Director of IT & Security, CISO
$224k - $260kRedox
Director Of It & Security, Ciso
Redox is on a mission to accelerate healthcare's transformation with useful data. Redox Engine, a flexible interoperability platform, connects and powers real-time healthcare data exchange. With just one connection, data can be orchestrated across a growing network of 12,000+ systems and organizations, including 100+ electronic health record systems (EHRs). Redox processes over 1.2 billion messages per month across our health tech vendor, provider, payer, EHR, and life sciences customers.
Opportunity & Impact
Redox is seeking a hands-on director of IT & security, CISO to own enterprise security, cloud, and application security, and corporate IT. This role reports directly to the CTO and is a core member of the technology leadership team.
You will lead security engineering, security operations, and corporate IT while partnering closely with Engineering, Platform, and Operations to embed security and reliability into how Redox builds and runs software. Success in this role means strong security posture, resilient internal systems, and an employee experience that just works—without slowing the business down.
Job Responsibilities
- Security Strategy & Leadership: Own end-to-end information security strategy across cloud, application, infrastructure, and corporate environments. Define a pragmatic security roadmap aligned to business risk, regulatory requirements, and engineering velocity. Serve as the executive owner for security posture, risk management, and incident response. Act as a trusted advisor to the CTO and executive team on security, risk, and operational tradeoffs.
- Security Engineering & Devsecops: Drive a Devsecops-first operating model, embedding security into CI/CD pipelines, infrastructure as code, and developer workflows. Partner deeply with engineering leadership to make security scalable, automated, and measurable. Lead threat modeling, secure design reviews, and risk assessments for new platform initiatives. Champion policy-as-code, guardrails, and automation over manual process.
- Cloud, Application & Infrastructure Security: Own security architecture and operations for a primarily AWS-based environment. Lead application security programs, including secure SDLC, dependency scanning, SAST/DAST, penetration testing, and vulnerability management. Own identity and access management strategy with Okta as the backbone. Ensure strong detection, alerting, and response across endpoints and cloud workloads (e.g., CrowdStrike, RAD).
- Security Operations & Incident Response: Build and run effective security operations, including monitoring, investigation, incident response, and post-incident learning. Lead incident response for both security and IT incidents, serving as the calm point of accountability. Run tabletop exercises and continuously improve response playbooks. Manage vendor relationships, including CrowdStrike, Flashpoint, RAD, and Okta.
- Corporate IT & Enterprise Systems: Own corporate IT strategy and execution, focused on reliability, security, and employee productivity. Lead end-user computing, device management, endpoint security, identity lifecycle management, and access controls. Oversee IT systems, including identity, email, collaboration tools, endpoint management, and SaaS access governance. Drive automation and standardization across onboarding, offboarding, access management, and device lifecycle. Partner with People Ops, Legal, and Finance on IT processes, audits, and vendor management.
- Compliance, Risk & Healthcare Context: Own healthcare-related security and compliance programs (e.g., HIPAA, SOC 2). Translate regulatory requirements into practical, engineering-friendly controls. Lead third-party risk management and vendor security reviews. Support customer security reviews and serve as an executive point of contact on security matters.
- Team Leadership & Culture: Build, lead, and mentor a high-performing team spanning security engineering, security operations, and IT. Create a culture where security and IT are seen as enablers, not blockers. Establish clear ownership, measurable outcomes, and high operational standards. Be visible, decisive, and calm under pressure.
Required Skills & Experience
- 10+ years in information security, IT, or related technical leadership roles, including 5+ years of people management, ideally in healthcare technology SaaS.
- Proven experience leading security engineering, security operations, and corporate IT in a cloud-native SaaS environment.
- Direct experience in healthcare or other highly regulated industries.
- Track record of successfully implementing Devsecops practices.
- Deep hands-on experience securing AWS environments.
- Strong understanding of endpoint security, identity systems, and modern SaaS IT stacks.
- Practical knowledge of tools such as CrowdStrike, Okta, Flashpoint, RAD, and related platforms.
- Strong foundation in application security, cloud security, and infrastructure as code.
- Strong collaborator with engineering, platform, and operations teams.
- Clear, direct communicator who can articulate risk without theatrics.
- Comfortable making tradeoffs and prioritizing based on real-world risk.
- Builder mindset with a bias toward automation and scale.
Preferred Skills & Experience
- Proven experience securing autonomous agentic loops and tool-calling frameworks. Deep understanding of indirect prompt injection and designing "human-in-the-loop" guardrails for agent-driven actions.
- Technical expertise in securing the model context protocol (MCP), specifically regarding context isolation, sandboxing, and identity propagation between LLMs and private data sources.
