Head of IT & Security
NexHealth
About NexHealthOur healthcare system remains frustratingly analog. When you live in a world of one-tap car rides, instant meal delivery, and unlimited streaming, why do you still have to call to schedule a doctor’s appointment and fill out a clipboard in the waiting room?NexHealth’s mission is to accelerate innovation in healthcare by connecting patients, providers, and developers. We’re building the infrastructure layer for modern healthcare, connecting thousands of fragmented, on-premise, and closed EHR systems into a single, modern platform that powers software, APIs, payments, and patient experiences across the ecosystem.Founded: 2017Headquarters: San Francisco, CAFunding: $177M Series C Employees: 200+Trusted by tens of thousands of providers and hundreds of health-tech developers — forging the infrastructure layer that modern healthcare needsAbout the RoleNexHealth is a technology company building infrastructure that's reshaping how patient data moves and how the HealthTech ecosystem connects. We're looking for a Security Lead to own our security governance, compliance, IT operations, vendor security, and incident response — establishing the function, embedding strong practices, and partnering closely with engineering, legal, and leadership.This is a player-coach role with real hands-on expectation in year one. You'll drive the next phase of our security and compliance program, and build your team.What You'll DoOwn NexHealth's security governance, compliance, and IT programs end-to-end.Serve as named Information Security Officer and Privacy Officer for SOC 2 and HIPAA — own the policy manual (40+ documents), audit liaison relationship with A-LIGN, control mapping across overlapping regimes, and evidence collection pipelines.Set security standards across application security, vulnerability management, cloud security (AWS), audit logging, and access controls — driving the technical program through Engineering via influence, not direct authority.Build, hire, and develop the IT and workforce security program: endpoints, identity, SaaS administration, phishing simulations, role-specific training modules, and facilities security.Own vendor security: intake, classification, assessment, BAA execution, ongoing oversight, and customer-facing trust artifacts including Trust Center and subprocessor disclosure.Lead incident response in Officer capacity; partner with outside counsel on breach determinations, own IR tracking, and run annual tabletop exercises.Own the risk register, risk acceptance decisions, privacy operations (DSARs, data subject rights, privacy complaints), BC/DR plan, and cyber insurance relationship.Hire a Staff-level IT IC within year one and grow the function from there.What You'll BringExperience8+ years of relevant security experience, including 3+ years in a security leadership role where you were materially building the program, not maintaining it.Has built (not inherited) a security program from a near-zero baseline at least once.Has owned a recurring external audit cycle end-to-end (e.g., SOC 2, ISO, PCI, HITRUST) — designed evidence collection, mapped controls, ran the auditor relationship, and made the next cycle materially easier than the last.Software engineering background. Can read a pull request, evaluate cloud configurations, and push back on Engineering with technical substance.Experience hiring and developing senior security or IT individual contributors.QualificationsHands-on experience with security tools and technologies such as SIEM, MDR, IDS/IPS, WAF, DLP, and vulnerability scanners.You've reshaped how a company engages with auditors, regulators, or customer security teams — moved questionnaires to Trust Centers, audits from manual to automated, or vendor reviews from one-off projects to continuous programs.You drive sustained operational change in functions you don't manage.You treat engineering velocity as a security input. Slow shipping creates security risk too.You can frame risk for a Board-level audience and for an engineering audience in the same week.Behavioral TraitsFirst-principles thinker.Writes. NexHealth runs on documents; verbal-first operators struggle here.Comfortable being the ranking voice on policy and risk.CompensationActual salaries will vary depending on factors including but not limited to location, experience, and performance. The range listed is just the base salary component of NexHealth’s total compensation package for employees. Other benefits may include stock options, an unlimited paid time off policy, and up to 100% coverage on medical, vision and dental insurance.NexHealth Compensation Range$160,000—$200,000 USDBenefitsFull Medical, Dental, and Vision (up to 100% covered)401K and commuter benefitsFlexible PTOHigh-impact work that directly improves the healthcare experience for millionsOur ValuesSolve the customer’s problems, not yoursWhen making decisions, think from the perspective of the customer. It’s easy to make decisions that make our lives simpler, but not the customers.Do the things others are not willing to doAs a Nexer, always go after the hardest problems. Pursue things at the highest quality. Move at the fastest pace. Take ownershipAct like a founder. Own your roles, destinies, mistakes, behavior, and our mission. The buck stops with each of us - no blaming or excuses.Say what’s on your mind, with positive intentBe direct, proactive, transparent, and frequent in your communication.Default trustAs a Nexer, you do not have to earn trust, trust is given to you by default. If we by default trust each other, our speed of communication, feedback, information sharing, and overall improvements will be a lot faster.Think in first principlesWe first identify the problem and then break it down to its fundamentals before diving into solutions. We constantly ask “why” to validate our assumptions.We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We provide reasonable accommodation for individuals with disabilities to participate in the application or interview process. Contact View email address on click.appcast.io to request assistance.
