Head of IT & Cybersecurity
$229.5k - $256kEko
About Eko Health
Eko builds AI and digital tools to enable every healthcare provider to more accurately detect heart and lung disease – the leading causes of death globally. Our FDA cleared, industry leading products are used by hundreds of thousands of clinicians on millions of patients around the world. With Eko, clinicians can detect cardiac and pulmonary disease with higher accuracy, diagnose with more confidence, manage treatment effectively, and ultimately give their patients the best care possible.
We have strong venture capital backing from investors like Artis Ventures, Questa Capital, Highland Capital, and Mayo Clinic Ventures.
Recognized by TIME magazine in 2025 as one of the world’s top healthcare technology companies, Eko is one of the fastest growing digital health companies with products used around the world at some of the most prestigious health systems.
We have more than 8 FDA clearances including novel AI algorithms, and we invest heavily in quality clinical research and R&D to build and validate exceptional products for patients we care deeply about.
We’ve built a mission driven, high performing, talented, and diverse team of engineers, physicians, PhD’s, creatives, and technologists. We are committed to investing in each other and our mission to ensure all patients have access to high quality care.
We are headquartered in Emeryville, California and privately-held with world class investors and partners.
Role Summary
Eko is hiring a Head of Information Technology & Cybersecurity to own the company's corporate IT operations and cybersecurity program end to end. In this role, you will be the single accountable owner for keeping Eko's internal systems reliable and secure, and for corporate compliance obligations including SOC 2 and related frameworks.
This is a corporate-facing role. The security of Eko's product — its FDA-cleared device software and AI platform — is owned by our Product Security team. This role does not set product security strategy; you will serve as a resource to Product Security, executing security testing against that team's pre-defined product security procedures as required.
This is a hands-on and highly visible leadership role for someone who can build a program, run it day to day, and represent it credibly to auditors, customers, and executive leadership.
Essential Functions:
Corporate IT Operations & Infrastructure
-
Own Eko's corporate IT strategy, infrastructure, and day-to-day operations: employee endpoints (MDM), identity and access management (SSO/MFA), corporate network, cloud workplace tools, helpdesk/support, and asset management.
-
Manage software and SaaS procurement, licensing, and lifecycle, including vendor selection and renewal negotiations in partnership with Finance.
-
Own the IT budget and technology roadmap, and build or manage the team (internal hires and/or outsourced providers) responsible for day-to-day IT support.
Cybersecurity Program & Governance
-
Design, implement, and continuously mature Eko's corporate cybersecurity program: security policies, endpoint and email security, data loss prevention, identity governance, security awareness training, and incident response planning.
-
Own and maintain the corporate security risk register, and drive remediation of identified gaps with clear ownership and timelines.
-
Act as Eko's primary point of contact for corporate-level security incidents — coordinating investigation, containment, communication, and post-incident review.
Compliance & Audit Management
-
Own SOC 2 (Type I/II) end to end: scoping, control design and implementation, evidence collection, and management of the external audit relationship.
-
Own or contribute to other applicable corporate compliance obligations as the company's needs require — for example HIPAA/HITECH administrative and technical safeguards, HITRUST, and relevant privacy regulations (e.g., CCPA, UK/EU GDPR) tied to Eko's customer base and international footprint.
-
Serve as the primary liaison for customer and partner security questionnaires, vendor security due-diligence requests, and audit committee or board reporting on IT/security posture.
-
Maintain the compliance calendar so renewals, audits, and control testing happen on schedule, with no last-minute scrambles.
Customer & Health-System Documentation
-
Own the timely delivery of all corporate compliance and security documentation requested by health systems, clinicians, and other customers during sales procurement, vendor risk review, and ongoing account management — including SOC 2 reports, HIPAA/BAA materials, security questionnaires (e.g., SIG, CAIQ), penetration test summaries, and policy attestations.
-
Maintain a current, ready-to-share documentation package so Sales and Customer Success can respond to procurement and security-review requests without delay.
-
Partner with Sales, Customer Success, and Legal to support customer security calls and due-diligence sessions when a technical point of contact is needed.
Cross-Functional Collaboration
-
Partner with People/HR on secure onboarding and offboarding, device provisioning, and access provisioning/deprovisioning.
-
Partner with Legal on vendor security reviews and data processing agreements.
-
Partner with Product Security as a testing resource, executing tests against procedures that team defines — see note above on where this role's scope ends.
Note: Job duties may change at any time with or without notice.
Required Qualifications:
-
Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
-
10+ years of experience in IT and/or cybersecurity roles, including leadership experience, ideally at a growth-stage company.
-
Experience in a regulated healthcare, digital health, or medical device company, with familiarity with HIPAA/HITECH, HITRUST, or FDA cybersecurity expectations for connected devices.
-
Hands-on experience owning SOC 2 from scoping through audit, including evidence collection and direct management of the external auditor relationship.
-
Strong working knowledge of identity and access management, endpoint management, cloud workplace platforms (e.g., Google Workspace or Microsoft 365), and modern security tooling (EDR, MDM, SSO/IdP, DLP).
-
Track record of building or maturing a security program — policies, a risk register, incident response, and security awareness training — largely from the ground up.
-
Excellent written, verbal, and executive presentation skills, with the ability to translate technical risk for executive and non-technical audiences.
Preferred Qualifications:
-
Relevant certification such as CISSP, CISM, or CRISC.
-
Experience supporting compliance needs tied to international expansion (e.g., UK/EU GDPR).
Benefits and Perks We Offer:
- The opportunity to work on products that impact the health of millions of people.