- Direct experience migrating security programs to Vanta or similar automated GRC platforms. Ability to architect "continuous compliance" by integrating cloud, identity, and developer tools for automated evidence collection.
- Hands-on application of the NIST AI RMF, OWASP Top 10 for LLMs, etc within a production environment.
Software Platform / Tools
- Required: Crowdstrike, AWS, Okta
- Preferred: Vanta
Compensation
The base salary range for this position is expected to be between $224,000 - $260,000 per year. The base salary range is subject to change and may be modified in the future. The actual offer may vary depending on multiple factors unique to each candidate, including but not limited to the level of job-related knowledge, skills, qualifications, education/certification, and interview assessment. Please note that the compensation details listed above reflect the base salary only. Redox offers a total rewards package that includes stock options and employee benefits for full-time employees. Our total rewards package includes the following: Benefits & Perks • 100% remote first culture (must be based in the US) • Unlimited Flexible Time Off • 15+ Observed Holidays • Rest & R^Charge days (guaranteed a 3-day weekend each month) • R^Charge (6 weeks paid sabbatical + stipend) • 401k match 50% for up to 8% on Day 1 • Medical/Dental/Vision Benefits on Day 1 • HSA & FSA, Life, Disability, Medical Travel & Employee Assistance Program • Paid Parental Leave (16 weeks) • Productivity Stipend & Wellness Fund • Redox Issued MacBook • Virtual and/or in-person Team & Company Events • Stock Options • Employee Referral Bonus Program
- ...our pursuit for clinical excellence. Department: CC019350 Information Technology Job Description Summary: Director of IT Cyber Security Provides strategic leadership for enterprise-wide cybersecurity and HIPAA compliance within a hospital environment....Suggested
- ...Director Of DevOps, It, And Security Zippy was founded with one mission: to make getting a loan for a manufactured home simple, fast, and fully online. We believe modern manufactured homes are affordable, well-built, eco-friendly, and stylish, but finding a lender...SuggestedCurrently hiringWork at officeRemote workWork from homeFlexible hours
- An innovative energy company is seeking a Director of Information Technology to lead application development and IT infrastructure. This individual will provide strategic and operational leadership across software engineering and cybersecurity while mentoring established...SuggestedRemote work
- ...It Director Opportunity At ABC Industries ABC Industries was founded in 1962 and is one of the leading providers of specialty widgets in the world. Our company is well known for a vibrant and collaborative culture where innovation thrives, and every team member feels...SuggestedLocal area
$138k - $179k
...Director of IT & Information Security At Hidden Level, we're building the future of airspace awareness through cutting-edge RF sensing technology. Our mission is to make the world safer—whether it's protecting troops, securing infrastructure, or enabling smarter cities...SuggestedWork experience placementLocal areaFlexible hours$137.5k - $229.5k
...ETAP is committed to creating a diverse work environment and is proud to be an Equal Opportunity Employer. Title: Director Of IT Security Location: Irvine, CA Job type: Full-time / Hybrid Director of IT Security Reports to the CIO. Works closely...Full timeFor subcontractorLocal area$175k - $190k
...Director Of It, Information Security & Data Privacy Exton, PA Director of IT, Information Security & Data Privacy Position Overview We are seeking a hands-on, strategic, and operationally strong Director of IT, Information Security & Data Privacy to lead and...Work at officeLocal areaRemote work$175k - $190k
...Director Of It, Information Security & Data Privacy Our client is a growing SaaS organization focused on innovation, operational excellence, and building scalable technology solutions. They are committed to creating secure, efficient systems that support long-term...Remote work- ...rapidly improving models through real-field applications. Learn more at About the Job We're hiring a Director of IT, Infrastructure & Security to own Field AI's IT operations, corporate and cloud security, and compliance program end-to-end. You'll inherit a...Remote work
- ...Director of IT Security Operations The Director of IT Security Operations will manage, lead and deliver the security operations function within the organization, and externally with partners, clients and vendors. This will include, but of course is never limited to,...
$170k - $210k
...and innovation voice in healthcare. Onward and Upward!!! Job Summary We’re seeking a decisive, hands‑on leader to drive our global Security Operations strategy. You will lead a high‑performing team responsible for 24×7 monitoring, detection engineering, incident...- ...The Director's main responsibilities include analyzing and collaborating across departments to maximize stability, efficiency and productivity... ..., the Director is responsible for the firm's information security program, ensuring that it is continuously developed and...
