Chief Information Security Officer
Soleo HealthAbout the role
Description
Soleo Health is seeking a Chief Information Security Officer to enhance and safeguard our company's IT infrastructure. Join us in Simplifying Complex Care!
Soleo Health Perks:
Competitive Wages
401(k) with a Match
Referral Bonus
Paid Time Off
Great Company Culture
Paid Parental Leave Options
Affordable Medical, Dental, & Vision Insurance Plans
Company Paid Disability & Basic Life Insurance
HSA & FSA (including dependent care) Options
Education Assistance Program
The Position:
The Chief Information Security Officer (CISO) will report directly to the Chief Information Officer (CIO) and holds a pivotal executive technology leadership role. This position is crucial for shaping and executing the company's cybersecurity strategy, ensuring the protection of information assets, and maintaining compliance with industry standards within the healthcare sector. The CISO will develop, recommend, and implement comprehensive security measures that leverage advanced technologies and best practices to safeguard sensitive data while adhering to healthcare regulations. Responsibilities include:
- Cybersecurity Strategy Development: Develop and implement a robust cybersecurity strategy that aligns with the organization's overall objectives and industry standards. Apply a risk-based approach to identify, prioritize, and mitigate risks to enhance patient data security and protect against cyber threats.
- Governance and Compliance: Establish and enforce information security policies to ensure data integrity, confidentiality, and compliance with healthcare regulations, including HIPAA, HITRUST, and HITECH. Develop frameworks for consistent security practices across the organization.
- Healthcare Data Security: Implement advanced data security measures to protect sensitive healthcare information. Ensure compliance with data privacy laws and safeguard patient information from breaches and unauthorized access. Lead efforts to enable the organization to achieve HITRUST certification.
- Risk Management: Conduct regular risk assessments and vulnerability analyses to identify and address potential security threats. Prioritize action plans based on a risk-based approach to minimize potential impact. Develop and maintain incident response plans to manage data breaches and other security incidents effectively.
- Security Infrastructure Management: Lead the design and implementation of scalable security architecture tailored to healthcare applications. Ensure the efficient and secure collection, storage, and retrieval of data across all business units.
- Team Leadership: Build and manage a lightweight, high-performing information security team over time, fostering a culture of continuous learning and innovation. Develop training programs and career paths to attract, retain, and grow top cybersecurity talent.
- Cross-Functional Collaboration: Work with senior leaders to integrate security measures into all aspects of the business. Promote a security-centric culture and advocate for proactive risk management and data protection.
- Technology and Vendor Management: Evaluate and implement cutting-edge security technologies and tools. Manage relationships with external vendors and partners to ensure optimal solutions and services, focusing on healthcare-specific technologies and compliance requirements. Develop a framework to efficiently assess new technology software and partner requests within the organization.
- Performance Measurement: Develop and track key performance indicators (KPIs) to measure the effectiveness of security initiatives. Provide regular updates to the executive team on the progress and impact of security strategies, particularly in relation to compliance, risk reduction, and incident response.
Requirements
- Bachelor’s degree in information security, Computer Science, Information Technology, or related field; advanced degree in Information Security, Business Administration, Healthcare Administration, or a related discipline preferred
- Minimum of 10-15 years of experience in information security and technology roles, with extensive experience in the healthcare sector including familiarity with healthcare data security practices, regulations, and standards.
- Expertise in advanced security technologies (e.g., encryption, intrusion detection, DLP, incident response) and proficiency in security management tools and platforms (e.g., SIEM, IDS/IPS, DLP).
- Strong understanding of security architecture and infrastructure design tailored for healthcare applications.
- In-depth knowledge of healthcare regulations, such as HIPAA, HITRUST, and HITECH, with experience ensuring compliance with healthcare data privac
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s
Similar roles
Administrative Assistant to the Chief Diversity Officer (CDO) & Vice President (VP), Strategic Initiatives & University Relations
William Paterson University of New Jersey
Chief Architect
The University of Texas at Austin
Field Chief Technical Officer
Logicalis
$277,593/yr