Director, Information Security
$96.17k - $173.11kInstitute for Healthcare Improvement
Institute for Healthcare Improvement Director of Information Security Scheduled Hours Full Time Salary Range $96,171.00- $173,109.00 Location Remote, USA About IHI The Institute for Healthcare Improvement (IHI) is a leading, globally recognized not-for-profit health care improvement organization that has been applying evidence-based quality improvement methods to meet current and future health care challenges for more than 30 years. IHI provides millions of people in health care with methods, tools, and resources to make care better, safer, and more equitable; convenes experts to enable knowledge sharing and peer-learning; and advises health systems and hospitals of all sizes in improving their systems and outcomes at scale. IHI's mission is to innovate and lead transformational improvement in health and health care worldwide. Position Summary: The Information Security Director will be responsible for ensuring the confidentiality, integrity, and availability of all information assets within the organization. You will lead the development and implementation of the organization’s information security strategy, policies, and procedures. In this role, you will also be responsible for ensuring compliance with all relevant laws, regulations, and industry standards. You will be responsible for identifying and mitigating information security risks, managing security incidents, and providing security awareness training to employees. The role requires a high level of technical expertise in information security, risk management, compliance, and governance. This role will require a visionary leader who understands the global information security & risk impacts, and has a sound understanding of cybersecurity technology tools, methods and processes. This role requires a leader who works with business stakeholders, assesses needs, builds awareness and develops informed strategy and direction for information security. Position Responsibilities: Responsibilities include but are not limited to the following: Awareness and Governance:
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.
- Develop and manage a targeted information security awareness training program for all employees, contractors and approved system users, and establish metrics to measure the effectiveness of this security training program for the different audiences
- Lead cross-functional Information Security Steering Committee, infusing information security governance procedures that foster resiliency, raise awareness, govern policy and review cybersecurity related activities
- Provide clear risk mitigating directives for projects with components in IT, including the mandatory application of controls
- Foster a “Security Awareness Champions” program to spread the word and infuse security awareness behaviors, cybersecurity risks and policies
- Perform annual risk assessment and business impact analysis
- Assist in performing audits using industry standard security methods to help strengthen internal security controls, procedures and policies
- Investigate security incidents, develop remediation plans, and work with appropriate stakeholders to implement resolutions
- Manage and provide additional security evaluations for existing or new vendors, partners, and systems. Leverage security tools and data sets to provide visibility into vendor security posture and risk
- Work with IT and technology stakeholders to evolve new business continuity and disaster recovery plans
- Support data protection and privacy initiatives in compliance with the data protection standards of both US and foreign. Align with internal compliance teams on policy updates in global data privacy standards
- Work with MSSP to monitor and manage all IT security tools and platforms including Security management platforms, Anti-Malware/Ransomware, log management systems, and information security training systems
- Work with IT department, MSP, legal and compliance teams to keep security polices updated, communicated and enforced
- Review existing security architecture, identify design gaps, and recommend security enhancements
- Stays abreast of emerging security technologies and integrates them into security architecture as needed
- Ensures alignment between security architecture frameworks, IT standards and overall business strategy
- Achieves security architecture compliance on industry-specific requirements as well as state and federal regulations
- Lead, grow and manage the Information Security Program at IHI, with the responsibility to ensure that information assets and associated technology are all adequately protected
- Partner with all business leaders while working closely with service desk, Infrastructure and Enterprise/Business Applications teams
- Create a risk-based process for the assessment and mitigation of any information security risk in the IHI’s ecosystem consisting of faculty, vendors, consumers and any other third parties
- Responsible for identifying, evaluating, and reporting on legal and regulatory, IT and cybersecurity risk while supporting and enabling business goals
- Strong Interpersonal skills and ability to translate complex issues into simple concepts
- Ability to be key contributor in IT projects and new system implementation activities
- Experience leading cross-functional teams
- Exceptional problem-solving skills with the ability to proactively introduce solutions
- Ability to manage many complex and challenging tasks and prioritize criticality
- Strong documentation skills
- Collaborative team player with strong interpersonal, verbal, and written communication and presentation skills
- Highly motivated, driven, and willing to try new concepts
- Strong work ethic with ability to maintain and safeguard confidential information
- Ability to thrive in a fast-paced environment with multiple competing priorities