- ...Baseten is seeking a Head of IT to build, scale, and secure our internal technology function as we grow. You will lead 5+ IT engineers, own corporate IT infrastructure, identity management, device lifecycles, and vendor procurement, delivering a world-class tech experience...Suggested
- ...with the trust and stability of an FDIC-insured national bank. We are seeking a highly collaborative, hands-on Chief Information Security Officer (CISO) who wants to build, protect, and scale a digital banking infrastructure that serves millions of customers. This...SuggestedWork at officeShift work
$250k
...Overview The San Francisco, CA office of Lewis Brisbois, a full-service AmLaw 100 firm, is seeking a Chief Information Security Officer. The Chief Information Security Officer (CISO) is a senior executive responsible for developing, implementing, and overseeing a comprehensive...SuggestedWork at office- ...Location Toronto; London; Montreal; New York; San Francisco Employment Type Full time Location Type Hybrid Department Platform, Security Who are we? Our mission is to scale intelligence to serve humanity. We’re training and deploying frontier models for developers and...SuggestedFull timeWork at officeRemote workFlexible hours
$269.7k - $353.95k
...CISO and own the bank-entity scope of Mercury's 2LOD Information Security program. You'll be the person who keeps the program examiner-... ...defend role. You will sit across the table from OCC examiners, FFIEC IT audit teams, our Chief Risk Officer, and the board's risk...Suggested- ...Chief Information Security Officer (CISO) About the Company Innovative provider of data safety & recovery solutions Industry Information Technology and Services Type Privately Held Founded 2024 Employees 51-200 Specialties cloud backup...
- ...high bar for itself — keep reading. About the Role Socure is seeking an experienced, executive-level Deputy Chief Information Security Officer (Deputy CISO) to report directly to the CISO. In this role, you will lead company-wide security, data governance,...
- ...networking at hyperscale and shaping the foundation of next-generation data infrastructure This is a ground-floor opportunity to build a security organisation from scratch, setting policies, controls, and architectures that will underpin one of the most secure hyperscale...Remote workFlexible hours
- Chief Trust Officer (CTO) About the Company Highly respected wealth management firm with boutique, client-centric service for sophisticated families. Industry Financial Services Type Privately Held About the Role The Company is in search of a Chief...
$260.5k - $325.6k
...Francisco, Washington DC, Germany, Austria, Slovenia, and The Netherlands.About the Role: As the Vice President and Chief Information Security Officer (CISO), you will serve as a key executive and thought leader driving the strategic evolution of Planet’s information...Full timeContract workTemporary workWork experience placementWork at officeLocal areaRemote workHome officeShift work3 days per week- ...Deputy Chief Information Security Officer (CISO) About the Company Industry-leading cybersecurity platform Industry Computer... ...requires the ability to drive execution across various security, IT, cloud, compliance, and risk workstreams, ensuring that the security...
- ...Chief Information Security Officer (CISO), Information Security & Compliance About the Company Innovative artificial intelligence (AI) & marketing analytics platform Industry Information Technology and Services Type Public Company Founded 2014...
- ...Field Chief Information Security Officer (CISO) About the Company Industry leading provider of security & compliance solutions Industry Outsourcing/Offshoring Type Privately Held Founded 2020 Employees 501-1000 Funding $200+ million Categories...Remote work
- ...Lewis Brisbois in San Francisco seeks a Chief Information Security Officer to lead enterprise-wide security strategy, data protection, and risk management across all departments. You will oversee cybersecurity, privacy, governance, and incident response, aligning with...
