Cybersecurity Service and Change Management Lead
$164,612–$201,193 year
On-siteAustin, Texas, United States or Maplewood, Minnesota, United States
Job Summary
Design, implement, and continuously improve the Cybersecurity service catalog, service management processes, and change management framework to ensure efficient, compliant, and controlled delivery of cybersecurity initiatives. Serve as the primary liaison between Cybersecurity and Enterprise IT Change Management, facilitating Cybersecurity CAB meetings (Tiers 1–3) and enforcing pre-implementation requirements such as testing, rollback plans, and peer reviews. Review change requests for completeness and risk rating, reject inadequate submissions, and lead post-implementation reviews of failed changes. Harmonize change processes across Cybersecurity domains with IT definitions for standard, normal, and emergency changes while aligning with ITIL/ISO 27001/NIST CSF frameworks. This role supports the transition from private, public, government, or military experience to a 3M career within the global Cybersecurity organization.
Required Qualifications
- Bachelor's degree in Information Systems, Cybersecurity, Computer Science, Business or technology field (completed and verified prior to start)
- Seven (7) years of experience in Cybersecurity, IT Service Management, or Change/Release Management in a private, public, government or military environment
- Must be legally authorized to work in country of employment without sponsorship for employment visa status (e.g., H1B status)
- All US-based 3M full time employees will need to sign an employee agreement as a condition of employment with 3M
- This agreement lays out key terms on using 3M Confidential Information and Trade Secrets
- It also has provisions discussing conflicts of interest and how inventions are assigned
- Employees that are Job Grade 7 or equivalent and above may also have obligations to not compete against 3M or solicit its employees or customers, both during their employment, and for a period after they leave 3M
- Corporate policies, procedures and security standards are complied with while performing assigned duties
- All employees are expected to contribute to a strong Environmental Health and Safety (EHS) culture by following safety policies, identifying hazards, and engaging in continuous improvement
- Your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly
- Your access to and use of this website and application for a job at 3M are conditioned on your acceptance and compliance with these terms
- Before submitting your application, you will be asked to confirm your agreement with the terms
Desired Qualifications
- Deep knowledge of ITIL Change Enablement, Service Management, NIST CSF, and ISO/IEC 27001 frameworks
- Experience managing enterprise change and service management processes including CAB leadership and service catalog development
- Proficiency with enterprise change, workflow, and GRC tools
- Strong understanding of cybersecurity domains such as IAM, network/cloud security, SIEM/SOAR, and vulnerability management
- Proven ability to assess risk, manage stakeholder communication, and coordinate complex, high-impact changes across global teams
- ITIL 4 Managing Professional or Change Enablement certification
- Cybersecurity certification such as CISSP or CISM
- PMP, PRINCE2, or Prosci certification (nice to have)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.