Information Security Manager (Hybrid)
San Ysidro Health Center
Job Description Position Summary: The Information Security Manager will serve as San Ysidro Health’s expert on Cybersecurity protection, detection, response, and recovery. This position will provide the vision and hands‑on technical expertise required to ensure the Confidentiality, Integrity, and Availability of San Ysidro Health’s information and systems. This role oversees all security‑related efforts including the security program, security risk management, vendor management, the Governance, Risk and Compliance (GRC) program and the Information Technology Business Continuity and Disaster Recovery policy and procedure. Essential Functions of the Job: Working with the Information Technology and Application Teams to implement enterprise‑wide security planning to establish and maintain system controls by developing framework for controls and levels of access Lead risk management activities to ensure risks are prioritized, updated and communicated in accordance with NIST RMF SP 800‑37; recommend and implement improvements to prevent, reduce or mitigate risks; maintain risk register Working with Risk, Compliance and AI team, implement and monitor AI activities in accordance with NIST AI RMF 1.0 Create and update the necessary policies associated with HIPAA‑HITECH and PCI DSS requirements; develop techniques and procedures for conducting IS and cyber security risk assessments and compliance audits, the evaluation and testing of hardware, firmware, and software for possible impact on system security, and the investigation and resolution of security incidents Lead the development of security awareness by providing orientation, educational programs, and on‑going communication; work with stakeholders at all levels of the organization to communicate the state of information security, inform of possible risks, and suggest ways to improve security; work in conjunction with the compliance team on awareness training utilizing SYH’s education platform Lead working sessions with other members of the Information Technology teams and key business stakeholders to implement safeguards and controls based on known risks, threats, and vulnerabilities Lead efforts to monitor and audit systems, processes, and other controls in order to assess security and risk posture Ensure the completion of operational activities associated to network monitoring and intrusion detection analysis to determine if there have been any attacks on the system; work with the applicable parties to test mitigation plans Evaluate, test, recommend, develop, coordinate, monitor, and maintain information systems (IS) and cyber security policies, procedures, and systems, including access management for hardware, firmware, and software, and Business Continuity and Disaster Recovery preparedness, training, and testing Lead incident response management activities; to include incident response drills, training activities, documentation; develop and refine incident response policy, procedures and standards; execute bi‑annual table‑top exercises Lead recurring internal IT Security audits and risk assessments in accordance with policies and procedures Ensure that IT and cyber security architecture/designs, plans, controls, processes, standards, policies, and procedures are aligned with IT standards and overall IT and cyber security; identify security risks and exposures, determine the causes of security violations, and suggest procedures to halt future incidents and improve security; facilitate the design and execution of vulnerability assessments, penetration tests Work with external auditors during audits; prepare documentation, files and information for audits; work with auditors and internal team on outstanding tasks and findings identified during the audits Work with other members of the IT Department to implement resolutions identified in risk assessments, penetration/vulnerability testing and audits Mentor other IT Security, GRC staff on all facets of IT Security, IT Governance, IT Risk and IT Compliance Responsible for the identification, tracking and management of enterprise risks; this includes performing risk assessments and measuring the success and effectiveness of mitigation efforts; identify, evaluate, test, and implement appropriate security products, tools, and systems to establish and ensure a secure infrastructure Articulate security policies, guidelines and standards to customers and developers; apply theories, concepts, principles, and methodologies to difficult but conventional assignments Work independently within an established framework Additional Duties and Responsibilities: Stay up‑to‑date on the latest intelligence and methodologies related to information security in order to identify threats and manage risks; update job knowledge and awareness of IT Security developments by participating in educational