Chief Information Security Officer
Healthcare Outcomes Performance Co. (HOPCo)
GENERAL STATEMENT OF DUTIES The Chief Information Security Officer (CISO) is the executive leader responsible for all cybersecurity and data protection needs across HOPCo. This leader is tasked with proactively ensuring all systems, networks, methods of storing and moving data, are secured in a manner that is robust and protects member personal health information and all other sensitive or business confidential information and assets. The CISO will protect HOPCo from "bad actors" seeking to undermine the HOPCo business or access protected data. This leader will stay aware of all new threats, to proactively monitor, detect, and mitigate. This leader will work with HOPCo Compliance to ensure all HOPCo employees understand the role they play in protecting HOPCo assets and data. The CISO is responsible for all security standards, policies, and enforcement across HOPCo. This includes accountability for the security standards enforced with all third parties upon which HOPCo depends. This also includes the security profiles for all clinical sites owned or managed by HOPCo. This leader plays a critical role in making certain HOPCo is prepared to continue to function in the event of a ransomware attack or natural disaster. The CISO is also tasked with gaining and maintaining HiTrust certification for HOPCo and ensuring ongoing compliance with regulatory requirements like HIPAA and GDPR. ESSENTIAL FUNCTIONS
This description is intended to provide only basic guidelines for meeting job requirements. Responsibilities, knowledge, skills, abilities and working conditions may change as needs evolve. Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
- Develop and execute on a plan to gain and maintain HiTrust certification
- Own ongoing compliance with data protection regulations like HIPAA and GDPR
- Stay aware and current on all government policies related to data protection
- Stay aware of the developing cybersecurity threat landscape using regular NIST alerts (or equivalent) and filter noise from actual threats to the HOPCo ecosystem
- Monitor the HOPCo systems for suspicious activity
- Establish cybersecurity policies and protocols
- Establish data privacy policies and protocols
- Partner with Compliance to maintain and deliver regular cybersecurity and data privacy training to all employees
- Enforce HOPCo cybersecurity and data privacy policies with all third parties
- Initiate and sponsor regular cybersecurity audits, including penetration tests, to identify vulnerabilities
- Assess all audit findings, establishing a prioritized path to mitigation
- Report the state of cybersecurity threats and readiness to the CTO, CEO, and board on a regular basis
- Establish dashboards and metrics to monitor current state and improvement over time
- Select and implement appropriate monitoring tools
- Develop an annual budget and business case tied to security investment needs
- Establish a plan to protect HOPCo against ransomware attacks and to ensure the business can continue uninterrupted in the event of an attack
- Work with other IT and business leaders to establish a robust Disaster Recovery Business Continuity Plan
- Manage prioritization and execution priority on all cybersecurity and data privacy work
- Manage MSSP vendors, including the selection and financial arrangement of using vendors
- Work with the CTO to manage the security-related budget
- Hire, manage, and coach security team members
- Manage security assessments of HOPCo for customers and potential customer audits
- Ensure HOPCo Access Management processes and policies are robust and followed
- Bachelor's Degree required (Computer Science preferred); CISSP or equivalent security professional certification.
- 10+ years in various roles leading IT cybersecurity and data privacy teams and processes within healthcare
- Exceptional written and verbal communication skills. Ability to communicate complex technical topics effectively to executive audiences.
- Experience within a HiTrust certified organization and involvement in ongoing adherence
- Experience implementing security programs within complex environments
- Experience directly managing third parties to implement security tools and protocols
- Demonstrated experience as successful influential leader across matrixed teams
- Experience leading, hiring and coaching a team that includes internal and external team members
- None
- Expert knowledge and insight into threat vectors, ransomware risks, and data privacy regulations
- Expert knowledge of available monitoring and threat-detection tools
- Familiarity with IAM toolsets including Active Directory and Okta
- Strong negotiation skills for keeping organizational focus on needed investments, while keeping the bigger HOPCo business picture in mind
- Expert knowledge and insight into cybersecurity threat vectors and ransomware risks
- Current and thorough knowledge regarding data privacy and protection regulations (HIPAA, GDPR, etc.)
