Chief Information Security Officer
Healthcare Outcomes Performance Co. (HOPCo)
GENERAL STATEMENT OF DUTIES The Chief Information Security Officer (CISO) is the executive leader responsible for all cybersecurity and data protection needs across HOPCo. This leader is tasked with proactively ensuring all systems, networks, methods of storing and moving data, are secured in a manner that is robust and protects member personal health information and all other sensitive or business confidential information and assets. The CISO will protect HOPCo from "bad actors" seeking to undermine the HOPCo business or access protected data. This leader will stay aware of all new threats, to proactively monitor, detect, and mitigate. This leader will work with HOPCo Compliance to ensure all HOPCo employees understand the role they play in protecting HOPCo assets and data. The CISO is responsible for all security standards, policies, and enforcement across HOPCo. This includes accountability for the security standards enforced with all third parties upon which HOPCo depends. This also includes the security profiles for all clinical sites owned or managed by HOPCo. This leader plays a critical role in making certain HOPCo is prepared to continue to function in the event of a ransomware attack or natural disaster. The CISO is also tasked with gaining and maintaining HiTrust certification for HOPCo and ensuring ongoing compliance with regulatory requirements like HIPAA and GDPR. ESSENTIAL FUNCTIONS
This description is intended to provide only basic guidelines for meeting job requirements. Responsibilities, knowledge, skills, abilities and working conditions may change as needs evolve. Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
- Develop and execute on a plan to gain and maintain HiTrust certification
- Own ongoing compliance with data protection regulations like HIPAA and GDPR
- Stay aware and current on all government policies related to data protection
- Stay aware of the developing cybersecurity threat landscape using regular NIST alerts (or equivalent) and filter noise from actual threats to the HOPCo ecosystem
- Monitor the HOPCo systems for suspicious activity
- Establish cybersecurity policies and protocols
- Establish data privacy policies and protocols
- Partner with Compliance to maintain and deliver regular cybersecurity and data privacy training to all employees
- Enforce HOPCo cybersecurity and data privacy policies with all third parties
- Initiate and sponsor regular cybersecurity audits, including penetration tests, to identify vulnerabilities
- Assess all audit findings, establishing a prioritized path to mitigation
- Report the state of cybersecurity threats and readiness to the CTO, CEO, and board on a regular basis
- Establish dashboards and metrics to monitor current state and improvement over time
- Select and implement appropriate monitoring tools
- Develop an annual budget and business case tied to security investment needs
- Establish a plan to protect HOPCo against ransomware attacks and to ensure the business can continue uninterrupted in the event of an attack
- Work with other IT and business leaders to establish a robust Disaster Recovery Business Continuity Plan
- Manage prioritization and execution priority on all cybersecurity and data privacy work
- Manage MSSP vendors, including the selection and financial arrangement of using vendors
- Work with the CTO to manage the security-related budget
- Hire, manage, and coach security team members
- Manage security assessments of HOPCo for customers and potential customer audits
- Ensure HOPCo Access Management processes and policies are robust and followed
- Bachelor's Degree required (Computer Science preferred); CISSP or equivalent security professional certification.
- 10+ years in various roles leading IT cybersecurity and data privacy teams and processes within healthcare
- Exceptional written and verbal communication skills. Ability to communicate complex technical topics effectively to executive audiences.
- Experience within a HiTrust certified organization and involvement in ongoing adherence
- Experience implementing security programs within complex environments
- Experience directly managing third parties to implement security tools and protocols
- Demonstrated experience as successful influential leader across matrixed teams
- Experience leading, hiring and coaching a team that includes internal and external team members
- None
- Expert knowledge and insight into threat vectors, ransomware risks, and data privacy regulations
- Expert knowledge of available monitoring and threat-detection tools
- Familiarity with IAM toolsets including Active Directory and Okta
- Strong negotiation skills for keeping organizational focus on needed investments, while keeping the bigger HOPCo business picture in mind
- Expert knowledge and insight into cybersecurity threat vectors and ransomware risks
- Current and thorough knowledge regarding data privacy and protection regulations (HIPAA, GDPR, etc.)