- ...Posting Number S373P Working Title CTO/CISO, Director of IT Services FLSA Exempt Pay Grade Non-Classified... ...include overseeing Cybersecurity and other IT security related operations. Creates, modifies and maintains campus security...Full timeLocal areaImmediate start
$113k - $188k
...Required : Active Top Secret SCI (TS/SCI) As a Senior Consultant in Guidehouse's cyber practice, you will lead and execute core security compliance and RMF activities for classified federal systems. You will ensure systems maintain an appropriate security posture,...Temporary workFlexible hours- ...MANTECH seeks a motivated, career and customer-oriented Information System Security Officer (ISSO) to join our team in Winchester, VA. Responsibilities include, but are not limited to: Ensure the day-to-day implementation, oversight, continuous monitoring, and...Work at office
$70 - $85 per hour
A trusted staffing and consulting firm seeks an Intrusion Analyst to support federal law enforcement with advanced digital forensic investigations. The role involves detailed forensic analysis, evidence preservation, and expert testimony. Candidates should have a minimum...Hourly payRemote work- ...cybersecurity initiatives, the full-time remote Chief Information Security Officer will manage Slingshot's cybersecurity strategy, ensure... ...years of experience in cybersecurity with leadership roles such as CISO or Deputy CISO Strong knowledge of NIST SP 800-171, CMMC, DFARS...Full timeRemote work
- ...Top 10 LinkedIn Startups in Saudi Arabia for 2024. We are looking for a virtual cybersecurity or compliance expert to guide our security posture, particularly as we move into regulated spaces like auto-financing. The role is ideal for someone with extensive...Remote work
- ...Chief Information Security Officer (CISO) Our client is a leading provider specializing in laboratory testing services, dedicated to delivering... ...to the CIO (or CEO), you will collaborate with leadership, IT teams, and external stakeholders to safeguard the organization...Remote work
$190k - $220k
...divh2Chief Information Security Officer/h2pPosition at Zones LLC. Company Overview: When it comes to IT solution providers, there are a lot of choices. But when it comes to... ...do as the Chief Information Security Officer (CISO): The requirements below are representative of...Work at officeLocal area- ...Chief Information Security Officer (CISO) The Chief Information Security Officer (CISO) is a senior leader responsible for driving Elbit Systems... ...planning and collaborates with stakeholders across IT, legal, compliance, and operations to align security initiatives...Contract workFor contractors
- ...Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information...
- ...Information Security Management System Subject Matter Expert Join us in a pivotal role at the heart of our global Information Security function, where you will shape and strengthen the organization's ISO 27001:2022 Information Security Management System across a global...Remote workFlexible hours
- ...strategic and operational executive leadership role. We are looking for a CISO who brings deep banking regulatory expertise (NIST, FFIEC, PCI, SOC) and can proactively assess and continue to enhance a security program in a fast-moving fintech environment supporting banking...Contract workRemote workNight shift
- ...Citizens Bank of Philadelphia is currently seeking an Information Security Officer, as follows: Position Information Security Officer... ...status reports to the Board regularly. Assist users with IT related security issues and security awareness, as necessary. Review...For contractors
$145k - $170k
...Chief Information Security Officer Remote The Chief Information Security Officer (CISO) is responsible for establishing, leading, and maintaining the organization... ...the CIO, other executives, and the board of directors, including presentations on security matters....Work experience placementRemote workFlexible hours- ...Chief Information Security Officer (CISO) About the Company Mission-driven online provider of musculoskeletal therapy Industry Health, Wellness and Fitness Type Privately Held, VC-backed Founded 2015 Employees 501-1000 Funding $200+ million...
- ...Chief Information Security Officer (CISO) Swap is the infrastructure behind modern agentic commerce. The only AI-native platform connecting backend operations with a forward-thinking storefront experience. Built for brands that want to sell anything - anywhere, Swap...Remote work
$100 per hour
...engagement in support of our mission to provide STEM education to underrepresented middle school girls. The Chief Information Security Officer (CISO) provides strategic leadership for information security, cybersecurity risk, and data protection across the organization,...Remote workFlexible hours- ...CHIEF INFORMATION SECURITY OFFICER THE POSITION IN A NUTSHELL Sciens is seeking a Chief Information Security Officer (CISO), who will be responsible for establishing and operating... ...Partner closely with IT and operations teams to embed security...Temporary workWork experience placementRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director of IT & Security, CISO. Be the first to apply!
- information systems security officer United States
- information security officer United States
- business information security officer biso United States
- chief information security officer United States
- information security officer iso United States
- chief information security officer ciso United States
- business information security officer United States
- remote ciso United States
- ciso United States
- IT security analyst United States


