Chief Information Security Officer (Director-Level)
Honest HealthAbout the role
Who You Are
You’re a collaborative professional, driven by the potential to make a meaningful impact in healthcare. The challenges of healthcare don’t deter you—instead, you see them as opportunities to find innovative solutions that benefit the partners, people, and communities we serve. Honest Health’s commitment to purpose, innovation, communities, and kindness resonates with you, inspiring you to bring commitment, creativity, and compassion into your work. You’re ready to join a team focused on reimagining primary care for a healthier future that benefits all.
Does this sound like you? If so, we should talk.
Who We Are
At Honest Health, we believe in purpose and partnership to lead the transformation in primary care. Our team of healthcare experts and clinicians collaborates with a range of stakeholders—from health systems, physician organizations, and payers to providers, practices, and patients — to deliver innovative solutions that elevate care, control costs, and support long-term health. Guided by our core values, we’re creating a value-driven model that creates lasting benefits for everyone, now and into the future.
For us, that's just an Honest day’s work.
Your Role
This director-level position will lead the development and implementation of the organization’s information security strategy to protect data, ensure regulatory compliance, and manage cybersecurity risks. The Chief Information Security Officer (CISO) role will require a leader with deep knowledge of healthcare regulations and standards such as HIPAA, HITRUST, and NIST. The role will report to the Chief Information Officer and will require the ability to be strategic in vision and practical in execution, helping Honest to continuously evolve and strengthen our security posture.
Primary Functions of the Chief Information Security Officer Include:
- Develop and continuously evaluate and evolve Honest’s information security roadmap and posture.
- Develop, implement, and monitor a comprehensive enterprise information security and risk management program, in collaboration with our Compliance team and other business partners.
- Align and prioritize actions within the cyber security program that align with our organization’s objective goals, meets the needs of our partners and focuses on data protection, threat management, and risk mitigation.
- Ensure compliance with healthcare regulations including HIPAA, HITRUST, and other applicable standards.
- Oversee incident response planning, and the investigation of any security incidents, ensuring timely reporting to the executive team and all relevant stakeholders.
- Collaborate with our business partners across the organization to integrate security best-practices across the organization.
- Oversee and evaluate third-party security assessments to ensure vendor compliance with organizational security policies and industry standards. Collaborate with both our People and Culture and Marketing teams on security training and awareness programs for all staff to help foster a culture of security awareness.
- Provide regular reports to the executive team and board on the status of the information security program and emerging threats.
- Implement, manage and enforce information security directives as mandated by Federal and State regulations, including but not limited to the Health Insurance Portability and Accountability Act (HIPAA).
- Develop and enforce policies and procedures and provide oversight of functional areas including, but not limited to: workforce training involving confidentiality, integrity and availability of data within Honest’s electronic systems and cloud-hosted data.
- Work across the organization to ensure that the access control, disaster recovery, business continuity needs of the organization are properly addressed
- Conduct research in and stays current with security vulnerabilities and remediation efforts.
- Perform other related responsibilities as required.
How You Qualify
You reviewed the Who You Are section of this job posting and immediately felt the need to read on. This makes you a match for our innovative culture. You accept things change quickly in a startup environment and are willing to pivot quickly on priorities.
- Bachelor’s degree in information technology or related field of study required; Master’s degree in business or IT fields considered a plus
- 7+ years of experience in Information Technology Enterprise and Infrastructure with at least 5 years in leadership roles
- 5+ years of experience of operational delivery in a healthcare environment
- Thorough knowledge of state-of
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s