- Expertise in technical infrastructure, network architecture, and data movement
- Expertise in data storage, cloud technologies, database configuration, data protection techniques
- Expertise in system monitoring and threat detection toolsets and techniques
- Excellent listening, analytical, and communication skills
- Analytical thinking and problem-solving skills, with acute attention to detail, accuracy and accountability balanced with sound business judgment.
- Exceptional interpersonal skills
- Ability to successfully manage multiple projects simultaneously
- Ability to communicate complex information in a clear and concise manner to managers and executives
- Ability to practice good judgment and discretion
- Ability to act with integrity
- Ability to engage and foster strong partnerships
- Normal office environment
- Travel required
- Requires sitting and standing associated with a normal office environment.
- Manual dexterity using a calculator and computer keyboard.
- HOPCo Mission, Vision and Values must be read and signed.
This description is intended to provide only basic guidelines for meeting job requirements. Responsibilities, knowledge, skills, abilities and working conditions may change as needs evolve. Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer in Phoenix, AZ vacancy
- ...Chief Information Security Officer (CISO)The Chief Information Security Officer (CISO) is responsible for establishing and executing the enterprise cybersecurity strategy for a high-growth, private fintech company operating in a highly regulated, cloud-first environment...SuggestedShift work
- ...Chief Technology & Cybersecurity Officer About the Company Pioneering provider of telephonic behavioral... ..., hands-on technology and security leader responsible for leading the... ...responsible for ensuring that our information systems are scalable, secure, resilient...Suggested
- ...Chief Information Security Officer (CISO) / Head of Information Security Overview We are seeking an experienced Information Security Leader to define and execute a comprehensive enterprise security strategy. This role is responsible for safeguarding systems,...SuggestedWork at officeRemote work3 days per week
- ...Chief Information Security Officer (CISO) About the Company Innovative provider of data safety & recovery solutions Industry Information Technology and Services Type Privately Held Founded 2024 Employees 51-200 Specialties cloud backup...Suggested
- ...Chief Information Security Officer (CISO), Information Security & Compliance About the Company Innovative artificial intelligence (AI) & marketing analytics platform Industry Information Technology and Services Type Public Company Founded 2014...Suggested
- ...Field Chief Information Security Officer (CISO) About the Company Industry leading provider of security & compliance solutions Industry Outsourcing/Offshoring Type Privately Held Founded 2020 Employees 501-1000 Funding $200+ million Categories...Remote work
- ...Virtual Chief Information Security Officer ● cloudIT ● Phoenix, AZ ● In-Office Phoenix's small and mid-sized businesses face the same cybersecurity threats as the Fortune 500 but with a fraction of the resources. cloudIT bridges that gap. We are a...Full timeWork at officeShift work
- ...Technology Team as a Telecommunications Manager located in various offices.We are seeking a professional who thrives in a fast-paced,... ...guide the firm through technology transitions—with emphasis on security, compliance, and business continuity.Key ResponsibilitiesStrategic...Full timeContract workRemote work
- ...Chief Information Officer (CIO) and Chief Technology Officer (CTO) About the Company Expanding company in the payments & neo banking sectors... ...tasked with overseeing the development and maintenance of secure, scalable, and efficient payment solutions, and ensuring...Remote work
- ...Welcome to the future of cloud networking and security! Cato Networks is the first company to converge enterprise networking and security into one centralized and global service that is delivered by cloud. It is led by networking and security pioneer Shlomo Kramer (Check...Worldwide
- A leading company in structured cabling is looking for a Telecommunications Project Manager to oversee project management and crew activities across various telecommunications cabling tasks. The ideal candidate will have over five years of related experience, strong project...For subcontractorNight shift
- ...Chief Impact Officer (CIO) About the Company International non-profit governing organization... ...commercial fishing industry Industry Information Services Type Non Profit... ...Specialties ocean conservation maritime security transparency data science...Remote workVisa sponsorship
$99k
Looking for a role with plenty of growth opportunities? Join a nationwide infrastructure contractor with decades of experience delivering telecommunications, utilities, and construction solutions for public and private sector clients. Built on a strong commitment to safety...For contractorsFor subcontractorFlexible hours- ...Deputy Chief Technology Officer (CTO) About the Company Prominent political organization... ...the Chief Technology Officer, Chief Security Officer, and Heads of Data & Engineering... ...Chief Technology Officer Functions Engineering Information Technology...Remote work
- ...protocol addressing. Solid working knowledge of the Microsoft Office suite of applications, including Word, Excel and Outlook. Good... ...agency program staff and agency senior management (25%)Additional Information- "All your information will be kept confidential according to...Contract workWork at officeLocal areaImmediate startFlexible hours
$95.86k - $208.27k
...Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE),... ..., state, or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment...H1bLocal area- ...senior Field CISO in a strategic advisory capacity. You will partner with Sales, Solutions Engineering, and Product to shape executive security strategy and risk conversations across top accounts. Extensive travel and deep expertise in modern security architectures are...
