Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Information Security

$96.17k - $173.11k

Institute for Healthcare Improvement

Institute for Healthcare Improvement

Director of Information Security

Scheduled Hours

Full Time

Salary Range

$96,171.00- $173,109.00

Location

Remote, USA

About IHI

The Institute for Healthcare Improvement (IHI) is a leading, globally recognized not-for-profit health care improvement organization that has been applying evidence-based quality improvement methods to meet current and future health care challenges for more than 30 years. IHI provides millions of people in health care with methods, tools, and resources to make care better, safer, and more equitable; convenes experts to enable knowledge sharing and peer-learning; and advises health systems and hospitals of all sizes in improving their systems and outcomes at scale. IHI's mission is to innovate and lead transformational improvement in health and health care worldwide.

Position Summary:

The Information Security Director will be responsible for ensuring the confidentiality, integrity, and availability of all information assets within the organization. You will lead the development and implementation of the organization’s information security strategy, policies, and procedures.

In this role, you will also be responsible for ensuring compliance with all relevant laws, regulations, and industry standards. You will be responsible for identifying and mitigating information security risks, managing security incidents, and providing security awareness training to employees. The role requires a high level of technical expertise in information security, risk management, compliance, and governance.

This role will require a visionary leader who understands the global information security & risk impacts, and has a sound understanding of cybersecurity technology tools, methods and processes. This role requires a leader who works with business stakeholders, assesses needs, builds awareness and develops informed strategy and direction for information security.

Position Responsibilities:

Responsibilities include but are not limited to the following:

Awareness and Governance:

  • Develop and manage a targeted information security awareness training program for all employees, contractors and approved system users, and establish metrics to measure the effectiveness of this security training program for the different audiences
  • Lead cross-functional Information Security Steering Committee, infusing information security governance procedures that foster resiliency, raise awareness, govern policy and review cybersecurity related activities
  • Provide clear risk mitigating directives for projects with components in IT, including the mandatory application of controls
  • Foster a “Security Awareness Champions” program to spread the word and infuse security awareness behaviors, cybersecurity risks and policies
  • Perform annual risk assessment and business impact analysis
  • Assist in performing audits using industry standard security methods to help strengthen internal security controls, procedures and policies
  • Investigate security incidents, develop remediation plans, and work with appropriate stakeholders to implement resolutions
Security Operations:
  • Manage and provide additional security evaluations for existing or new vendors, partners, and systems. Leverage security tools and data sets to provide visibility into vendor security posture and risk
  • Work with IT and technology stakeholders to evolve new business continuity and disaster recovery plans
  • Support data protection and privacy initiatives in compliance with the data protection standards of both US and foreign. Align with internal compliance teams on policy updates in global data privacy standards
  • Work with MSSP to monitor and manage all IT security tools and platforms including Security management platforms, Anti-Malware/Ransomware, log management systems, and information security training systems
  • Work with IT department, MSP, legal and compliance teams to keep security polices updated, communicated and enforced
  • Review existing security architecture, identify design gaps, and recommend security enhancements
  • Stays abreast of emerging security technologies and integrates them into security architecture as needed
  • Ensures alignment between security architecture frameworks, IT standards and overall business strategy
  • Achieves security architecture compliance on industry-specific requirements as well as state and federal regulations
Leadership:
  • Lead, grow and manage the Information Security Program at IHI, with the responsibility to ensure that information assets and associated technology are all adequately protected
  • Partner with all business leaders while working closely with service desk, Infrastructure and Enterprise/Business Applications teams
  • Create a risk-based process for the assessment and mitigation of any information security risk in the IHI’s ecosystem consisting of faculty, vendors, consumers and any other third parties
  • Responsible for identifying, evaluating, and reporting on legal and regulatory, IT and cybersecurity risk while supporting and enabling business goals
Position Knowledge, Skills and Abilities:
  • Strong Interpersonal skills and ability to translate complex issues into simple concepts
  • Ability to be key contributor in IT projects and new system implementation activities
  • Experience leading cross-functional teams
  • Exceptional problem-solving skills with the ability to proactively introduce solutions
  • Ability to manage many complex and challenging tasks and prioritize criticality
  • Strong documentation skills
  • Collaborative team player with strong interpersonal, verbal, and written communication and presentation skills
  • Highly motivated, driven, and willing to try new concepts
  • Strong work ethic with ability to maintain and safeguard confidential information
  • Ability to thrive in a fast-paced environment with multiple competing priorities
  • Ability to learn and use new systems and technology
  • Continuous improvement mindset
  • Strong ability to plan, organize and think strategically
IHI Values and Culture
  • Commitment to IHI Values of courage, love, equity, trust and impact
  • Commitment to equity, anti-racism, and the improvement of societal systems
Position Qualifications:

