Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director of IT & Security, CISO

$224k - $260k

Redox

Director Of It & Security, Ciso

Redox is on a mission to accelerate healthcare's transformation with useful data. Redox engine, a flexible interoperability platform, connects and powers real-time healthcare data exchange. With just one connection, data can be orchestrated across a growing network of 12,000+ systems and organizations, including 100+ electronic health record systems (ehrs). Redox processes over 1.2 billion messages per month across our health tech vendor, provider, payer, ehr, and life sciences customers.

opportunity & impact

Redox is seeking a hands-on director of it & security, ciso to own enterprise security, cloud, and application security, and corporate it. This role reports directly to the cto and is a core member of the technology leadership team.

you will lead security engineering, security operations, and corporate it while partnering closely with engineering, platform, and operations to embed security and reliability into how redox builds and runs software. Success in this role means strong security posture, resilient internal systems, and an employee experience that just works—without slowing the business down.

job responsibilities

  • security strategy & leadership: own end-to-end information security strategy across cloud, application, infrastructure, and corporate environments. Define a pragmatic security roadmap aligned to business risk, regulatory requirements, and engineering velocity. Serve as the executive owner for security posture, risk management, and incident response. Act as a trusted advisor to the cto and executive team on security, risk, and operational tradeoffs.
  • security engineering & devsecops: drive a devsecops-first operating model, embedding security into ci/cd pipelines, infrastructure as code, and developer workflows. Partner deeply with engineering leadership to make security scalable, automated, and measurable. Lead threat modeling, secure design reviews, and risk assessments for new platform initiatives. Champion policy-as-code, guardrails, and automation over manual process.
  • cloud, application & infrastructure security: own security architecture and operations for a primarily aws-based environment. Lead application security programs, including secure sdlc, dependency scanning, sast/dast, penetration testing, and vulnerability management. Own identity and access management strategy with okta as the backbone. Ensure strong detection, alerting, and response across endpoints and cloud workloads (e.g., crowdstrike, rad).
  • security operations & incident response: build and run effective security operations, including monitoring, investigation, incident response, and post-incident learning. Lead incident response for both security and it incidents, serving as the calm point of accountability. Run tabletop exercises and continuously improve response playbooks. Manage vendor relationships, including crowdstrike, flashpoint, rad, and okta.
  • corporate it & enterprise systems: own corporate it strategy and execution, focused on reliability, security, and employee productivity. Lead end-user computing, device management, endpoint security, identity lifecycle management, and access controls. Oversee it systems, including identity, email, collaboration tools, endpoint management, and saas access governance. Drive automation and standardization across onboarding, offboarding, access management, and device lifecycle. Partner with people ops, legal, and finance on it processes, audits, and vendor management.
  • compliance, risk & healthcare context: own healthcare-related security and compliance programs (e.g., hipaa, soc 2). Translate regulatory requirements into practical, engineering-friendly controls. Lead third-party risk management and vendor security reviews. Support customer security reviews and serve as an executive point of contact on security matters.
  • team leadership & culture: build, lead, and mentor a high-performing team spanning security engineering, security operations, and it. Create a culture where security and it are seen as enablers, not blockers. Establish clear ownership, measurable outcomes, and high operational standards. Be visible, decisive, and calm under pressure.

required skills & experience

  • 10+ years in information security, it, or related technical leadership roles, including 5+ years of people management, ideally in healthcare technology saas.
  • proven experience leading security engineering, security operations, and corporate it in a cloud-native saas environment.
  • direct experience in healthcare or other highly regulated industries.
  • track record of successfully implementing devsecops practices.
  • deep hands-on experience securing aws environments.
  • strong understanding of endpoint security, identity systems, and modern saas it stacks.
  • practical knowledge of tools such as crowdstrike, okta, flashpoint, rad, and related platforms.
  • strong foundation in application security, cloud security, and infrastructure as code.
  • proven proficiency in ai tools and techniques, including prompt engineering and hands-on experience across multiple large language model platforms, with a demonstrated ability to drive ai adoption enterprise-wide.
  • strong collaborator with engineering, platform, and operations teams.
  • clear, direct communicator who can articulate risk without theatrics.
  • comfortable making tradeoffs and prioritizing based on real-world risk.
  • builder mindset with a bias toward automation and scale.

