Head of Information Security
Head of Information Security
Thursday, September 5, 2024
Direct Hire
Remote USA (EST preferred), United States
Head of Information Security
Executive Summary
Overview: Reporting to the Chief Technology Officer, the Head of Information Security will play lead our cybersecurity and compliance efforts. The successful candidate will play a pivotal role in safeguarding our sensitive data, digital assets, and regulatory compliance across all operations.
Company: We are a leading provider of revenue cycle management solutions to dental, anesthesia, pathology, emergency, surgery, radiology, and other specialties.
Experience: The ideal candidate is an accomplished cybersecurity leader with a strong track record in information security management. They possess extensive knowledge of cybersecurity technologies, including network security and threat detection. With exceptional problem-solving and decision-making
abilities, they are well-equipped to lead the development and execution of a comprehensive information security strategy while fostering a culture of collaboration and security awareness among employees
Company Overview
Founded in 2002, we are building a globally recognized technology driven healthcare revenue management company that provides exceptional value to clients, a positive work environment to employees, and the highest return to shareholders. The Company provides deep expertise and powerful
revenue cycle management solutions to dental, anesthesia, pathology, emergency, surgery, radiology, and other specialties. Our proprietary technology platforms allow its customers to deliver superior outcomes to healthcare provider practices. For over two decades, we have seen dynamic growth across markets with its expanded services, strategic acquisitions, and an incomparable team of
experts. With corporate headquarters in Miami, Florida and numerous locations across the US and India, we employ more than 4,000 employees, including medical professionals, coders, RCM specialists, claims processors and software developers.
Position Overview
The Head of Information Security is responsible for leading the development, execution, and management of a comprehensive information security strategy across the organization which operates in the United States and India. This position ensures the security of data, systems, and networks while maintaining compliance with ISO 27001, NIST, and CIS frameworks, as well as healthcare regulations like HIPAA and HITECH. Additionally, this role is responsible for facilitating collaboration between IT, legal, and HR to integrate security practices throughout the organization. This role is also expected to spearhead the organization’s response to security incidents in a dynamic and rapidly evolving landscape.
Key Responsibilities:
- Develop and execute a comprehensive information security strategy aligned with business objectives, regulatory requirements, and industry best practices.
- Oversee the implementation and maintenance of robust cybersecurity measures, including but not limited to network security, endpoint protection, data encryption, access controls, and incident response protocols.
- Lead the development and enforcement of information security policies, procedures, and standards to mitigate risks and protect against cyber threats.
- Collaborate with cross-functional teams to integrate security into designing, developing, and deploying new products and technologies.
- Provide strategic guidance and direction on compliance initiatives, ensuring adherence to regulations like HIPAA, GDPR, FDA guidelines, and other global data protection laws.
- Conduct regular risk assessments and security audits to identify vulnerabilities, assess the effectiveness of controls, and recommend remediation actions as needed.
- Foster a security awareness and compliance culture throughout the organization through training, communication, and employee engagement initiatives.
- Ensure that security policies and standards are understood and applied in contracts, engineering projects, and infrastructure.
- Serve as the primary point of contact for security incidents, breaches, and regulatory inquiries, leading investigations and coordinating response efforts as necessary.
- Collaborate closely with Cyber SOC to respond to incidents.
- Stay abreast of emerging threats, trends, and technologies in the cybersecurity landscape, continuously evaluating and enhancing the company's security posture.
- Represent the company in discussions with regulators, industry partners, and stakeholders on information security and compliance matters.
- Regularly reviews and recommends updates to disaster recovery and business continuity plans to ensure resilience in the face of disruptions, with a focus on quick recovery and adaptation.
- Oversees strategies for data classification, protection, and management, particularly concerning patient information.
- Assesses and recommends improvements to the design and architecture of the security infrastructure, including networks, applications, and devices, ensuring scalability in a growing and fast-paced organization.
Qualifications:
- Bachelor’s degree with 12+ years of relevant experience.
- Strong communication skills with the ability to manage up, down, and to the sides.
- Extensive knowledge of regulatory requirements and compliance standards relevant to the healthcare industries, such as HIPAA, GDPR, FDA regulations, etc.
- Proven track record of designing and implementing effective cybersecurity programs, including risk management, threat detection, and incident response.
- Excellent leadership, communication, and interpersonal skills, with the ability to influence and collaborate across all levels of the organization.
- A strong background in healthcare is preferred.
- Relevant industry certifications (e.g., CISSP, CISM, CRISC) are highly desirable.
Key Attributes:
- Get it done, action-orientated, lead from the front attitude, with a sense of urgency and willingness to roll-up sleeves.
- Strong business acumen and analytical thinker, highly motivated by growth objectives.
- Unquestioned integrity, credibility, and judgment and ability to foster a transparent, open culture.
- Collaborator with an ability to work well both independently, and in a team environment, and excellent at working cross-functionally with other business departments.
- Ability to manage fast-paced workload and add value to multiple projects simultaneously.
- High degree of comfort working with and influencing managers and leaders
Compensation and Other
- Highly competitive compensation package, including attractive benefits.
- $220,00 - 260,000 base salary,
- 20-30% bonus
- Long term incentive opportunities