Information Security Officer
Gainwell TechnologiesAbout the role
Great companies need great teams to propel their operations. Join the group that solves business challenges and enhances the way we work and grow. Working at Gainwell carries its rewards. You’ll have an incredible opportunity to grow your career in a company that values your contributions and puts a premium on work flexibility, learning, and career development.
Summary
As a Product Information Security Officer (ISO), you will play a pivotal role in ensuring the seamless integration and effective utilization of Gainwell's diverse product portfolio. You will work closely with internal teams and external stakeholders to understand product functionalities, address concerns, and optimize solutions across various domains, including healthcare, data analysis, and client support services. In a typical engagement, you operate as a trusted advisor in the organization, working with senior management and focusing specifically on health care industry regulated security requirements and environments in relation to client business objectives. The ISO helps understand operational issues and plans next steps from an information security viewpoint.
This requires the ability to interact and influence at a managerial level within client organizations such as Information Governance and IT Security leads. You will demonstrate industry expertise and understanding of the security governance and compliance. Health Insurance Portability and Accountability Act of 1996 (HIPAA) and the National Institute of Standards and Technology (NIST) 800-53 framework and additional NIST frameworks is what the ISO will be analyzing and enforcing, maintaining, and helping to assess on each designated account or health care product within Gainwell Technologies and its partners.
Your role in our mission
- Product Integration Management: Facilitate the integration of healthcare products, and other Gainwell products into client systems. Coordinate with technical teams to ensure smooth deployment and compatibility of products within client environments. Compliance and operational focused.
- Data Security and Compliance: Educate stakeholders on the importance of safeguarding PHI/PII data embedded within Gainwell products. Implement and enforce compliance measures to mitigate risks associated with sensitive information.
- Client Support and Communication: Serve as a primary point of contact for clients regarding the security of the product functionalities, updates, and troubleshooting. Communicate effectively with internal teams to address client concerns and optimize product performance.
- Enhancement and Innovation: Collaborate with product development teams to identify opportunities for product enhancement and innovation based on client feedback and industry trends. Contribute to the roadmap of Gainwell products by providing insights into market demands and emerging technologies.
- Lead Security operational governance activities.
- Ensuring delivery excellence in security tooling and business operations (Ensuring avoidance of non-performance / non-compliance contractual penalties).
- Maintain an account security plan and other security related documentation for the selected account(s) and Products.
- Ensure Audit and penetration assessment preparation, facilitation, and remediation.
- Manage security risk and exceptions to security standards within the organization and third-party risk. To include vulnerabilities, defects, and exploits.
- Ensure knowledge sharing and implementation of security fundamentals, policies, and standards (regulatory and contractual).
- Escalate and resolve Security Incidents with the Security Incident Response (SIR) team and Account Executives (AE).
- Manage and report security incidents.
- Coordinate delivery of Security Metrics and Reporting in support of contractual commitments.
- Documentation including writing policies, standards, procedures, process, and security plans.
- Continuous security education.
What we're looking for
- Experience as a Security consultant, architect and/or engineer.
- Experience in working with security management including information governance and compliance.
- Good understanding of Information Security Assurance Practices and Risk Management, with han
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s