preferred skills & experience

  • proven experience securing autonomous agentic loops and tool-calling frameworks. deep understanding of indirect prompt injection and designing "human-in-the-loop" guardrails for agent-driven actions.
  • technical expertise in securing the model context protocol (mcp), specifically regarding context isolation, sandboxing, and identity propagation between llms and private data sources.
  • direct experience migrating security programs to vanta or similar automated grc platforms. ability to architect "continuous compliance" by integrating cloud, identity, and developer tools for automated evidence collection.
  • hands-on application of the nist ai rfm, owasp top 10 for llms, etc within a production environment.

software platform / tools

  • required: crowdstrike, aws, okta
  • preferred: vanta

$224,000 - $260,000 a year compensation: the base salary range for this position is expected to be between $224,000 - $260,000 per year. *the base salary range is subject to change and may be modified in the future. The actual offer may vary depending on multiple factors unique to each candidate, including but not limited to the level of job-related knowledge, skills, qualifications, education/certification, and interview assessment. Please note that the compensation details listed above reflect the base salary only. Redox offers a total rewards package that includes stock options and employee benefits for full-time employees. Our total rewards package includes the following: benefits & perks • 100% remote first culture (must be based in the US) • unlimited flexible time off • 15+ observed holidays • rest & r^charge days (guaranteed a 3-day weekend each month) • r^charge (6 weeks paid sabbatical + stipend) • 401k match 50% for up to 8% on day 1 • medical/dental/vision benefits on day 1 • hsa & fsa, life, disability, medical travel & employee assistance program • paid parental leave (16 weeks) • productivity stipend & wellness fund • redox issued macbook • virtual and/or in-person team & company events • stock options • employee referral bonus program

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Director of IT & Security, CISO in United States vacancy
  • $137.5k - $229.5k

     ...environment and is proud to be an Equal Opportunity Employer.Title: Director Of IT SecurityLocation: Irvine, CAJob type: Full-time /...  ..., and Operations.Collaborates with parent and sister company Security teams to align standards, share risk and incident intelligence... 
    Suggested
    Full time
    For subcontractor
    Local area

    ETAP

    Irvine, CA
    17 hours ago
  •  ...Job Description Job Description POSITION SUMMARY: The Director of IT Security is responsible for the resources, processes, systems, policies, procedures, and cyber strategy to protect the entire tribe, including all government, gaming, health, and enterprise divisions... 
    Suggested
    Contract work
    Part time
    Immediate start

    Sault Tribe

    Perronville, MI
    18 days ago
  • An innovative energy company is seeking a Director of Information Technology to lead application development and IT infrastructure. This individual will provide strategic and operational leadership across software engineering and cybersecurity while mentoring established... 
    Suggested
    Remote work

    Santanna Energy Services

    Austin, TX
    1 day ago
  • $35k

     ...with practical change management, enabling enterprises to deploy secure, compliant, and high-impact solutions that drive measurable...  ...Mission: Help organizations win the AI moment. Ajaia is hiring a Director of IT & Security to own the full scope of internal IT operations,... 
    Suggested
    Full time
    Remote work

    Ajaia

    Remote
    a month ago
  • $165k - $210k

     ...your career, expand your skill set, and shape the future of performance marketing. The Opportunity We're hiring a Director, IT & Security to own internal technology end-to-end: the systems, access, security, and infrastructure behind everything we do. You'll run... 
    Suggested
    Full time
    Work at office
    Shift work

    Moxxi Digital

    New York, NY
    2 days ago
  • $155k - $175k

     ...Xello's Director of IT & Security This role is a remote position, looking for candidates within Canada only, working in Eastern Time Zone hours. Who Are You? As Director of IT and Security, you will lead Xello's IT operations and security initiatives which include... 
    Remote work
    Flexible hours

    Xello

    United States
    2 days ago
  • $190k - $258k

     ...Director of IT & Security Paperless Parts is a SaaS startup helping manufacturers quote faster and win more work. From rockets to medical devices...  ..., and enterprise security. Reporting directly to our CISO, you'll have real, day-to-day proximity to the teams whose... 
    Full time
    Work at office
    Remote work

    Venturefizz Product Management Community

    Boston, MA
    1 day ago
  •  ...IT Director We are looking for an experienced IT Director to oversee all IT functions in our company. This person will be in charge of the IT team and will be experienced in creating and implementing IT policies and systems that will meet objectives. The IT Director... 