Required
  • Bachelor's degree and 7 plus years of experience in leading Information Security initiatives, incident management and security operations
OR
  • 10 plus years of experience in leading Information Security initiatives, incident management and security operations
Preferred
  • Bachelor’s degree in cyber security, information risk management, or a relevant IT field
  • 5+ years of experience with regulatory compliance and information security management frameworks
  • Experience implementing, managing, and driving all Information Security, training, policies, and review activities in accordance with applicable cybersecurity standards and privacy regulations
  • Experience leading cross-functional teams
  • Strong Interpersonal skills and ability to translate complex issues into simple concepts
  • Adequate knowledge of server, network, application and perimeter security, vulnerability and patch management, endpoint security, incident response, security audit, compliance and industry certifications (e.g. SOC2, ISO27000)
  • Advanced experience managing cloud security tools such as CASB, UEM, Security Scorecards, Anti-Malware tools, IDR, MDR and Security Awareness training tools
  • Experience with NIST Cybersecurity framework
  • Knowledge of the Information Security market and information risk vendor landscape
  • Ability to manage many complex and challenging tasks and prioritize criticality
  • Strong documentation skills
  • Ability to be key contributor in IT projects and new system implementation activities
  • Exceptional problem-solving skills with the ability to proactively introduce solutions
  • Strong understanding of cloud security, datacenter security, application security, endpoint security and security audit practices and industry certifications
Physical Attributes:
  • Ability to Sit for Extended Periods: Capability to work at a desk for long durations
  • Manual Dexterity: Proficiency in using a computer, including typing, mouse handling, and other office equipment
  • Visual Acuity: Ability to read and view a computer screen for extended periods
  • Hearing and Speaking: Clear communication over phone and video calls
  • Environment Setup: Access to a quiet, professional home office setup conducive to focused work and virtual meetings
  • Lifting: Occasionally requires lifting up to 25 lbs as needed

Disclaimer

The above statements are intended to describe the general nature and level of work being performed by people assigned to this job. They are not intended to be an exhaustive list or comprehensive inventory of all duties, responsibilities, skills, and qualifications required.

At IHI, we are inspired to do our best work and be our best selves by leaning into our values and uniting in our vision to create a future in which everyone has the best care and health possible. We ensure that people feel valued and supported in meaningful ways, as demonstrated in our total rewards package that features competitive compensation, medical, dental and vision coverage, life and disability plans, FSA plans, matching 401k contributions, generous time off including vacation time, sick time, and other special programs to support employee wellbeing.

IHI is proud to be an equal opportunity workplace and an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, religion, sex or gender, marital status, national origin or ancestry, disability, veteran status, military service, age, sexual orientation, gender identity, genetic information, crime victim status, political belief, and any other protected class under applicable law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you have a disability or special need that requires accommodation to complete our application, please let us know. Veterans are encouraged to apply.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities


This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Director, Information Security in United States vacancy
  • $130k - $260k

     ...WalmartBusiness Segment: Home OfficePosition Summary...The Director, Enterprise Cryptographic Services & Secure Data Transfer, leads the development and execution...  ...frameworks, and drive continuous improvement in information security practices. The Director will also guide... 
    Suggested
    Full time
    Temporary work
    Part time

    Walmart

    Bentonville, AR
    2 days ago
  • $190k - $215k

     ...reflect long-term confidence in our mission and solutions.Join us at Landis+Gyr, where we manage energy better!Senior Director, Information Security - Job DescriptionRole SummaryThe Senior Director of Information Security is the leader of the enterprise security program... 
    Suggested
    Contract work

    Rhebo

    Alpharetta, GA
    3 days ago
  • $190k - $220k

     ...better understand their bodies and make smarter decisions about training, recovery, and lifestyle.WHOOP is seeking a Director of Information Security to lead the execution of the company’s security engineering and security operations capabilities. This role is accountable... 
    Suggested
    Full time
    Work at office
    Relocation