- Expertise in technical infrastructure, network architecture, and data movement
- Expertise in data storage, cloud technologies, database configuration, data protection techniques
- Expertise in system monitoring and threat detection toolsets and techniques
- Excellent listening, analytical, and communication skills
- Analytical thinking and problem-solving skills, with acute attention to detail, accuracy and accountability balanced with sound business judgment.
- Exceptional interpersonal skills
- Ability to successfully manage multiple projects simultaneously
- Ability to communicate complex information in a clear and concise manner to managers and executives
- Ability to practice good judgment and discretion
- Ability to act with integrity
- Ability to engage and foster strong partnerships
- Normal office environment
- Travel required
- Requires sitting and standing associated with a normal office environment.
- Manual dexterity using a calculator and computer keyboard.
- HOPCo Mission, Vision and Values must be read and signed.
This description is intended to provide only basic guidelines for meeting job requirements. Responsibilities, knowledge, skills, abilities and working conditions may change as needs evolve. Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer in Phoenix, AZ vacancy
- ...Chief Information Security Officer (CISO) / Head of Information Security ABOUT THE ROLE This is not a purely strategic, oversight-level CISO role. The company is looking for a security leader who is genuinely hands-on: someone who can personally architect and...SuggestedRemote work
- ...Chief Information Security Officer (CISO) About the Company Innovative provider of data safety & recovery solutions Industry Information Technology and Services Type Privately Held Founded 2024 Employees 51-200 Specialties cloud backup...Suggested
- Chief Information Security Officer (CISO) / Head of Information Security Overview We are seeking an experienced Information Security Leader to define and execute a comprehensive enterprise security strategy. This role is responsible for safeguarding systems, data, and...SuggestedWork at officeRemote work3 days per week
$275k - $305k
...resolution services business, and over $11Bn in personal and home loans originations via our banking‑as‑a‑service partner. Chief Information Security Officer (CISO) is responsible for establishing and executing the enterprise cybersecurity strategy for a high‑growth, private...SuggestedContract workRemote workWork from homeShift work- ...Deputy Chief Information Security Officer (CISO) About the Company Industry-leading cybersecurity platform Industry Computer & Network Security Type Privately Held, VC-backed Founded 2019 Employees 201-500 Funding $200+ million Categories...Suggested
- ...Deputy Chief Information Security Officer (CISO), Security Technology About the Company Popular provider of revenue cycle management solutions Industry Hospital & Health Care Type Privately Held, Private Equity-backed Founded 2003 Employees...
- ...Chief Information Security Officer (CISO), Information Security & Compliance About the Company Innovative artificial intelligence (AI) & marketing analytics platform Industry Information Technology and Services Type Public Company Founded 2014...
- ...Field Chief Information Security Officer (CISO) About the Company Industry leading provider of security & compliance solutions Industry Outsourcing/Offshoring Type Privately Held Founded 2020 Employees 501-1000 Funding $200+ million Categories...Remote work
- ...Job Description Job Description Virtual Chief Information Security Officer ● cloudIT ● Phoenix, AZ ● In-Office Phoenix's small and mid-sized businesses face the same cybersecurity threats as the Fortune 500 but with a fraction of the resources. cloudIT...Full timeWork at officeShift work
- ...Chief Information Officer (CIO) and Chief Technology Officer (CTO) About the Company Expanding company in the payments & neo banking sectors... ...tasked with overseeing the development and maintenance of secure, scalable, and efficient payment solutions, and ensuring compliance...Remote work
- ...Chief Trust Officer (CTO) About the Company Highly respected wealth management firm with boutique, client-centric service for sophisticated families. Industry Financial Services Type Privately Held About the Role The Company is in search of a Chief...
- ...recommend scalable solutions Ensure reliability, performance, security, and efficiency of business systems and client-facing services... ...Preferred Qualifications Bachelor’s degree in Information Technology, Computer Science, Business, or related field; equivalent...
