Senior Director, Information Security Officer
Soleo HealthAbout the role
Description
Soleo Health is seeking a Senior Director, Information Security Officer to enhance and safeguard our company's IT infrastructure in Frisco, TX or St. Louis, MO. Join us in Simplifying Complex Care!
Soleo Health Perks:
Competitive Wages
401(k) with a Match
Referral Bonus
Paid Time Off
Great Company Culture
Paid Parental Leave Options
Affordable Medical, Dental, & Vision Insurance Plans
Company Paid Disability & Basic Life Insurance
HSA & FSA (including dependent care) Options
Education Assistance Program
The Position:
The Senior Director, Information Security Officer will report directly to the Chief Information Officer (CIO) and holds a pivotal executive technology leadership role. This position is crucial for shaping and executing the company's cybersecurity strategy, ensuring the protection of information assets, and maintaining compliance with industry standards within the healthcare sector. The Senior Director, Information Security Officer will develop, recommend, and implement comprehensive security measures that leverage advanced technologies and best practices to safeguard sensitive data while adhering to healthcare regulations. Responsibilities include:
- Cybersecurity Strategy Development: Develop and implement a robust cybersecurity strategy that aligns with the organization's overall objectives and industry standards. Apply a risk-based approach to identify, prioritize, and mitigate risks to enhance patient data security and protect against cyber threats.
- Governance and Compliance: Establish and enforce information security policies to ensure data integrity, confidentiality, and compliance with healthcare regulations, including HIPAA, HITRUST, and HITECH. Develop frameworks for consistent security practices across the organization.
- Healthcare Data Security: Implement advanced data security measures to protect sensitive healthcare information. Ensure compliance with data privacy laws and safeguard patient information from breaches and unauthorized access. Lead efforts to enable the organization to achieve HITRUST certification.
- Risk Management: Conduct regular risk assessments and vulnerability analyses to identify and address potential security threats. Prioritize action plans based on a risk-based approach to minimize potential impact. Develop and maintain incident response plans to manage data breaches and other security incidents effectively.
- Security Infrastructure Management: Lead the design and implementation of scalable security architecture tailored to healthcare applications. Ensure the efficient and secure collection, storage, and retrieval of data across all business units.
- Team Leadership: Build and manage a lightweight, high-performing information security team over time, fostering a culture of continuous learning and innovation. Develop training programs and career paths to attract, retain, and grow top cybersecurity talent.
- Cross-Functional Collaboration: Work with senior leaders to integrate security measures into all aspects of the business. Promote a security-centric culture and advocate for proactive risk management and data protection.
- Technology and Vendor Management: Evaluate and implement cutting-edge security technologies and tools. Manage relationships with external vendors and partners to ensure optimal solutions and services, focusing on healthcare-specific technologies and compliance requirements. Develop a framework to efficiently assess new technology software and partner requests within the organization.
- Performance Measurement: Develop and track key performance indicators (KPIs) to measure the effectiveness of security initiatives. Provide regular updates to the executive team on the progress and impact of security strategies, particularly in relation to compliance, risk reduction, and incident response.
The ideal candidate will have a strong background in information security and technology within the healthcare sector, coupled with exceptional leadership and communication skills. They will be a visionary leader capable of driving transformational change and positioning the organization as a leader in healthcare data security.
Requirements
- Bachelor’s degree in information security, Computer Science, Information Technology, or a related field.
- Advanced degree (master’s or PhD) preferred, particularly in Information Security, Business Administration, Healthcare Administration, or a related discipline.
Experience:
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s