    WHOOP

    Boston, MA
    4 days ago
  •  ...Richardson SummaryWe are seeking an experienced and strategic Director of Data Security and Governance to lead our comprehensive data protection...  ...individuals can access and interact with protected information according to defined policies.Risk Management: Conduct regular... 
    Suggested
    Work at office

    Celestica

    Richardson, TX
    2 days ago
  •  ...Business casual work environmentWhat does it mean to be a Senior Director, IT Security at GLS?The Senior Director, IT Security is responsible for...  ..., implementation, and oversight of the company's information security program, including cybersecurity operations, technology... 
    Suggested
    Full time
    Temporary work
    Fixed term contract
    Casual work
    Work at office
    Immediate start
    Monday to Friday

    Global Lending Services

    Greenville, SC
    5 days ago
  •  ...we seize new opportunities and thrive in an environment informed by creativity and thinking that is both analytical and outside...  ...Responsibilities Would Include Position Overview The Director of Information Security is responsible for developing and executing Centric... 
    Summer work
    Work at office
    Local area
    Remote work
    Flexible hours
    Night shift

    Centric Brands

    Greensboro, NC
    5 days ago
  • $210k - $250k

    About the Role:PubMatic is seeking a Director of Information Security to lead and evolve our global security program across enterprise infrastructure, cloud platforms, products, corporate systems, and emerging AI technologies. Executive Communication Strong command of... 
    Work at office
    Remote work

    PubMatic

    Redwood City, CA
    1 day ago
  •  ...million customers, making us one of Europe’s safest and most secure platforms that powers modern investing. Headquartered in...  ...our industry-changing team. Let’s go! Your mission As a Director, Information Security your mission will be to ensure the protection, integrity... 
    Internship
    Work at office
    Remote work
    Worldwide
    Shift work

    Framework Ventures

    Fountain, CO
    3 hours ago
  • $245k - $325k

    Cambridge, MAG&A - Information Technology /On-siteScholar Rock is a late-stage global biopharmaceutical...  ...of Position:Scholar Rock is seeking a Senior Director, Cybersecurity to serve as the company’s Chief Information Security Officer, responsible for building and scaling... 
    Contract work
    For contractors

    Scholar Rock

    Cambridge, MA
    3 days ago
  •  ...The Chief Information Security Officer (CISO) provides strategic leadership for the organization's cybersecurity and information protection programs, ensuring the security of protected health information (PHI), critical systems, and sensitive data. The CISO leads enterprise... 

    Socket.dev

    Helena, MT
    2 days ago
  • $120.34k - $171.91k

     ...Director, Information Security As one of Canada's leading life insurers, Blue Cross Life Insurance Company of Canada (Blue Cross Life) takes great pride in being the most trusted brand by Canadian consumers, offering exceptional coverage tailored to protect them and... 
    Remote work

    Blue Cross Life

    United States
    5 days ago
  •  ...Director of Information Security Do you want an opportunity to lead an amazing team of information security professionals? Would working with cutting-edge security and cloud products excite you? Join our Information Security team! Akamai's Information Security team... 
    Work at office
    Remote work
    Worldwide

    Akamai

    United States
    5 days ago
  •  ...Director, Information Security Agfa HealthCare, a division of the Agfa-Gevaert Group, headquartered in Mortsel, Belgium, is seeking an operational Director, Information Security to define and execute the company's global cybersecurity vision across all business units... 
    Remote work

    Agfa

    United States
    4 days ago
  • $134.41k - $186.7k

     ...Position Overview The Director, Security and Privacy leads HCUS's enterprise security & privacy programs. This role advises executive...  ...HCUS, HLUS, and FTYO. The Director provides guidance on information on security agreements, customer security requirements, regulatory... 
    Full time
    Temporary work
    For contractors
    For subcontractor
    Local area
    Flexible hours

    FUJIFILM Biotechnologies

    Remote
    6 days ago
  •  ...SUMMARY: The Director - Information Security is a "CISO" type role. This is the role of a strategic leader responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected... 
    Full time
    Remote work
    2 days per week

    The Projex Group

    Camden, NJ
    a month ago
  • $210k - $260k

     ...Director, Information Security This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Director, Information Security based in Canada. This is a senior cybersecurity leadership role responsible... 
    Full time
    Remote work

    Jobgether

    United States
    14 hours ago
  • $120k - $140k

     ...Director Information Security, Risk & Compliance We are seeking a focused and diligent Director Information Security, Risk & Compliance to own Bridgewater Bank's technology risk and controls program and ensure audit readiness across the technology environment. This role... 
    Temporary work
    Local area

