Chief Information Security Officer - Healthcare
AkuminAbout the role
The Chief Information Security Officer (CISO) is responsible for identifying, evaluating, and reporting on information security risks in a manner that meets compliance and regulatory requirements, and aligns with and supports the risk posture of the enterprise. The CISO is responsible for establishing and maintaining the cybersecurity plan and a multi-year roadmap that ensures that company’s information assets are adequately protected. The CISO will proactively work with other IT leaders, business unit leaders, and Senior Management to implement practices that meet defined objectives and standards for information security. The position will also oversee a variety of IT-related risk management activities. They will ensure the ongoing compliance with internal and external security requirements such as HIPPA Security Rule, NIST 800-171, CMMC, ISO 27001, Cyber Essentials +, PCI DSS and corporate security policies such as the Security Standards for the Protection of Electronic Protected Health Information
Specific duties include, but are not limited to:
Develop and implement a strategic, long-term information security strategy and roadmap to ensure that Akumin’s information assets are adequately protected.
Work with senior leaders across the business to assess and communicate acceptable levels of risk. Identify, evaluate, and report on information security risks, practices and projects to the Compliance Committee, Senior Leadership, and provide subject matter expertise on security standards and best practices. Maintains dotted line to Chief Legal Council and accountable to Compliance Officer for security incident and discovery reporting.
Develop, mentor, and manage a high performing staff of information security professionals.
Lead the development of up-to-date information security policies, procedures, standards, and guidelines, and oversee their approval, dissemination, and maintenance. Ensure that the security management program is in compliance with applicable laws, regulations, and contractual requirements. Act as the champion for the enterprise information security program and foster a security-aware culture.
Oversee the evaluation, selection and implementation of information security solutions that are innovative, cost-effective, and minimally disruptive.
Partner with enterprise architects, infrastructure, and applications teams to ensure that technologies are developed and maintained according to security policies and guidelines.
Manage regular intrusion detection and vulnerability reporting, internal and external IT audit groups reviews, and the coordination of all required fixes.
Develop business metrics to measure the effectiveness of the security management program and increase the maturity of the program over time.
Monitor the industry and external environment for emerging threats and advise relevant stakeholders on appropriate courses of action.
Liaise with law enforcement and other advisory bodies as necessary to ensure that the organization maintains a strong security posture.
Oversee incident response planning and the investigation of security breaches, and assist with any associated disciplinary, public relations and legal matters.
Oversee and lead the creation, communication, and implementation of a process for managing vendor risk and other third-party risk.
Other duties as assigned by management.
Position Requirements:
Healthcare experience.
Bachelor's Degree in Engineering, Computer Science or Equivalent experience.
10+ years IT experience, including demonstrated success working as a member of a team in a senior leadership role.
5+ years of Infrastructure and or software development management experience utilizing modern agile, cloud and edge approaches.
A proven track record in developing information security policies and procedures, and successful execution.
Extensive knowledge of business risk, risk assessment and risk-based decision making.
Able to communicate security and risk-related concepts to both technical and non-technical audiences (in business terms), including board level.
A natural influencer and coalition builder; passionate about building high performing teams.
Ability to inspire and motivate cross-functional, interdisciplinary teams to achieve tactical and strategic goals, an innovat
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s
Similar roles
Supervisory Criminal Investigator (Branch Chief)
Bureau of Alcohol, Tobacco, Firearms and Explosives
$192,275/yr
Physician (Ophthalmology Section Chief)
Veterans Health Administration
$400,000/yr
Wholesale Deputy Chief Risk Officer - Investment Banking and Capital Markets
Truist