$82.28k - $108.77k
...advantage of tax‑deferred retirement investments. On, or shortly after, your first day of work you will be provided with additional information about the available insurance plans, enrollment instructions, submission deadlines and effective dates. Contact Us: The State of...Temporary workWork experience placement- Welcome to the future of cloud networking and security! Cato Networks is the first company to converge enterprise networking and security into one centralized and global service that is delivered by cloud. It is led by networking and security pioneer Shlomo Kramer (Check...Worldwide
$80k
...benefit programs, which may vary. Ready to Join the Movement? Apply today and start moving your career in the direction you want. For more information, visit or follow the brand on Facebook ( , Instagram ( , Twitter ( , YouTube ( and LinkedIn ( . Powered by JazzHR...Full timeImmediate startWeekend work- Part-Time Chiropractor - Ownership Track Opportunity NuSpine Chiropractic is a rapidly expanding franchise system redefining modern chiropractic care through clinical excellence, operational precision, affordability, and meaningful patient relationships. Our examinations...Part timeImmediate start
- ...senior Field CISO in a strategic advisory capacity. You will partner with Sales, Solutions Engineering, and Product to shape executive security strategy and risk conversations across top accounts. Extensive travel and deep expertise in modern security architectures are...
- Healthcare Outcomes Performance Co. (HOPCo) is seeking a Chief Information Security Officer (CISO) responsible for all aspects of cybersecurity and data protection. This role involves ensuring systems are secure and compliance with HIPAA and GDPR. The ideal candidate will...
- ...Deputy Chief Technology Officer (CTO) About the Company Prominent political organization Industry... ...the Chief Technology Officer, Chief Security Officer, and Heads of Data &... ...Technology Officer Functions Engineering Information Technology ConfidentialRemote work
- ...Managing Director, Chief Technology Officers Practice, Retained Search About the Company Dynamic executive search firm specializing in... ...responsibilities. The position is pivotal in helping clients make informed leadership decisions and is suited to individuals who...
- ...Regional Field Chief Technology Officer (CTO) About the Company Globally recognized provider of automated solutions for securing & managing open source software Industry Computer... ...to translate complex technical information into clear narratives for both technical...
- FM Industries in Phoenix, AZ is seeking an IT System Administrator / Cyber Security Analyst to design, implement, and maintain enterprise IT infrastructure while proactively managing the organization’s security posture. You will administer Windows and Linux servers, AD...
- ...Chief Technology & AI Officer About the Company Mission-driven crisis response organization Industry Civic & Social Organization... ...delivery. Hiring Manager Title CEO Functions Engineering Product Management Information Technology Confidential
- ...Chief Technology Officer (CTO) About the Company Global talent marketplace connecting businesses with top freelance professionals in various... ...010 Employees 1001-5000 Categories Technology Information Technology & Services Internet Business Services...FreelanceRemote work
- ...Chief Technology Officer (CTO) About the Company Innovative real estate investment platform Industry Real Estate Type Privately... ...within the first year. Hiring Manager Title CEO Functions Engineering Information Technology ConfidentialRemote work
- ...Chief Technology Officer (CTO) About the Company Pioneering media company focused on news & educational information about financial technology & cryptocurrency Industry Newspapers... ...team, and ensuring the platform is secure, compliant, and ready for enterprise...
- ...Chief Technology Officer (CTO) About the Company Innovative renewables firm advocating for climate... ...IT operations, and ensure the security and compliance of all corporate endpoints... .... The role also involves leading information security initiatives, establishing and...
- ...Chief Technology Officer (CTO) About the Company Venture-backed fintech startup. Industry... ...responsible for ensuring the reliability, security, and scalability of the products, as... ...-edge technology. Functions Engineering Information Technology Confidential
- ...Chief Technology Officer (CTO) About the Company Emerging defense technology company Industry... ...inference frameworks and edge acceleration technologies. Security clearance or eligibility is also a plus. Functions Engineering Information Technology Confidential
- ...Chief Technology Officer (CTO) About the Company Full-service oncology CRO with scientific rigor, customer service, and deep clinical trial... ..., and may be based in the United States or Western Europe. Functions Engineering Information Technology ConfidentialRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Chief Information Security Officer. Be the first to apply!
Related searches
- information security officer Phoenix, AZ
- ciso Phoenix, AZ
- chief information security officer ciso Phoenix, AZ
- business information security officer Phoenix, AZ
- chief information security officer Phoenix, AZ
- information security compliance analyst Phoenix, AZ
- information security Phoenix, AZ
- information security analyst Phoenix, AZ
- sr information security engineer Phoenix, AZ
- entry level information security analyst Phoenix, AZ



