See all roles

Chief Information Security Officer

Work from home Full-time role Hiring

The Chief Information Security Officer (CISO) is responsible for establishing, leading, and maintaining the organization's enterprise-wide information security program. This role ensures the confidentiality, integrity, and availability of company data, systems, and infrastructure while supporting business growth in a highly regulated healthcare environment. The CISO serves as the senior security leader for the organization, responsible for security strategy, risk management, compliance, incident response, and security operations. This role works closely with executive leadership, DevOps, business development, legal, and external auditors to ensure compliance with healthcare and international security standards, including HITRUST, HIPAA, SOC 2 Type II, NIST, and ISO. Company Overview We provide solutions that make a meaningful difference in healthcare. Founded in 1995, MIE serves as the innovation engine for business units that serve hospitals and health systems, physician practices, Fortune 500 employers, government agencies, and consumers. MIE's web-based health information technology platform is helping physicians, nurses, and administrators make a meaningful difference in healthcare delivery across the globe.

Key Responsibilities

  • Strategic Security Leadership:
  • * Develop and implement the organization's information security strategy.
  • Provide regular security updates to the CIO, other executives, and the board of directors, including presentations on security matters.
  • Represent the organization in security-related matters with external parties, including vendors and auditors.
  • Work closely with the CIO and operate as a member of the DevOps team to emphasize and implement our security initiatives.
  • Risk Management:
  • * Conduct regular risk assessments and vulnerability scans using tools like Rapid7 IVM and internal tracking systems.
  • Oversee the development and implementation of incident response plans and conduct tabletop exercises with DevOps team members..
  • Compliance and Audit:
  • * Ensure compliance with relevant regulations and standards, including HITRUST, NIST, DirectTrust, HIPAA, and SOC 2 (Type II), ISO.
  • Manage internal and external security audits, including evidence collection and preparation.
  • Oversee the evidence collection process for audits, working with third-party auditors for response submission.
  • Work closely with business development and legal to assist with security compliance requirements.
  • Assist with identifying and implementation of international security compliance.
  • Policy and Procedure Development:
  • * Develop, review, and update information security policies and procedures, such as the Vulnerability and Patch Management Procedure and Data Center Access Procedure.
  • Ensure policies are communicated and enforced throughout the organization, including through security awareness training.
  • Security Operations:
  • * Participate in the day-to-day operations of the security team and manage security tools and technologies, including Check Point, SentinelOne, and intrusion detection systems.
  • Monitor security alerts and respond to incidents, including phishing attempts reported through the various tools.
  • Team Management:
  • * Lead and mentor the security team, reviewing tasks and responsibilities working closely with the DevOps team members.
  • Vendor Management:
  • * Evaluate and manage security vendors, including VDA Labs, KnowBe4, reviewing security agreements and contracts.
  • Perform vendor audits and maintain required documentation.
  • Security Awareness:
  • * Develop and deliver security awareness training to employees, including utilizing KnowBe4, TalentLMS and internal training programs.
  • Provide onboarding training for new employees.
  • Budgeting and Planning:
  • * Develop and manage the security budget, planning and prioritizing security projects, including funding for tools and conferences.
  • Sales and Business Development:
  • * Perform first pass responses to RFI/RFP for new business deals working closely with the sales team

Required Qualifications

  • Education:

Bachelor's degree or equivalent work experience.

  • Experience:
  • * 10+ years of experience as a CISO or similar role, with at least 3 years of security-related leadership.
  • Proven background in systems administration.
  • Experience leading teams.
  • Certifications:
  • * Certified Information Systems Security Professional (CISSP) required.
  • Skills & Knowledge:
  • * Expertise in vulnerability testing, penetration testing, and developing security practices.
  • Knowledge of standards-based architecture, compliance monitoring, and enforceability.
  • Strong leadership skills with the ability to motivate and guide teams.
  • Experience in healthcare or other highly-regulated environments.

Preferred Qualifications

  • Experience in healthcare or other highly-regulated industries.

Why Join Us? At MIE and Enterprise Health, we offer more than just a job. We provide an environment where innovative thinking is encouraged, teamwork is valued, and growth is fostered. Our comprehensive benefits package includes:

  • Competitive compensation
  • Comprehensive benefits package including medical/dental/vision insurance
  • 401k with company match
  • Unlimited Paid-Time off
  • Quarterly bonus program
  • Flexible work schedule
  • Remote work

Medical Informatics Engineering and Enterprise Health are equal-opportunity employers. We celebrate diversity and are committed to creating an inclusive environment for all employees. Apply tot his job Apply To this Job

You might like

Senior Investment Director

Work from home Full-time role

Associate, Risk/Compliance

Work from home Full-time role

Executive Vice President and Chief Financial and Business Strategy Officer

Work from home Full-time role

Chief Strategy Officer, fundraising focus

Work from home Full-time role

LPN- Adverse Drug Events, Accredo- Work from Home

Work from home Full-time role

GTM CIO US Public Sector (PS) Director

Work from home Full-time role

Mechanical Claims Adjuster (Remote) 5000 South Fwy Fort Worth, TX 76115

Work from home Full-time role

Cigna EHE Health Coach

Work from home Full-time role

LPN Telephonic Care Coordinator 10:30am - 7pm EST - Evernorth - Work at home United States Work at Home

Work from home Full-time role

Ciox Health – Health Information Specialist I (Hybrid – Neptune, NJ) – Neptune City, NJ

Work from home Full-time role

Hiring Now: Require Part Time & Full Time Nanny in Dallas, TX

Work from home Full-time role

Customer Care Representative- Work from Home in Texas

Work from home Full-time role

Experienced Customer Service Professional for Tax, Healthcare, and Automotive Industries - Work from Home Opportunity with Teleperformance

Work from home Full-time role

NA Compute Category Mgmt Rep IV

Work from home Full-time role

Experienced Data Entry Specialist – Part-Time Remote Opportunity for Detail-Oriented Individuals to Join arenaflex and Contribute to the Magic of Entertainment from the Comfort of Home

Work from home Full-time role

Experienced Part-Time Customer Service Representative – Remote Opportunity with arenaflex

Work from home Full-time role

Cybersecurity Operations Center Analyst

Work from home Full-time role

Experienced Customer Service Assistant – Remote Opportunity with arenaflex

Work from home Full-time role

Experienced Part-time Data Entry Specialist – Remote Work Opportunity with careerzynith

Work from home Full-time role

Remote Chat Support Specialist for Moms – Immed...

Work from home Full-time role