Senior Director of Information Security and Risk Management

Streamline Healthcare SolutionsMO
115d

About The Position

We are seeking an experienced Senior Director of Information Security and Risk Management to lead our enterprise security program, focusing on security strategy, risk management, and operational resilience. This role will oversee all aspects of information security, including application security, infrastructure security, SOC operations, incident response, and third-party risk management. The ideal candidate will be a strategic leader with deep technical expertise, capable of building a proactive security posture that protects our systems, data, and customers. This is a remote position based in the United States, reporting to the CIO.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or related field (Master’s preferred).
  • 10+ years of experience in information security, with at least 5 years in a leadership role.
  • Proven experience leading incident response, SOC operations, and enterprise security programs.
  • Strong knowledge of cloud security architectures (AWS, Azure) and modern security technologies.
  • Knowledgeable of HIPAA, FedRAMP, NIST, CIS benchmarks, SOC 2, and ISO 27001.
  • CISSP or CISM certification.
  • Excellent communication and executive presentation skills.

Nice To Haves

  • CISA, CCSP, or equivalent security leadership certifications.
  • Cloud security certifications (AWS Security Specialty, Azure Security Engineer).
  • Knowledgeable of SAST and DAST.
  • Experience with security tools including Aikido, Wiz, KnowBe4 and Microsoft Defender.
  • Experience with SaaS Delivery in HIT.
  • Experience with EHR systems.

Responsibilities

  • Define and execute the organization’s security strategy aligned with business objectives.
  • Lead teams responsible for AppSec, SOC, infrastructure security, and third-party risk.
  • Drive enterprise resilience initiatives, including business continuity and disaster recovery.
  • Oversee enterprise risk assessments and mitigation strategies.
  • Lead major incident response efforts, including technical containment and executive communications.
  • Partner with IT, DevOps, and business units to embed security into processes and technology.
  • Ensure secure design and implementation of systems, applications, and cloud environments (AWS, Azure).
  • Oversee identity and access management, encryption, and vulnerability management programs.
  • Manage SOC operations and threat detection capabilities.
  • Support compliance teams by providing security expertise during audits and assessments.
  • Serve as a trusted advisor to executive leadership on security posture and risk.
  • Represent security in customer discussions, board meetings, and strategic planning sessions.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service