- Generous paid-time off
- Stock incentive plans
- Medical/Dental/Vision, Disability + Life Insurance
- One Medical membership
- Parental Leave
- 401k Matching
- Learning and Development stipend
We believe the ability to listen is the ability to care. Eko was named one of the World’s Top HealthTech Companies of 2025 by TIME and Statista. This honor reflects the mission to transform cardiac and pulmonary care through AI-powered stethoscopes and digital health solutions.
Case Studies & Customer Stories
Eko Blog
Newsroom
Work Experience & Location Requirements- This role is based out of our office in Emeryville, CA
- This is a Hybrid role (In-Office days are Tuesday, Wednesday and Thursday)
- Prolonged periods of sitting and working at a computer
- Must be able to perform job duties with or without reasonable accommodation
$229,500 - $256,000 a year
\nEko is proud to be an equal opportunity employer and welcome people of different backgrounds, experiences, abilities and perspectives. We are committed to building a diverse and inclusive team.
Employment offers will always be made by an Eko Health hiring manager or Talent Acquisition Partner with an @ekohealth.com email address only. We will never text you about employment offers. If you are receiving an employment inquiry or employment offer from a non 'ekohealth.com' email address, please assume it is spam. The Eko Health careers page lists only current and open positions. If you are contacted about a job not listed on the careers page, assume it is spam. If you believe you are a victim of a false employment scam, you should report these incidents to the FBI IC3.- ...Kyverna Therapeutics, Inc. is seeking a Head of Information Technology to lead the company’s technology strategy as it moves from development-stage biotech to a fully... ...role will oversee enterprise applications, cybersecurity, infrastructure, validation, data governance...SuggestedRemote job
$200k - $350k
...frontier-scale pre-training, domain-specific RL, ultra-long context, and inference-time compute to achieve this goal. About the role As Head of IT at Magic, you will own the systems that keep the company productive and secure. This is a hands‑on leadership role. You’ll lead a...SuggestedWork at officeRelocationVisa sponsorship- ...responsible for ensuring the stability, security, and advancement of IT systems that support patient care, compliance, and operational... ...workflows, is essential. The role requires expertise in cybersecurity, data governance, and compliance with healthcare regulations. The...SuggestedInterim role
- ...as well as building and mentoring high-performing teams across IT, security, and business platforms. In a SaaS environment, the CIO... ..., and lead the company's security program, including cybersecurity risk management and compliance with relevant frameworks. Applicants...Suggested
- ...IT Head of Dynamics 365 About the Company An established API CDMO operating in a validated, GxP manufacturing environment. Industry Pharmaceuticals Type Privately Held About the Role The Company is seeking an IT Head of Dynamics 365 to take on a...Suggested
$220k - $245k
Responsible for developing the investment strategy and leading investment activities, managing investments in portfolio, and assisting in raising investment capital through fundraising with endowments/foundations. Oversees and builds a dynamic team of six professionals...Immediate start- ...strategic and operational aspects of current and future technologies of the business including the management and operations of the entire IT department. The ideal candidate will have experience planning and implementing technology solutions to support staff in their...Work experience placementFlexible hours
- Job TitleWhen you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. Because we respect your right to privacy, you can choose not to allow some types of cookies. However, blocking some types of cookies may impact your...
- Chief Information Officer (CIO) About the Company Premier private university specializing in nursing & health sciences Industry Higher Education Type Educational Institution Founded 1979 Employees 201-500 About the Role The Company is seeking...
- ...Associate Chief Information Officer (CIO), Education IT About the Company Recognized public research university Industry Higher Education Type Educational Institution Founded 1873 Employees 10,001+ Categories Association Education...
$135.9k - $265.88k
...make major enterprise technology investments and define multi‑year transformation roadmaps. The work is centered on platform strategy, IT and AI operating models, and enterprise transformation‑projects that are often board‑facing, business‑critical, and require strong...Full timeWork at officeLocal area$110.5k - $149.5k
...ll do: Advise clients on outsourcing strategies, M&A procurement and sourcing strategies, and vendor relationships, including IT outsourcing and service delivery model optimization. Serve on client delivery teams as a program manager; structure and manage...Full timeContract workInternshipWork at officeLocal areaImmediate startFlexible hours$1,000 per month
...Job Description Job Description Title: VP IT Infrastructure & IT Operations - Lead Technology Transformation at Scale Location: Oakland, CA | Hybrid (Relocation assistance available) Compensation: Competitive base plus 40% Annual Bonus + Equity/LTI Are you an...Relocation package- Chief Investment Officer (CIO) About the Company Innovative equity crowdfunding platform Industry Internet Type Privately Held, VC-backed Founded 2014 Employees 51-200 Funding $76-$100 million Categories Internet Accredited Investors...
$200.54k - $256k
...SmartRecruiters application by the filing deadline. Information must be entered into the SmartRecruiters applicant tracking system under the headings for Experience and Education. Leaving these sections blank and attaching a resume in lieu of completing the Experience and...Permanent employmentFull timeContract workWork experience placementWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Head of IT & Cybersecurity. Be the first to apply!
- IT infrastructure Emeryville, CA
- information technology Emeryville, CA
- IT governance analyst Emeryville, CA
- IT account executive Emeryville, CA
- information technology and services consultant Emeryville, CA
- entry level IT tech Emeryville, CA
- information technology specialist Emeryville, CA
- IT training Emeryville, CA
- entry level computer information technology Emeryville, CA
- it operations coordinator Emeryville, CA