- ...Director of Information Technology Cartwright School District's motto is “One Team, Una Familia... ...heads such as Superintendent’s office, Public Relations, Business Services, Human... ...reduce the risk of breaches Ensures data is secure and maintains strict confidentiality of...Work at office
- ...recommend scalable solutions Ensure reliability, performance, security, and efficiency of business systems and client-facing services... ...Preferred Qualifications Bachelor’s degree in Information Technology, Computer Science, Business, or related field; equivalent...
$160k - $170k
...next chapter starts with Story. Overview: As the Director of Information Technology, you will be responsible for delivering a reliable... ...compliance. You'll be responsible for the reliability, scalability, security and maturity of our systems to support our rapidly growing...Full timeTemporary workRemote workShift work$275k - $305k
Achieve is seeking a Chief Information Security Officer (CISO) to lead the enterprise cybersecurity strategy for a growing fintech company. This role includes developing a cybersecurity strategy aligned with business objectives, ensuring compliance with regulations, and...- ...gender identity or expression, religion, disability, ethnicity, national origin, marital status, protected veteran status, genetic information, or any other legally protected classification or status. Non-Compete will be required for certain positions and as allowed by...Full timeWork at officeLocal areaFlexible hours
- ...Managing Director, Chief Technology Officers Practice, Retained Search About the Company Dynamic executive search firm specializing in... ...responsibilities. The position is pivotal in helping clients make informed leadership decisions and is suited to individuals who...
- ...Phoenix Symphony in their search for the Laura R. Grafman Chief Advancement Officer. Reporting to the President and CEO, the Laura R. Grafman... ...Symphony's most significant donors and prospects, and help secure the resources that will shape the organization's future. For...Full timeAfternoon shift
$220k - $260k
...following qualities in all solutions; scalability, maintainability, security, reliability, extensibility, flexibility, availability, and... ..., age, national origin, disability, veteran status, genetic information and other legally protected characteristics.Minimum salary: $2...Remote work- ...Chief Technology Officer (CTO) About the Company Venture-backed fintech startup. Industry Accounting... ...for ensuring the reliability, security, and scalability of the products, as... ...problems with cutting-edge technology. Functions Engineering Information Technology...
- Teradata Corporation (SE) is seeking a Strategic Technology Executive based in Phoenix, Arizona. This role involves engaging with senior customer stakeholders and influencing Teradata's product strategy through close collaboration. The ideal candidate should possess over...Flexible hours
- ...Information Security ManagerThe Information Security Manager leads the design, implementation, and continuous enhancement of the organization's cybersecurity program under the Security Officers guidance. This position ensures that technical and administrative safeguards...Contract workRemote work
- Part-Time Chiropractor - Ownership Track Opportunity NuSpine Chiropractic is a rapidly expanding franchise system redefining modern chiropractic care through clinical excellence, operational precision, affordability, and meaningful patient relationships. Our examinations...Part timeImmediate start
- ...Chief Technology Officer (CTO) About the Company Innovative real estate investment platform Industry Real Estate Type Privately... ...within the first year. Hiring Manager Title CEO Functions Engineering Information Technology ConfidentialRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Chief Information Security Officer. Be the first to apply!
Related searches
- business information security officer Phoenix, AZ
- chief information security officer ciso Phoenix, AZ
- information security officer Phoenix, AZ
- chief information security officer Phoenix, AZ
- ciso Phoenix, AZ
- data center security officer Phoenix, AZ
- sr information security engineer Phoenix, AZ
- senior information security analyst Phoenix, AZ
- director information security Phoenix, AZ
- information security Phoenix, AZ




