Sr. Director of Information Security
Partnership HealthPlan of CaliforniaAbout the role
Overview
The Sr. Director of Information Security reports to the Chief Information Officer and maintains a strong relationship with Infrastructure Technology (Network Ops), IT Applications Development, IT Enterprise Data Management, and the functional departments of Partnership HealthPlan of California (Partnership). The Sr. Director is responsible for building and leading a team of Cyber Defense Operation Center (CDOC) colleagues. This position will work with various Managed Security Service Providers (MSSP) to establish and maintain threat escalation and remediation protocols including off hours. This role is to direct and manage all aspects of running an efficient team including hiring, supervising, coaching, training, disciplining, and motivating direct-reports. The Sr. Director is responsible for the development, implementation, and management of the CDOC programs and services to include threat hunting, compromise assessments, continuous monitoring, red team exercises, penetration testing, incident response and forensics. The Sr. Director is the primary conduit between the CDOC and the Security Engineers. This position ensures the internal toolsets used and needed by the Analysts and Engineers are kept up-to-date and running efficiently. The Sr. Director is primarily responsible for maintaining and coordinating the organization's incident response plan.
Responsibilities
- Plans, directs, and manages day-to-day activities across the CDOC. Leads the CDOC inproactively performing threat hunting, compromise assessments, penetration testing, redand blue team exercises.
- Drives timely implementation and improvement of new tools, capabilities, frameworks,and methodologies across all teams within the CDOC, across IT and the enterprise.
- Accountable for the timeliness and efficient identification, isolation, mitigation, andreporting of critical incidents.
- Manages cross-functional security teams to achieve continuous improvement in cyberdefense/response. Instills and reinforces industry best practices in the domains ofincident response, cybersecurity analysis, knowledge management, and CDOCoperations.
- Responsible for overseeing the monitoring and timely proactive response to threats inCloud environments
- Promotes and drives implementation of automation and process efficiencies.
- Leads strategy development, quality control, compliance, and continuous improvement ofCDOC.
- Maintains a forward-leaning ops tempo that includes continual validation andimprovement across all CDOC functions.
- Delivers recommendations in accordance with government and contractual requirements.
- Provides customers with remediation recommendations.
- Creates, reviews, and approves new procedural documentation. Conducts productevaluations of security technologies.
- Acts as the technical expert in multiple domains to coordinate CDOC efforts duringincident and breach responses. Collaborates with other Information Technology (I.T.)teams to ensure relevant organization-wide data is processed by the CDOC.
- Coordinates the InfoSec on-call schedule and escalation procedures.
- Manages complex projects, engaging and updating key stakeholders, developingtimelines, leads others to complete deliverables on time and ensures implementation uponapproval. Oversees the MSSP program. Responsible for setting alert thresholds, ensuringtickets are resolved in a timely manner, toolset configurations, and project management.Ensures that CDOC toolsets and automation are always operational and alerts and eventsfrom those toolsets are triaged appropriately.
- Conducts strategic planning to utilize resources in order to meet current and futuredepartmental and Enterprise-wide goals.
- Plans and implements systems and procedures to maximize operating efficiency andachieve strategic priorities.
- Develops goals, objectives and action plans for assigned staff which includes fullmanagement responsibility for the hiring, performance reviews and disciplinary mattersfor direct reporting employees.
- Prepares briefings, reports, consultation documents and presentations that clearlyarticulate Partnership’s regulatory position and policy. Develops regulatory position andpolicy based on research and evidence.
- Other duties as assigned
Qualifications
Education and Experience
Bachelor’s degree in Information Technology or BusinessAdministration, Business Management; at least eight (8) years ofexperience leading comparable information security or technologyteams with at least six (6) years of management/supervisoryexperience. Operational experience configuring and managing asecurity Information and Event Management (SEIM) platform.Operational experience monitoring cloud computing (e.g., AWS,Azure, etc.) and SaaS environments. Experience with leading theresponse to cr
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s