Director of Information Security
Core
Lead and advance the information security and risk management program to protect systems, infrastructure, and sensitive information from cyber threats.
Role type
Director of Information Security
Builds
Security roadmap, policies, standards, governance frameworks, and Zero Trust capabilities
Domain
Public sector healthcare / Cybersecurity
Required skills
Zero Trust architecture, incident response, vulnerability management, security monitoring, vendor risk management, NIST frameworks, IT infrastructure, cloud environments, identity services, data classification, encryption, data loss prevention
Preferred skills
Security roadmap development, long-term strategy, public sector/healthcare experience, ARC-AMPE or CMS guidance, CISSP/CISM certification
Technologies
Cloud, CMS, Support, Network Security, IAM
Responsibilities
Develop and maintain Information Security Roadmap; oversee core security functions (Security Operations, GRC, IAM, Security Architecture, Vendor Risk); establish and maintain security policies and governance frameworks; oversee threat detection, vulnerability management, and security-event monitoring; lead incident response; implement safeguards for regulated data (PII, PHI); guide security architecture development and Zero Trust implementation; manage third-party security risk; partner on endpoint management and identity platforms; support disaster recovery and business continuity; report on cybersecurity posture and compliance; oversee staff development and program administration
Seniority
Director, strategic leadership & team management