- Ability to learn and use new systems and technology
- Continuous improvement mindset
- Strong ability to plan, organize and think strategically
- Commitment to IHI Values of courage, love, equity, trust and impact
- Commitment to equity, anti-racism, and the improvement of societal systems
- Bachelor's degree and 7 plus years of experience in leading Information Security initiatives, incident management and security operations
- 10 plus years of experience in leading Information Security initiatives, incident management and security operations
- Bachelor’s degree in cyber security, information risk management, or a relevant IT field
- 5+ years of experience with regulatory compliance and information security management frameworks
- Experience implementing, managing, and driving all Information Security, training, policies, and review activities in accordance with applicable cybersecurity standards and privacy regulations
- Experience leading cross-functional teams
- Strong Interpersonal skills and ability to translate complex issues into simple concepts
- Adequate knowledge of server, network, application and perimeter security, vulnerability and patch management, endpoint security, incident response, security audit, compliance and industry certifications (e.g. SOC2, ISO27000)
- Advanced experience managing cloud security tools such as CASB, UEM, Security Scorecards, Anti-Malware tools, IDR, MDR and Security Awareness training tools
- Experience with NIST Cybersecurity framework
- Knowledge of the Information Security market and information risk vendor landscape
- Ability to manage many complex and challenging tasks and prioritize criticality
- Strong documentation skills
- Ability to be key contributor in IT projects and new system implementation activities
- Exceptional problem-solving skills with the ability to proactively introduce solutions
- Strong understanding of cloud security, datacenter security, application security, endpoint security and security audit practices and industry certifications
- Ability to Sit for Extended Periods: Capability to work at a desk for long durations
- Manual Dexterity: Proficiency in using a computer, including typing, mouse handling, and other office equipment
- Visual Acuity: Ability to read and view a computer screen for extended periods
- Hearing and Speaking: Clear communication over phone and video calls
- Environment Setup: Access to a quiet, professional home office setup conducive to focused work and virtual meetings
- Lifting: Occasionally requires lifting up to 25 lbs as needed
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Director, Information Security in United States vacancy
- Job DescriptionSummary of Position Serves as a strategic advisor and operational anchor to the Chief Security Officer and Information Security leadership team. Drives organizational effectiveness by owning security program management, cyber resilience, and executive-level...Suggested
- ...Director, IT Security OperationsThe University of Miami Health System, "UHealth", IT Department has an exciting opportunity for a Full-Time... ...Director, IT Security Operations to work in Miami.The Director, Information Security Operations oversees all aspects of security...SuggestedFull timeTemporary work
$220k - $245k
...personalized insights that help millions of members better understand their bodies and make informed decisions about performance, recovery, and long-term health.WHOOP is seeking a Director, Security Engineering & Operations to lead the teams responsible for enterprise security...SuggestedFull timeWork at officeRelocation- ...Business casual work environmentWhat does it mean to be a Senior Director, IT Security at GLS?The Senior Director, IT Security is responsible for... ..., implementation, and oversight of the company's information security program, including cybersecurity operations, technology...SuggestedFull timeTemporary workFixed term contractCasual workWork at officeImmediate startMonday to Friday
$210k - $250k
About the Role:PubMatic is seeking a Director of Information Security to lead and evolve our global security program across enterprise infrastructure, cloud platforms, products, corporate systems, and emerging AI technologies. Executive Communication Strong command of...SuggestedWork at officeRemote work- ...we seize new opportunities and thrive in an environment informed by creativity and thinking that is both analytical and outside... ...Responsibilities Would Include Position Overview The Director of Information Security is responsible for developing and executing Centric...Summer workWork at officeLocal areaRemote workFlexible hoursNight shift
$225k - $275k
...mobile applications create predictable, informed, and convenient experiences between customers... ...role reports to the Chief Information Security Officer (CISO) and requires a hands-on... ...vertical business units. The Senior Director Information Security partners closely with...Full timeWork at officeLocal areaImmediate startRemote workShift work- Position Summary The Director of Information Security is responsible for leading Weatherford's global cybersecurity strategy, governance, operations, identity management, and risk management program across Network, IT, OT/Digital, AI, and Data environments. This leader...For contractorsRemote work
$190k - $215k
...reflect long-term confidence in our mission and solutions.Join us at Landis+Gyr, where we manage energy better!Senior Director, Information Security - Job DescriptionRole SummaryThe Senior Director of Information Security is the leader of the enterprise security program...Contract work- The Director of Information Security and Compliance provides strategic and operational leadership for Information Security and IT Risk Compliance efforts. The role manages and coordinates core aspects of security administration, identity and access management, audit response...