- ...Varo Bank seeks a hands-on Chief Information Security Officer (CISO) to lead and scale a secure digital banking platform serving millions of customers. You will bridge executive strategy with technical architecture, shaping a proactive security stance across cloud infrastructure...
$170.6k - $234.2k
...range of consumer experiences and devices.The Business Information Security Officer (BISO) serves as the primary liaison between the... ...LeadershipBuild strong relationships with BU leaders, product owners, IT, engineering, finance, people, marketing, legal, and other...Full timeLocal areaWorldwideFlexible hours$201.11k - $269.08k
To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.Job CategorySalesJob DetailsAbout SalesforceSalesforce is the #1 AI CRM, where humans with agents drive customer success together...Full timeWork at office- Job description: Location: San Francisco, CA (on-site)Employment: Full-TimeAbout the RoleWe are looking for a Founding CTO, someone who wants to be the company's technical co-pilot. You will start hands-on, ship fast, and own the core architecture. As the company scales...Relocation
- ...and cloud. Trusted by 77% of the Fortune 100, MinIO is redefining how AI factories, intelligent applications, and autonomous agents secure, persist, and unlock the full value of their data. We are seeking a highly technical, visionary, and customer-centric Field CTO...Flexible hours
- ...high-impact decisions with minimal bureaucracy Set the technical culture: high ownership, speed, and accountability Ensure security, compliance, and trust at scale Requirements You’ve built and scaled real systems—not just managed teams You think like a...
$200k - $285k
...strategy and transformation within a complex and growing financial institution is strongly preferred, along with advanced information-security certifications. A comprehensive compensation package will be offered to the selected candidate. The targeted range for the...Full time- ...commercial results, member experience, and clinical impact. Our published outcomes include 42% of food-insecure members becoming food-secure within six months, meaningful weight loss and HbA1c improvement at 24 months, and an NPS of 86. The Opportunity This is a...
- ...thinking, and a commitment to innovation to help clear the way for millions of Americans to achieve more.About the RoleThis role brings IT and technology risk expertise into our Financial and Operations audit team, closing the gap between traditional financial audits and...Full timeWork at officeLocal areaRemote workRelocationFlexible hours
$119k - $299.93k
...& SummaryThe OpportunityAs a Digital Assurance & Transparency - IT Audit Senior Manager, you will play a pivotal role in providing independent... ...members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.SummaryLocation: NY-New York; FL-...Full timeH1b$99k - $232k
...ControlsManagement LevelManagerJob Description & SummaryThe OpportunityAs an IT Audit Controls/SOX Manager, you will play a pivotal role in... ...members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.SummaryLocation: CA-San Francisco;...Full timeH1b$124k - $280k
...LevelSenior ManagerJob Description & SummaryThe OpportunityAs an IT Audit Controls/SOX - Senior Manager, you will play a pivotal role... ...team members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.SummaryLocation: CA-San...Full timeH1b$220k - $245k
Responsible for developing the investment strategy and leading investment activities, managing investments in portfolio, and assisting in raising investment capital through fundraising with endowments/foundations. Oversees and builds a dynamic team of six professionals...Immediate start- ...forensic data collection and basic forensic analysis in both on‑site and remote capacity Coordinate directly with legal teams/client IT departments to understand project scope Maintain forensic tool set by staying current on version updates and new options in the...Full timeWork at officeRemote workFlexible hours
- Veriswap is seeking a driven individual for a role involving proactive planning and management of the CEO and CTO’s appointments. While mostly remote, some assistance is required in person near Palo Alto, CA. The ideal candidate will be highly organized with a zest for ...Remote job
$122k - $240.5k
...move from ambiguity to implementation, collaborate with product and engineering teams, and communicate effectively with business, security, privacy, legal, and compliance stakeholders.Recruiting for this role ends on 12/31/2026.Work you'll doAs a Senior Consultant, Strategy...Local areaVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Head of IT & Security. Be the first to apply!
- chief information security officer San Francisco, CA
- business information security officer San Francisco, CA
- ciso San Francisco, CA
- chief information security officer ciso San Francisco, CA
- information security officer San Francisco, CA
- IT security analyst San Francisco, CA
- IT security San Francisco, CA
- information systems security officer
- chief information security officer
- information systems security officer sso


