IT Security Officer

Nsight Health
3h$100,000 - $120,000Remote

About The Position

We are seeking a motivated and detail-oriented IT Security Officer to join our IT/Engineering Department. In this role, you will be responsible for building and maintaining a secure, efficient, and compliant IT environment that aligns technological resources with our overarching business objectives. This role is a hands-on individual contributor with responsibility for building and scaling the security function.

Requirements

  • 7-10 years of IT experience, with at least 5 years focused on information security and compliance
  • One or more professional certifications such as CISSP, CISM, CISA, or similar are required
  • Demonstrated experience in developing and implementing comprehensive IT security strategies, policies, and procedures
  • In-depth knowledge of industry-standard cybersecurity frameworks (e.g., NIST, ISO 27001) and regulatory compliance requirements
  • In-depth knowledge of HIPAA regulations and their implementation in IT
  • Proven track record in managing IT security operations, incident response, and compliance audits
  • Proven ability to foster a culture of security awareness and continuous improvement across an organization
  • Strong analytical, problem-solving, and decision-making capabilities, with the ability to manage complex projects and prioritize effectively
  • Exceptional communication skills, capable of articulating complex security concepts to a broad audience and fostering cross-departmental collaboration
  • Excellent professionalism is required to effectively interact cross-functionally within the organization
  • Strong business acumen with the ability to balance security risk, operational impact, and regulatory requirements
  • Experience working with cross-functional teams and fostering collaboration
  • Strong problem-solving and critical-thinking abilities
  • Strong communication and organizational skills
  • Minimum internet speed of 50 Mbps download / 10 Mbps upload
  • Hardwired internet connection required
  • Speed test submission required during the offer process
  • Private, HIPAA-compliant workspace

Responsibilities

  • Develop and execute the company’s foundational information security program and multi-year security roadmap in alignment with business and regulatory needs
  • Partner with IT and Engineering teams to ensure secure configuration, deployment, and operation of enterprise systems and cloud platforms
  • Lead compliance efforts primarily focused on HIPAA, while supporting SOC 2 and other frameworks as driven by customer, regulatory, or business requirements
  • Partner with IT and Operations to define, test, and maintain disaster recovery and business continuity plans from a security and risk perspective
  • Cultivate a security-first culture within the IT department and across the organization, promoting awareness and adherence to security best practices and policies
  • Oversee the management of security incidents and breaches, coordinating response efforts to minimize impact and implementing lessons learned to strengthen defenses
  • Analyzes technologies and establishes processes, procedures, and protocols to prevent unauthorized access to company networks, systems, and data
  • Develop the vulnerability and patch management process to assist the IT team in systematically ensuring vulnerabilities are addressed based on criticality, risk, and impact on the business and each resource
  • Assists the IT team in configuring and supporting security and recovery tools
  • Assists the IT team with internal audit reviews, security assessments, and risk assessments
  • Facilitates third-party audit reviews, penetration tests, and risk assessments
  • Lead security-related projects from inception to successful completion and assists in department training
  • Lead the evaluation and management of security-related vendors and consultants, partnering with Procurement, IT, and Legal as appropriate
  • Collaborate with department heads to tailor IT security and compliance measures that support departmental and overall business objectives without compromising security
  • Regular engagement with the IT team at all levels, demonstrating a commitment to hands-on problem-solving and collaboration
  • Stay abreast of the latest security trends, threats, and technologies, adjusting our strategy to mitigate new risks and leverage emerging opportunities
  • Own and manage IT security metrics and reporting
  • Maintain compliance with company policies and applicable regulations
  • Perform other duties as assigned

Benefits

  • 11 Paid Company Holidays annually
  • Paid Time Off (PTO)
  • Medical, Dental, Vision, and supplemental insurance options
  • 401(k) Plan with 3.5% Company Match
  • Company-provided equipment
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service