    Bridgewater Bank

    Minneapolis, MN
    3 days ago
  •  ...position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Director, Information Security and IT based in United States. The Director, Information Security and IT will lead the strategy, execution, and... 
    Full time

    jobgether

    United States
    5 days ago
  • Associate Director of Information SecurityWe are seeking a highly motivated, hands-on Information Security leader with strong, broad security expertise and proven experience in Data Loss Prevention (DLP) and Data Security Posture Management (DSPM), to join our team as... 
    Work at office
    Local area

    Alkermes

    Waltham, MA
    2 days ago
  • $159.3k - $273.2k

     ...UnitedHealth GroupExplore opportunities with the Enterprise Information Security (EIS) team at UnitedHealth Group. Join one of the world's largest...  ...resiliency and securing new acquisitions. The Senior Director of Data Security is the senior leader responsible for the overall... 
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work
    Shift work

    UnitedHealth Group

    Eden Prairie, MN
    3 days ago
  • JOB SUMMARY: The Sr. Director, Global Information Security (GIS) Compliance Program is a key member of the GIS leadership team responsible for the enterprise alignment to our cyber regulatory and/or settlement agreements. They will lead an organization that coordinates... 
    Full time
    Remote work
    Flexible hours

    Marriott International

    Bethesda, MD
    5 days ago
  • $165k - $175k

     ...consumer products, e-commerce, and high-growth start-ups, keep reading!Job Summary:Ruggable is looking for a Director of Infrastructure & Information Security. Technology is central to everything we do. The Technology team enables the infrastructure that powers our direct... 
    Shift work

    Ruggable

    Los Angeles, CA
    2 days ago
  •  ...free coffee and pastries to employeesJob DescriptionThe Director of (Cyber) Security Architecture and Engineering is a cyber leadership role responsible...  ...• 10+ years of progressive experience in cybersecurity, information security, or closely related technology roles. • 5+ years... 
    Live in
    Work at office
    Work from home
    Flexible hours

    Bertelsmann

    Morrisville, NC
    4 days ago
  • GameChanger, a remote-first, dynamic tech company based in New York City, is seeking a Director of Information Security and Technology. You will own the strategy, team, and multi-year roadmap across information security, IT operations, and governance. Lead product, cloud... 
    Remote job

    GameChanger

    New York, NY
    2 days ago
  •  ...Sr. IT Director & Regional Chief Information Security Officer Job Category : Information Technology Requisition Number : SRITD052091 Posted : July 20, 2026 Full-Time On-site Locations Showing 1 location Brentwood, TN 37027, USA Description... 
    Full time

    Geodi

    Brentwood, TN
    3 days ago
  •  ...moves the world forward.THE ROLEWe are seeking an experienced security technology leader who combines strategic thinking with strong technical...  ..., enhance detection and response capabilities, and enable data-informed security decisions.Proven ability to define security technology... 

    AMD

    Austin, TX
    3 days ago
  • $230k - $260k

     ...seamless, effortless lifestyle. About the Role The Director of Enterprise Security and IT leads the IT and Enterprise Security...  ...years of progressive experience across enterprise IT and information security, including 3+ years of people management with direct... 
    Full time
    Local area
    Worldwide

    TP-Link Systems Inc.

    Irvine, CA
    13 days ago
  • $300k - $360k

     ...consumers the flexibility to buy now and pay later without any hidden fees or compounding interest. Remote US The Director, Information Technology & Security will serve as a key member of the Bank's Management Team, serving as the Chief Information Security Officer, and... 
    Full time
    Work at office
    Remote work
    Flexible hours

    Affirm

    Remote
    2 days ago
  • $165k - $185k

     ...League Soccer is seeking a highly technical and hands-on Director, Applications and Data Security to support the security of the League’s digital...  ...and ExperienceBachelor’s degree in Computer Science, Information Security, Engineering, Information Technology, or a related... 
    Work at office
    Local area
    Remote work
    1 day per week

    Major League Soccer

    New York, NY
    4 days ago
  •  ...Bitpanda is seeking a Director of Information Security to lead our GRC program and security governance across fintech environments. You will coach a security team, define strategy, and partner with Engineering, Compliance, and Legal to ensure robust protections and regulatory... 

    Jobleads-US

    Fountain, CO
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Information Security. Be the first to apply!