opportunities; reading professional publications; maintaining personal networks; participating in professional organizations; attending IT Security conferences; communicate the latest intelligence to key staff to minimize or prevent impact to SY Health Exemplify and promote the department’s four key success factors: Positivity, Ownership, Efficiency and Transparency, when working with both internal and external customers Perform other duties as assigned Job Requirements Experience Required: 5+ years’ experience as an IT Security Analyst 3+ years’ experience leading an IT Security program 2+ years in a healthcare environment, strong understanding of HIPAA‑HITECH and PCI‑DSS requirements 2+ years supporting or conducting audits within a regulated environment 2+ years conducting forensics to support various departments Experience working with vendors for SOC/MSSP and SRA services Strong understanding of NIST CSF and CSF‑AI framework Experience building an enterprise‑wide security program Strong understanding of Governance Risk and Compliance programs Education Required: High School Diploma or GED Equivalent Education Preferred: B.S. in Computer Science, B.S. in Information Systems, Computer Science or related field Verbal and Written Skills Required to Perform the Job: Excellent oral and written communication skills, with focus in technical or instruction‑oriented writing and in clearly communicating complicated concepts over the phone, in person and in writing Ability to convey ideas and information to others and receive feedback effectively Ability to communicate and interact successfully with a diverse community and develop and maintain positive professional relationships with colleagues and staff members Technical Knowledge and Skills Required to Perform the Job: Experience with auditing and monitoring tools including SIEM administration Experience with IDS/IPS and DLP solutions Application Firewall administration Internet access security and content filtering Knowledge of Email encryption systems Vulnerability management system administration HIDS/HIPS and MDR/EDR/XDR protection suites Experience utilizing tools to validate the extent of known attacks Experience working with networking technologies hardwire and wireless networks and protocols Multi‑Factor Authentication, VPN and remote access methodology Experience handling, organizing, tracking, and reporting on user support incidents Experience working with Active Directory, DHCP, DNS, and Group Policy Understanding of Change Control Processes and Controls Equipment Used: Laptop or Personal Computer Software required to perform within the Information Security role Working Conditions and Physical Requirements: Prolonged, extensive, and considerable standing, sitting, walking, and/or lifting Manual dexterity and mobility Always reaching, stooping bending, kneeling, crouching Good organizational skills and ability to remain focused and concentrate with noise around Ability to handle multiple job task functions simultaneously Ability to work harmoniously with others as a team member May be required to work evenings and/or weekends Universal Requirements: Pre‑employment requirements include I‑9, physical, positive background and reference check results, complete application, new hire orientation, pre‑employment PPDs. Compliance with all mandated vaccinations and all boosters is a term and condition of employment. San Ysidro Health has a long‑standing commitment to equal employment opportunity for all applicants for employment. Employment decisions including, but not limited to, those such as employee selection, performance evaluation, administration of benefits, working conditions, employee programs, transfers, position changes, training, disciplinary action, compensation, and separations are made without regard to race, color, religion (including religious dress and grooming), creed, national origin, nationality, citizenship status, domestic partnership status, ancestry, gender, affectional or sexual orientation, gender identity or expression, marital status, civil union status, family status, age, mental or physical disability (including AIDS or HIV‑related status), atypical heredity cellular or blood trait of an individual, genetic information or refusal to submit to a genetic test or make available the results of a genetic test, military status, veteran status, or any other characteristic protected by applicable federal, state, or local laws. #J-18808-Ljbffr
- ...Axos Bank is seeking a First Vice President, Cyber Security to drive execution of its information security strategy. This hybrid role combines technical execution with team leadership, requiring deep subject matter expertise in cyber security. The ideal candidate will...Suggested
$19.03 - $20 per hour
