence and business partnership. • Cross-Functional Collaboration: Serve as a trusted advisor to executive leadership, Legal, Internal Audit, and business unit stakeholders on emerging data risks, including risks introduced by generative AI and new data platforms. • Continuous Improvement: Stay current on emerging data protection technologies, privacy regulations, and industry threats; continuously evolve the p

View the official posting →

Source: Employer career site (Workday) First seen: 2026-10-07 Last confirmed: 2026-10-07 How our data works → Report this job

Similar opportunities