Information Security Officer
HITRUST
Information Security Officer (ISO)
HITRUST is seeking an experienced Information Security Officer (ISO) to lead and continuously evolve our enterprise information security program in a cloud-first, Zero Trust environment. This role is accountable for protecting HITRUST's information assets, supporting our assurance obligations, and enabling secure business growth.
The Information Security Officer partners closely with Engineering leadership and business stakeholders to ensure security controls are risk-based, scalable, and aligned with modern cloud and SaaS architectures, while meeting regulatory and customer assurance expectations.
Duties & Responsibilities:
Security Strategy, Governance & Zero Trust Enablement
- Own and lead the enterprise information security program, including strategy, policies, standards, and operating procedures
- Define and operationalize Zero Trust security principles, including identity-centric access controls, least privilege, continuous verification, and explicit trust boundaries
- Align security strategy with business objectives, risk tolerance, and HITRUST assurance requirements
- Translate technical risks into clear business impact for executive leadership
- Monitor emerging cyber threats, cloud security risks, and regulatory changes, implementing proactive mitigations
Cloud-First & Modern Infrastructure Security
- Oversee security controls across cloud infrastructure, SaaS platforms, applications, and data environments
- Ensure secure design and operation of identity, access management, logging, monitoring, and encryption services
- Partner with Engineering to embed security into cloud architectures and software development lifecycles (secure-by-design)
- Oversee vulnerability management, security testing, and validation across infrastructure and applications
Security Operations & Incident Response
- Oversee security operations, including threat detection, security analytics, and continuous monitoring capabilities
- Lead incident response for security events, ensuring timely containment, eradication, and recovery
- Conduct post-incident root cause analysis and executive-level reporting
- Escalate and report significant security events to leadership and required stakeholders
Resilience, Business Continuity & Recovery
- Establish and maintain disaster recovery and business continuity procedures aligned to cloud-first architectures
- Conduct breach simulations, incident response exercises, and disaster recovery testing
- Ensure organizational readiness for security incidents and operational disruptions
Compliance, Assurance & Customer Trust
- Manage and continuously enhance a compliance-driven policy and control framework
- Lead or support security assurance activities, including HITRUST CSF, SOC, ISO, HIPAA, and customer-driven assessments
- Support completion of customer security questionnaires and due diligence requests
- Ensure security requirements are integrated into projects and initiatives, and that security milestones are met
Security Awareness & Culture
- Champion organization-wide security awareness and training initiatives
- Promote a culture of shared responsibility for protecting HITRUST information assets
- Support ongoing education and development related to cybersecurity and privacy best practices
Required Qualifications:
- Minimum of six (6) years of experience in information technology or information security
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related discipline
- CISSP certification required; additional certifications (e.g., CEH, CCSP, CISM) are a plus
- Experience with forensic investigation and incident response
- Demonstrated experience leading or participating in security control assessments (e.g., HITRUST CSF, SOC, ISO, HIPAA)
- Strong understanding of cloud security models, identity-centric security, and Zero Trust concepts
- Experience with infrastructure and application security testing
- Strong analytical and organizational skills with the ability to manage multiple initiatives in a dynamic environment
- Excellent verbal, written, and interpersonal communication skills, including the ability to communicate security risk effectively to executives, engineering teams, and business stakeholders
About Us:
HITRUST is the leader in validated cybersecurity assurance used in third-party risk management and compliance. HITRUST delivers assurance and certification programs for the application and independent validation of security, privacy, and AI controls, harmonized across more than 60 authoritative standards and frameworks. Its threat-adaptive approach combines tiered, selectable assessments (e1, i1, r2, and AI), an ecosystem of over 100 independent assessment firms, centralized quality assurance, standardized reporting, and a powerful SaaS platform to enable consistent, defensible, and scalable assurance. HITRUST delivers the only assurance certification with defensible proof of security, demonstrated by a 99.62% breach-free rate among certified environments in the 2026 Trust Report. For nearly 20 years, HITRUST has defined the standard for trustworthy cybersecurity proof, helping organizations demonstrate measurable cybersecurity resilience across their enterprises and third-party ecosystems.