...equity. $19.03 to $20.00 Hourly Wage Range. Hybrid Worker Considerations Hybrid Worker... ...Responsibilities Provides support with managing regulatory compliance concerns for... ...Coordinates with various departments to obtain information necessary for regulatory filings and...SuggestedHourly payCasual workLocal areaWork from home- ...California seeks a Regulatory Complaint Coordinator in San Diego to manage inquiries from state regulatory agencies. This role involves... ...experience, and strong critical thinking skills. The position allows hybrid work with a full-time virtual setup based on business needs. #J...SuggestedFull time
$70k - $82k
...candidates will have hands-on GMP/GxP auditing experience and a strong commitment to compliance and quality improvements. The role offers a hybrid work environment and involves planning audits, documenting findings, and collaborating across functions to enhance quality systems....Suggested$25 - $31 per hour
...seeking a Customer Support Tactical Team Specialist in El Cajon, CA. This hybrid role serves as a bridge between the customer contact center and field operations. The ideal candidate will excel in managing complex customer requests, ensuring timely resolution through strong...SuggestedHourly pay- ...to prevent violations of federal securities laws. The Compliance Analyst works... ...sensitive personal and corporate information Compliance Software & User Support Manage compliance software user accounts... ...an ABA-approved institution This hybrid position is based in our San...Work at officeRemote workMonday to Thursday
- ...Compliance Analyst to support its compliance program. The role involves managing personal compliance requirements, maintaining confidentiality,... ...skills, and proficiency with compliance software. This hybrid position allows for in-office collaboration alongside remote work...Work at officeRemote work
- ...Complaint Coordinator in San Diego, California. This role involves managing responses to inquiries from state regulatory agencies.... ...experience in Appeals and Grievances. The position allows for hybrid virtual work, with expectations to work in office based on business...Work at office
$175k - $190k
...aircraft compliance and health management, proudly serving the global... ...: The Manager of Cyber Security is a direct report to the... ...premises, AI environments and hybrid environments spanning... ...degree in Computer Science, Information Security, or a related field...Contract workWorldwide$99k - $225k
...Job Number: R0239733 Information Systems Security Officer The Opportunity: Are you looking for an opportunity... ...policy, testing, and risk management. You'll use your curiosity for technology... ...at a Booz Allen or customer facility. Hybrid: If this position is listed as hybrid...Full timeContract workPart timeWork at officeLocal areaRemote work$99k - $225k
...Information Systems Security Officer Are you looking for an opportunity to share your experience in cybersecurity... ...policy, testing, and risk management. You’ll use your curiosity for technology... ...a Booz Allen or customer facility. Hybrid: If this position is listed as hybrid...Full timePart timeWork at officeLocal areaRemote work- ...Virtual Chief Information Security Officer (vCISO) / Fractional CISO / Security Executive Consultant... ...onsite presence with focused work. Hybrid flexibility based on client and portfolio... ...authority. ~ Demonstrated success managing competing priorities across multiple...Temporary workFor contractorsWork at office
$107.9k - $195.05k
...Description Leidos' Corporate Information Security Office, reporting through the Digital Modernization sector, has an opening for an Information Systems Security Manager (ISSM) in our San Diego, CA Campus Point office. In this role you will oversee several DCSA-approved...Temporary workWork at office$198k - $248k
...where each day is safer and more secure than the one before. We are a... ...is no barrier to impact. Our hybrid teams collaborate across... ...Automation, XDR, Attack Surface Management, SOAR and Incident Response... ...identity or expression, genetic information, marital status, medical...Remote work$144.9k - $265.8k
...Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS, GCP, and hybrid environments Implement cloud... ..., authorization, identity management) Design and re‑engineer processes... ...expression, pregnancy, genetic information, national origin, protected...Work experience placementSummer holidayFlexible hours$144.9k - $265.8k
...Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS, GCP, and hybrid environments Implement cloud... ..., authorization, identity management) Design and re-engineer processes... ...click here for additional information. EY focuses on high-ethical...Work experience placementSummer holidayFlexible hours- ...in a relevant field, with a minimum of 8 years in the pharmaceutical industry, including 5 years specifically in Quality Assurance. The position follows a hybrid model, requiring presence in the office three days each week. #J-18808-Ljbffr ACADIA Pharmaceuticals Inc.Work at office3 days per week
