VP, Information Security

Logo of Imagine Pediatrics

Imagine Pediatrics

πŸ“Remote - United States

Job highlights

Summary

Join Imagine Pediatrics as the Vice President, Information Security, a newly created role responsible for defining and implementing a cutting-edge information security strategy. You will develop and maintain a comprehensive security strategy aligned with industry standards and HITRUST compliance. This role involves evaluating security technology, implementing playbooks, managing security partnerships, and collaborating with cross-functional teams. You will also lead incident response, manage risks, and mentor the information security team. The ideal candidate possesses extensive experience in information security leadership, particularly within the healthcare sector, and a deep understanding of relevant regulations.

Requirements

  • Bachelor of Science degree in Computer Science, Information Security, Business, Management, or related field is required
  • 10+ years of information security experience in a senior leadership role preferably in a high-growth healthcare environment, leading the overall corporate security strategy
  • 10+ years’ experience in a senior leadership role defining the security operations service delivery portfolio, roles, responsibilities, accountabilities, and performance SLAs of the security operations team
  • Brings an advanced knowledge, experience, and expertise of U.S. Federal regulations such as the HITECH Act, HIPAA, and HITRUST

Responsibilities

  • Develop, implement, and maintain a security strategy and long-term vision that supports a scaling company in multiple states
  • Ensure company policies and practices align with industry standards and HITRUST compliance requirements
  • Regularly perform continuous needs assessment on security technology architecture to include the evaluation of the current enterprise product suite effectiveness and cost, while evaluating the changing requirements of the business against industry trends in cyber threat protection
  • Define and implement new and existing playbooks/runbooks and work with multi-functional team members to maintain high-quality work standards
  • Support third-party security assessments and contract negotiations for future and existing business partners in addition to addressing security posture mandates (e.g. HITRUST, SOC2)
  • Define and implement risk assessment processes for new technology platforms
  • Collaborate with internal teams and external vendors to implement new software, policy configurations & settings to mitigate vulnerabilities
  • Manage external security partnerships to ensure cohesive delivery of services that meet contractual requirements
  • Work closely with the executive team to continually communicate on priority industry trends in threat protection and cyber security
  • Regularly present to the executive team on current state security posture, priority risk and vulnerabilities, tactical approaches for mitigation, resolution / completion timelines, and dependencies
  • Provide leadership and guidance to IT Infrastructure, Engineering, Data, Risk Management, Business Development and other critical business function services areas on security implementations, purpose, and priority
  • Liaise with Business and IT Groups in the security analysis, design and planning phases of IT and business-related projects
  • Work closely with the Chief of Compliance to develop information security policies, procedures, and controls to manage platforms containing PII and PHI
  • Establish the corporate risk registry and process used to identify and prioritize corporate risks.Β  Work closely with business owners to develop necessary corrective plans that outline the actions required to remediate, mitigate, transfer, or accept the identified risk based on corporate guidelines and policies
  • Define and implement risk mitigation strategies for threat vectors related to all areas of the business
  • Participate in security incident response processes on a per-occurrence basis
  • Serve as the principal representative and accountable leader for all corporate information security-related matters
  • Develop, mentor, and lead the information security team members to continually improve and expand the information security programs, manage cybersecurity threats, and assess and manage vulnerabilities
  • Develop and manage the security operations annual budget ensuring Imagine Pediatrics maintains the appropriate level of protection and staffing while managing cost efficiency

Preferred Qualifications

  • Relevant license or certification(s): GIAC, CISSP, CISA, CISM, CRISC, GCIH, Security+, CySA+, CEH, SSCP, ITIL preferred
  • CCISO, CISSP, CISM, and/or CISA certifications desired, but not required
  • Exceptional leadership skills and ability to lead and inspire the organization through complex and sometimes challenging and disruptive security initiatives
  • Expertise in current Information Security industry trends, strategies, vulnerabilities and threats

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.

Similar Remote Jobs

Please let Imagine Pediatrics know you found this job on JobsCollider. Thanks! πŸ™