HITRUST is an equal opportunity employer that is committed to diversity and inclusion in the workplace.
We prohibit discrimination and harassment of any kind based on race, color, region, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.
- ...Job Title: Senior Security Consultant (Security Program / Fractional CISO Focus) Job Type: Full-Time Remote About Us: Blue... ..., NIST 800-171, SOC 2, and HIPAA. Develop and implement information security policies, standards, and governance frameworks aligned...SuggestedFull timeRemote work
- ...Consultant, Virtual Information Security Officer (vISO) Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world's most admired brands, Toyota is growing and leading the future of...SuggestedRelocation package
- A financial services institution in Frisco, Texas, seeks an experienced Cyber Security Analyst II to join its Cybersecurity department. This role focuses on safeguarding sensitive data and systems from cyber threats. The Analyst will manage vulnerabilities, monitor security...Suggested
- ...Requirements: Active and transferable U.S. government issued security clearance is required prior to start date. U.S.... ...McKinney, Texas . You will interface and collaborate with the Information System Security Officers (ISSO) and Information Systems Security Managers (ISSM)...SuggestedInternshipWork at officeRemote workRelocationRelocation package
$80k
Chiropractor Position At LifeClinic At LifeClinic, our mission is to restore, maintain, and optimize human function and performance. As a chiropractor here, you'll provide adjustments, soft tissue work, and rehab exercises inside Life Time facilities. We're already ...SuggestedTemporary workRelocationDay shift- ...Information Security Senior Business Information Security Officer Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world's most admired brands, Toyota is growing and leading the future...Relocation package
- ...Origin Bank is seeking an experienced Cyber Security Analyst II to join our Cybersecurity... ...s sensitive data, systems, and customer information from cyber threats. The Analyst will primarily... ...and understand how to use basic office applications, including MS Office (Word,...Local areaImmediate start
- ...Sr Engineer - Container Security Proven experience with the design, deployment and management of Wiz.io or similar tools (e.g., Aqua Security, Twistlock, Falco etc) for securing Kubernetes and container workloads throughout their entire lifecycle. Solid understanding...
- ...International is looking to add an IT Cyber Security Analyst to our Security team located in... ...that the risk to the organization’s information posed by a variety of threats is minimized... ...Demonstrated knowledge of current MS Office products (especially Excel, Word & PowerPoint...
$80k
..., and convert consultations into ongoing care. Familiarity with electronic health records (EHR), scheduling software, and standard office applications. Time management and organizational skills. Commitment to delivering a high‑quality patient experience with empathy and...Work at officeDay shift$205.38k - $327.84k
...focused on providing exceptional client service in the area of informational technology If yes, consider joining (BT) as an **... ...proactively manage their cybersecurity risks by assessing their IT and security capabilities and developing strategies to deliver operational...Work experience placementLocal areaWorldwide- ...Cybersecurity Architect with a strong background in Application Security. Mandatory Areas Must Have Skills: Cyber Security: 10+ Years... ...threat trees, and data flow diagrams. Expertise in network & information security, including firewall policies, SSL certificates, vulnerability...Long term contractContract work
- Baker Tilly Advisory Group, LP is seeking a Cybersecurity & IT Risk Director in Frisco, Texas. The role involves leading cybersecurity advisory services, managing sales pursuits, and directly interacting with clients. Candidates should possess over 10 years of experience...
$80k
A major wellness company in Frisco, Texas is seeking a Chiropractor to provide high-quality, patient-centered care. Key responsibilities include performing chiropractic adjustments, managing patient treatment plans, and engaging with clients through marketing initiatives...- Hewlett Packard Enterprise Development LP is seeking an experienced Project Manager with 7 years of experience, a first-level university degree, and advanced English skills. The role involves utilizing project management expertise, understanding business operations, and...