    Sales Demo - Juliet Rausch

    San Francisco, CA
    2 days ago
  • $88.4k - $154.7k

     ...full potential. Unleash your talent and redefine what’s possible.Job Description:Parsons is looking for an amazingly talentedCyber Security Analyst / Information Systems Security Officer (ISSO) to join our team! In this role you will be part of Parsons’ Federal... 
    Full time
    Contract work
    For contractors
    Work experience placement
    Interim role
    Work at office
    Flexible hours

    Parsons

    Huntsville, AL
    2 days ago
  • $180k - $225k

    Job DescriptionSompo has a unique opportunity for an Information Security Officer to join our Information Security team.This role will...  ...Officer will manage more than 7,000 users, hundreds of developers and IT staff working in a range of technologies, more than 10,000... 
    Full time
    For contractors
    Work at office
    Flexible hours

    Sompo International

    Boston, MA
    4 days ago
  • $99.2k - $145k

     ...Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!The Information Security Officer will be a member of the Business Information Security Officer's (BISO) organization and partners with the Global Business... 
    Full time
    Work at office
    Flexible hours
    Day shift

    Bank of America

    Denver, NC
    17 hours ago
  • ADI requires a CISO who will establish and maintain an enterprise...  ...solutions, along with enterprise IT systems and services.The CISO...  ...Committee, and the Board of Directors, ensuring our cybersecurity posture...  ...this role is evangelizing a 'security-by-design' culture across our... 

    Snap One

    Dallas, TX
    3 days ago
  • Chief Information Security OfficerCorporate Headquarters12575 Uline Drive, Pleasant Prairie, WI 53158Lead security. Manage risk. Support...  ...a secure environment for our growing North American company.Why IT at Uline?Uline’s 450+ person in-house tech team builds and supports... 
    Full time

    Uline Shipping Supplies

    Waukegan, IL
    2 days ago
  • $280k - $375k

     ...deliver value across enterprise security performance, digital supply...  ...Risk Committee, and Board of Directors on enterprise risk and cybersecurity...  ..., and commercially engaged CISO who views security not as a...  ...Product, Engineering, Legal, IT, GRC, People, and customer-facing... 
    Full time
    Local area
    Flexible hours

    Bit Sight

    Boston, MA
    1 day ago
  • Job Title: Information Security OfficerSummaryThe Information Security Officer (ISO) at German American Bank is responsible for establishing...  ...to the Technology Services department - ensuring security and IT activities are completed in a coordinated, prioritized and... 
    Temporary work
    Work experience placement
    Bank staff

    German American Bank

    Evansville, IN
    1 day ago
  • $401 per month

     ...TEAM -TogetherEveryoneAchievesMoreJob Title: FVP & Information Security Officer Department: Risk & ComplianceHybrid Schedule: 3 days onsite...  ..., and industry standards as determined by the Executive IT Strategic Committee and/or Risk & Compliance Committees.Key Responsibilities... 
    Full time
    Work at office
    Immediate start
    Flexible hours

    Open Bank

    Los Angeles, CA
    3 days ago
  • Als CISO vervul je een onafhankelijke, organisatiebrede tweede-lijnsrol op het gebied van...  ...rapporteert aan de CFO en bent onafhankelijk van de IT- en OT-organisatie. Je adviseert Directie...  ...en compliance.Werken aan een sterke security governance en nauw samenwerken met IT,... 
    Contract work

    RET

    Rotterdam, NY
    4 days ago
  • Position Summary The Chief Information Security Officer (CISO) owns enterprise security strategy, risk...  ...companies as well as security and IT leadership at Fortive. The CISO is accountable...  ...leadership role (CISO, VP Security, Director of Security or equivalent) at a SaaS or... 
    Work at office
    Local area
    Worldwide

