The Director of IT Operations & Security is accountable for reliable, scalable day-to-day IT operations across QualDerm’s multi-state clinic footprint and for building a practical, risk-based security program that protects patients, providers, teammates, and business continuity. This leader drives operational excellence (service desk, infrastructure, identity, endpoint, network, vendor performance) while maturing security governance, controls, and incident readiness in a healthcare environment. IT Operations Leadership (Multi-site Healthcare) Own IT service delivery across clinics and corporate teams: incident, request, problem, and change management. Lead service desk performance (triage quality, first-contact resolution, AHT, backlog hygiene), escalation paths, and knowledge management. Ensure high availability and performance of core IT platforms: identity (Entra ID), M365, endpoint management (Intune), networking/Wi-Fi, and infrastructure services. Establish and maintain operational standards: device lifecycle, patching cadence, backup/restore, remote support, site onboarding/offboarding playbooks, vendor runbooks. Drive vendor governance for MSPs, telecom/ISP, security providers, and infrastructure partners—ensure KPIs, accountability, and cost control. Manage operational budgeting: renewals, licensing optimization, hardware standards, and cost-to-support metrics. Security Program Ownership (Practical & Scalable) Lead QualDerm’s security operations and risk reduction roadmap aligned to HIPAA and healthcare expectations. Implement and maintain foundational controls: Identity & access management (MFA, conditional access, privileged access) Endpoint security (EDR, encryption, secure configuration baselines) Vulnerability management (scanning, remediation SLAs, reporting) Email and collaboration security (phishing protection, DLP where appropriate) Logging/monitoring (SIEM where needed), alert triage, and incident response playbooks Own incident response readiness: tabletop exercises, communication plans, evidence preservation, and post-incident improvements. Partner with Compliance/Legal on security policies, risk assessments, BAAs, vendor security reviews, and audit readiness. Drive security awareness with measurable outcomes (phishing resilience, training completion, high-risk user targeting). Operational Governance & Continuous Improvement Build a “single source of truth” operating cadence: weekly metrics, monthly risk and reliability reviews, quarterly roadmap updates. Create and maintain documentation: SOPs, runbooks, asset standards, disaster recovery procedures, and escalation matrices. Identify automation opportunities in service workflows (e.g., provisioning, access requests, device setup, ticket routing) to reduce manual work.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Director
Education Level
No Education Listed
Number of Employees
101-250 employees