Gainwell Technologies LLC-posted 3 months ago
$72,800 - $104,000/Yr
Full-time • Mid Level
OH
5,001-10,000 employees

Gainwell Technologies is seeking a well-rounded Information Security Officer (ISO). Under the supervision of the Account Security Officer, this position will perform required functions to support daily security and privacy operations for our Account and Client requirements. The ISO will be responsible for establishing and maintaining working relationships with internal teams, external stakeholders, and account partners. This position is responsible for coordinating with Infrastructure, Application and Development teams to prepare for and execution of Security Assessments and Audits. This position requires the ability to work with tight deadlines, often with short notice, multi-task, analyze and troubleshoot issues, be responsible for the overall security hygiene of the account, as well as be the recognized security resource for Gainwell Infrastructure, application, and technical resources supporting the account.

  • Serve as a primary point of contact for client regarding all aspects for account security, privacy, and compliance.
  • Communicate effectively with internal teams to address client concerns and optimize security compliance.
  • Coordinate the adoption of information security best practices throughout the account based on client feedback and industry standards.
  • Facilitate with stakeholders on safeguarding PHI/PII data.
  • Implement and enforce compliance measures to mitigate risks associated with sensitive information.
  • Review, capture and document IT and Security Risk.
  • Document any exceptions, formally.
  • Manage risks to closure and/or documented exceptions and follow through on managing exceptions to remediation deadlines.
  • Review and oversee vulnerability remediation by partnering with the technical teams across platforms, applications, and operating systems.
  • Support and manage ongoing security activities (access management, account reviews, vulnerabilities assessments, patch management, audits, etc.).
  • Participate and represent security on projects and team calls to ensure security requirements are achieved in compliance with standards and policy.
  • Oversee the creation, development, and maintenance of all documentation supporting Information Security including: Security Management Plans, System Security and Privacy Plan (SSPP), IT Risk Management Plan, Security Incident Response Plan, and Plan of Action & Milestones (POA&M).
  • Support and conduct security and risk assessments annually.
  • Be available 24/7 for any emergencies including any security events reported by the SIEM and/or SOC.
  • Address security incidents in general.
  • Perform all other security functions and duties as required.
  • Minimum of 8 years combined experience in information security, vulnerability management, compliance, technology audit, or a related field in healthcare.
  • Familiarity with NIST and CMS Cybersecurity Frameworks.
  • Knowledge of regulatory compliance requirements including HIPAA/HITECH, ARC-AMPE, ISO, SSAE16 / SSAE18, Safe Harbor.
  • Experience with emphasis in information security and regulatory compliance management.
  • Experience with healthcare environments and compliance planning and implementation.
  • Knowledge and experience using and maintaining vulnerability management solutions.
  • Able to communicate technical concepts between technical and non-technical stakeholders.
  • Awareness and understanding of current security and cyber threat landscape.
  • Team player, ability to work with people in a productive manner.
  • Skilled in planning, problem solving, analysis, collaboration, and communication.
  • Excellent communication skills, written and verbal, and ability to represent security in front of account leadership.
  • Ability to influence and/or lead security-related business development activities.
  • Strong Organizational Skills, ability to handle multiple high-pressure situations simultaneously.
  • Excellent understanding of project management principles.
  • Generous, flexible vacation policy.
  • Educational assistance.
  • Comprehensive health benefits.
  • 401(k) employer match.
  • Leadership and technical development academies.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service