    Fortive

    Austin, TX
    4 days ago
  • OverviewThe Chief Information Security Officer (CISO) is responsible for establishing, executing, and continuously evolving the enterprise cybersecurity...  ...a trusted advisor to executive leadership and the Board of Directors, ensuring cybersecurity risks are effectively identified,... 
    Full time
    Flexible hours

    AmTrust

    Cleveland, OH
    2 days ago
  •  ...Industries Software is seeking a proactive and expert Information Security Officer to join our dynamic team. In this critical role, you...  ...3-5 years of progressive experience in an Information Security, IT Audit, or Compliance role, demonstrating a solid understanding of... 
    Full time

    Mendix

    Rotterdam, NY
    3 days ago
  • $90.9k - $129.9k

     ...to help build your skills and capabilities.SummaryAs Information Security Leader (ISO), you will be accountable for all security-related...  ...security and compliance requirementsPreferred skillsExperience in IT outsourcing business or 8+ years in industry verticalCISSP... 
    Full time
    Flexible hours

    Gainwell

    Texas
    3 days ago
  • $160k - $275k

     ...opportunity? Royal Bank of Canada is seeking a Technical Information Security Officer to provide US regional cybersecurity leadership and...  ...Information Technology Security, Interpersonal Relationship Management, IT Security Architecture, Performance Management (PM)Additional Job... 
    Full time
    Flexible hours

    Royal Bank of Canada

    Jersey City, NJ
    2 days ago
  • Position OverviewThe Portfolio Information Security Officer (PISO) is a senior, director-level leader serving as the primary security advisor for assigned lines of business. Reporting to the Deputy Chief Information Security Officer, the PISO aligns business objectives... 

    Asurion

    Nashville, TN
    17 hours ago
  •  ...Group, LLCJob Title: Chief Information Security Officer (CISO) Location: Birmingham, AL or Chicago, IL...  ...senior management and the Board of Directors on cybersecurity risks, compliance, and...  ...of experience in information security, IT risk management, or related fields, with... 
    Work at office

    GVW

    Miami, FL
    3 days ago
  • Job Position: Chief Information Security Officer (CISO)Department: Information TechnologyReports to: Chief Information Officer (CIO)FLSA: Exempt...  ...CISO partners with executive leadership and the Board of Directors to align cybersecurity priorities with business objectives,... 
    Full time

    Urban One

    Silver Spring, MD
    1 day ago
  •  ..., and mission-driven leader to be the next Chief Information Security Officer (CISO). Reporting to the Vice President and Chief Information Officer...  ...security resources. The candidate will work closely with IT leadership, administrative leaders, and academic faculties across... 
    Contract work
    Remote work

    University of Virginia

    Charlottesville, VA
    17 hours ago
  • $134.1k - $241.4k

     ...You'll Bring:Must have a Bachelor’s DegreeMinimum of Seven (7+) years’ experience working in the areas of intelligence, information security, network forensics, insider threat or security operations.Deep understanding of adversary tactics, techniques, and procedures (... 
    Full time
    Flexible hours

    Parsons

    Annapolis Junction, MD
    4 days ago
  • We are seeking a Chief Information Security Officer (CISO) with a global vision to build and lead our cybersecurity and information assurance strategies...  ...strategic, comprehensive enterprise information security and IT risk management program at a global scale - to ensure the... 
    Full time
    Contract work

    WolfSpeed

    Durham, NC
    2 days ago
  • $237.5k - $390k

     ...Title: Chief Information Security Officer (CISO)Location: Austin, TX / Morristown, NJ (hybrid)Reports...  ...management programReport to the Board of Directors and Audit and Risk Committee on...  ...functional stakeholders (Legal, Compliance, IT, and executive leadership) are engaged... 
    Temporary work
    Flexible hours

    Hippo Insurance

    Austin, TX
    3 days ago
  •  ...BOK Financial Corporation Group includes BOKF, NA; BOK Financial Securities, Inc. and BOK Financial Private Wealth, Inc. BOKF, NA operates...  ....Job DescriptionThe Chief Information Security Officer (CISO) is responsible for leading the enterprise information security... 

    Bank of Oklahoma

    Tulsa, OK
    17 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director of IT & Security, CISO. Be the first to apply!