$205.38k - $327.84k
Baker Tilly International seeks a Cybersecurity & IT Risk Director in Frisco, Texas. This role involves evaluating client risks, managing cybersecurity advisory services, and leading business development efforts. Candidates should possess a Bachelor's degree and CISSP certification...$48 - $52 per hour
...Founded in 1998, BCforward has grown with our customers needs into a full-service business solutions provider. With delivery centers and offices across North America and India, we take pride in building long-term relationships and delivering excellence through innovation,...Contract workRemote work- ...Responsibilities Kforce is immediately adding a full-time Cyber Security Project Manager in support of our industry leading technology... ...environment Collaborate with the Integration Management Office (IMO) and a team of project managers to coordinate delivery across...Hourly payFull timeContract workWork at officeImmediate startRemote workShift work
- ...Manager for its Frisco resort. The role involves overseeing IT operations, providing technical support, ensuring compliance with security standards, and leading a local IT team. Candidates should have a Bachelor's degree in IT and at least 4 years of IT experience, with...Local area
$15 per hour
...environment. In this role, you will be responsible for keeping our team informed about new menu items, specials, and promotional materials. By... ...our Standard Operating Procedures Manuals, and maintain strict security protocols while checking deliveries for accuracy and quality....Hourly payFull time- An established industry player is seeking a skilled Product Owner to lead the development of innovative cloud-based solutions tailored for the Telecommunication sector. This role involves overseeing the entire product life cycle, from conception to launch, ensuring alignment...
$86.7k - $131.57k
...country? Would you like the ability to join a highly dynamic team focused on providing exceptional client service in the area of informational technology risk advisory? If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Experienced...Work experience placementLocal areaWorldwide- Division President, Energy Management & Digital Power About the Company Premier energy management & advisory firm Industry Management Consulting Type Privately Held About the Role The Company is seeking a Division President for its Power Brokerage...
- The client is seeking a highly strategic and relational Executive Director. You can get further details about the nature of this opening, and what is expected from applicants, by reading the below. This role requires a visionary leader who can effectively drive the...
- We are in our recruiting season for board members who seek an opportunity to partner with our organization and bring value to the programs we provide for those in our community who benefit most as we deliver Acts of Love Education- ESL sessions, After-school tutoring...
- ...POSITION OVERVIEW: Reporting to the Chief Operating Officer of the PGA of America, the Executive Director (ED) serves as the... ...as a top recruitment firm by The Business Times . Additional information about our firm and our practices can be found online ....Temporary workInterim roleImmediate start
- ...essential, as is the ability to travel up to 30% annually to support the Foundation's initiatives. Hiring Manager Title Chief Operating Officer of the PGA of America Travel Percent Less than 10% Functions CEO/President Non-Profit Management Confidential
- ...Job Title Responsible for the safety and security of Universal Kids Resort's (UKR) Guests, Team Members, company assets and property... ...using sound judgement all while collecting necessary information to construct a written witness statement. Assists and directs...Flexible hours
$19 - $20 per hour
...want to serve others, and grow in their security careers. In return, we provide training,... ...assignments across multiple locations. Officers selected for the IRT division must be reliable... ...-visibility situations. Additional Information / Benefits This job reports to the...Hourly payFull timePart timeFlexible hours- ...providing remediation support across cloud and hybrid infrastructures, prioritizing vulnerabilities, and offering strategic guidance on security best practices to clients. Ideal candidates should possess deep technical expertise in cloud security and AI-driven methodologies....Contract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Officer. Be the first to apply!
- sr information security engineer Frisco, TX
- information security lead Frisco, TX
- data center security officer Frisco, TX
- entry level information security analyst Frisco, TX
- information technology security engineer Frisco, TX
- senior information security analyst Frisco, TX
- information security Frisco, TX
- information systems security officer
- information security officer
- business information security officer biso