- ...This position will work a hybrid schedule which includes a combination... .... DESCRIPTION The IT Security Risk and Compliance Analyst... ...program to reduce information security risk, address threats... ...components of the vulnerability management program. This includes...Hourly payRemote work
$105k - $132k
...IT SCRTY ANL 3 TX Department: INFORMATION SERVICES Hiring Pay Scale $105... ...Monday-Friday #139800 IT Security Risk and Compliance Analyst - Hybrid Filing Deadline: Thu 6/11/... ...components of the vulnerability management program. This includes vulnerability...Hourly payContract workLocal areaRemote workMonday to Friday$23 per hour
Prosegur is hiring an Unarmed Security Officer in Rancho Bernardo, CA, offering $23.00/hour. The role includes maintaining a safe environment, observing hazards, and interacting professionally with clients. Qualifications include a high school diploma, a valid California...Flexible hoursShift work- ...forefront of innovation. Every day, we work to secure what our clients value most, from their... ...(iSOC) divisions to create meaningful 'Hybrid Security' solutions for Prospects.... ...~ High School Diploma Additional Information / Benefits ~401K/403b Plan ~ Paid...Remote workFlexible hoursShift workDay shift
$112k - $134k
JT4 is seeking a Cyber Security Analyst for an onsite position at... ...Responsibilities Risk Assessment and Management Identify potential... ...AWS, Azure, Google Cloud) and hybrid environments. Strong... ...ability to convey technical information to non-technical customers....Contract workWork experience placementImmediate start$100k - $135k
...Cybersecurity Analyst for a full-time hybrid position in San Diego CA,... ..., we're all about enhancing security for both our military and... ...array of services such as Risk Management, Mission Assurance, and... ...creativity, training, and staying informed on operational technology...Full timeContract workTemporary workWork at officeLocal areaRemote workFlexible hours$86.9k - $198k
...mitigate risk will support the security and resilience of critical... ...organization with information systems security, cybersecurity... ...vulnerability assessments and risk management of networks, systems, and... ...position is listed as remote or hybrid, you'll periodically work...Full timeContract workPart timeLocal areaRemote work- UC San Diego Health is seeking an IT Security Risk and Compliance Analyst to conduct risk... ...decisions. This full-time position offers a hybrid work model and requires expertise in IT... ...and a solid foundation in security risk management. #J-18808-Ljbffr UC San Diego HealthFull time
- The University of California San Diego seeks an IT Security Risk and Compliance Analyst to execute processes enhancing the security posture... ..., and the ability to operate in regulated environments. Hybrid work is available along with a commitment to a diverse and inclusive...
$55.3k - $126k
Phase2 Technology is looking for a Mid Program and Project Management Specialist to assist the Navy in managing project operations, ensuring... ...this role is $55,300 to $126,000 annually, with options for hybrid working arrangements and various employee benefits. #J-18808-Ljbffr...- ...Cybersecurity Analyst for a full-time hybrid position in San Diego CA,... ..., we're all about enhancing security for both our military and... ...array of services such as Risk Management, Mission Assurance, and... ...creativity, training, and staying informed on operational technology...Full timeContract workTemporary workWork at officeLocal areaFlexible hours
- Rmcinc is seeking a Senior OT Cybersecurity Analyst for a full-time hybrid position in San Diego, CA. This role involves vulnerability assessments and supporting cybersecurity initiatives for various clients. Candidates should have over 10 years of experience and a relevant...Full time
$140k - $175k
...ask for an accommodation or an alternative application process. Manager, Cybersecurity Full Time San Diego, CA, San Diego, CA, US 14... ...execution across monitoring, incident response, threat hunting, and security tooling. You will lead vulnerability and exposure management...Full timeWork at officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Manager (Hybrid). Be the first to apply!
- information security lead San Diego, CA
- entry level information security analyst San Diego, CA
- information security San Diego, CA
- sr information security engineer San Diego, CA
- senior information security analyst San Diego, CA
- information technology security engineer San Diego, CA
- information security compliance analyst San Diego, CA
- data center security officer San Diego, CA
- director information security San Diego, CA
- information security analyst San Diego, CA