$245k - $325k
Cambridge, MAG&A - Information Technology /On-siteScholar Rock is a late-stage global biopharmaceutical... ...of Position:Scholar Rock is seeking a Senior Director, Cybersecurity to serve as the company’s Chief Information Security Officer, responsible for building and scaling...Contract workFor contractors- ...Director of Information Security It's an exciting time in technology, and that buzz is felt throughout PetSmart! We are continuing to grow at a faster pace and we want to continue to provide best-in-class experiences for pets and pet parents. Our Technology team...Contract workWork at office
- ...truly a culture like no other - We hope you will join our team! Find out more about our company and culture here. The Director of Information Security is a senior leadership position with full programmatic authority over the organization's security posture. This role...Remote workShift work
- ...SUMMARY: The Director - Information Security is a "CISO" type role. This is the role of a strategic leader responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected...Remote work2 days per week
- ...developing procedures that are streamlined, understandable, and transparent. We are seeking a dynamic leader to serve as the Director, Information Security. Director, Information Security will provide strategic and operational leadership for enterprise architecture,...Permanent employmentFull timeRemote work2 days per week
- ...Essential Job Duties & Responsibilities Develop and maintain IT Security Roadmap, including timelines and budgets Lead IT Security... ...Oversight Committee Plan, design, develop, and implement Information Security policies and practices across the company's hybrid...
$190k - $220k
...Director, Information Security At WHOOP, we're on a mission to unlock human performance and healthspan. Our wearable technology provides personalized insights that help millions of members better understand their bodies and make smarter decisions about training, recovery...Full timeWork at officeRelocation- ...Information Security Director Crown Holdings, Inc. is a global leader in packaging solutions, operating across more than 40 countries with over 23,000 employees. Sustaining this leadership position requires a strong, integrated cybersecurity capability that protects...Work experience placementWork at office
$186.7k - $233.4k
...Director Of Information Security The Director of Information Security for the North America (NA) region is responsible for leading and overseeing the cybersecurity strategy, governance, risk management, compliance, and security operations across all NA business units...Relocation package$120k - $140k
...Director Information Security, Risk & Compliance We are seeking a focused and diligent Director Information Security, Risk & Compliance to own Bridgewater Bank's technology risk and controls program and ensure audit readiness across the technology environment. This...Temporary workLocal area- ...Director, Information Security Agfa HealthCare, a division of the Agfa-Gevaert Group, headquartered in Mortsel, Belgium, is seeking an operational Director, Information Security to define and execute the company's global cybersecurity vision across all business units...Remote work
$329.59k
...process here.Role SummaryPinterest is looking for a Senior Director of Security Engineering to serve as the CISO's operating partner and lead... ...for the entire Product and Cloud Security areas of our information security program. This is not a conventional security-leadership...Work at officeLocal areaRelocationRelocation package- ...remote and can be hired anywhere in the continental U.S.The Director, Security Engineering is responsible for the service delivery and engineering... ...Optiv with clients, partners, and industry peers to inform engineering and operations processes.Establish and maintain regular...Full timeWork experience placementLocal areaRemote workWork from home
- ...free coffee and pastries to employeesJob DescriptionThe Director of (Cyber) Security Architecture and Engineering is a cyber leadership role responsible... ...• 10+ years of progressive experience in cybersecurity, information security, or closely related technology roles. • 5+ years...Live inWork at officeWork from homeFlexible hours
$195k - $230k
...Together, let's build a brighter, healthier future for all.Director, OT Security and InfrastructureWe are seeking a strategic Operational Technology... ...Chain organization.As a key leader within the Global Information Security program, this position will drive collaboration...Hourly payLocal areaRelocation$159.3k - $273.2k
...UnitedHealth GroupExplore opportunities with the Enterprise Information Security (EIS) team at UnitedHealth Group. Join one of the world's largest... ...resiliency and securing new acquisitions. The Senior Director of Data Security is the senior leader responsible for the overall...Minimum wageFull timeWork experience placementWork at officeLocal areaRemote workShift work$178k - $195k
Associate Director of Information SecurityWe are seeking a highly motivated, hands-on Information Security leader with strong, broad security expertise and proven experience in Data Loss Prevention (DLP) and Data Security Posture Management (DSPM), to join our team as...Work at officeLocal area- ...others. If you're as passionate about your future as we are, join our team.KPMG is currently seeking an Associate Director, Regional Information Security Awareness Lead to join our Global Technology and Knowledge Group which is part of KPMG International organization.Responsibilities...H1bLocal area
$165k - $185k
...League Soccer is seeking a highly technical and hands-on Director, Applications and Data Security to support the security of the League’s digital... ...and ExperienceBachelor’s degree in Computer Science, Information Security, Engineering, Information Technology, or a related...Work at officeLocal areaRemote work1 day per week- ...moves the world forward.THE ROLEWe are seeking an experienced security technology leader who combines strategic thinking with strong technical... ..., enhance detection and response capabilities, and enable data-informed security decisions.Proven ability to define security technology...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, Information Security. Be the first to apply!
Related searches
- program manager with security clearance United States
- security risk manager United States
- corporate security manager United States
- facilities security manager United States
- security operations manager United States
- regional security director United States
- director security & compliance United States
- director information security United States
- regional security manager United States
- physical security manager United States

