All jobs

Chief Information Security Officer

100% Remote Full-time Open now

The Chief Information Security Officer (CISO) is responsible for establishing, leading, and maintaining the organization's enterprise-wide information security program. This role ensures the confidentiality, integrity, and availability of company data, systems, and infrastructure while supporting business growth in a highly regulated healthcare environment. The CISO serves as the senior security leader for the organization, responsible for security strategy, risk management, compliance, incident response, and security operations. This role works closely with executive leadership, DevOps, business development, legal, and external auditors to ensure compliance with healthcare and international security standards, including HITRUST, HIPAA, SOC 2 Type II, NIST, and ISO. Company Overview We provide solutions that make a meaningful difference in healthcare. Founded in 1995, MIE serves as the innovation engine for business units that serve hospitals and health systems, physician practices, Fortune 500 employers, government agencies, and consumers. MIE's web-based health information technology platform is helping physicians, nurses, and administrators make a meaningful difference in healthcare delivery across the globe.

Key Responsibilities

  • Strategic Security Leadership:
  • * Develop and implement the organization's information security strategy.
  • Provide regular security updates to the CIO, other executives, and the board of directors, including presentations on security matters.
  • Represent the organization in security-related matters with external parties, including vendors and auditors.
  • Work closely with the CIO and operate as a member of the DevOps team to emphasize and implement our security initiatives.
  • Risk Management:
  • * Conduct regular risk assessments and vulnerability scans using tools like Rapid7 IVM and internal tracking systems.
  • Oversee the development and implementation of incident response plans and conduct tabletop exercises with DevOps team members..
  • Compliance and Audit:
  • * Ensure compliance with relevant regulations and standards, including HITRUST, NIST, DirectTrust, HIPAA, and SOC 2 (Type II), ISO.
  • Manage internal and external security audits, including evidence collection and preparation.
  • Oversee the evidence collection process for audits, working with third-party auditors for response submission.
  • Work closely with business development and legal to assist with security compliance requirements.
  • Assist with identifying and implementation of international security compliance.
  • Policy and Procedure Development:
  • * Develop, review, and update information security policies and procedures, such as the Vulnerability and Patch Management Procedure and Data Center Access Procedure.
  • Ensure policies are communicated and enforced throughout the organization, including through security awareness training.
  • Security Operations:
  • * Participate in the day-to-day operations of the security team and manage security tools and technologies, including Check Point, SentinelOne, and intrusion detection systems.
  • Monitor security alerts and respond to incidents, including phishing attempts reported through the various tools.
  • Team Management:
  • * Lead and mentor the security team, reviewing tasks and responsibilities working closely with the DevOps team members.
  • Vendor Management:
  • * Evaluate and manage security vendors, including VDA Labs, KnowBe4, reviewing security agreements and contracts.
  • Perform vendor audits and maintain required documentation.
  • Security Awareness:
  • * Develop and deliver security awareness training to employees, including utilizing KnowBe4, TalentLMS and internal training programs.
  • Provide onboarding training for new employees.
  • Budgeting and Planning:
  • * Develop and manage the security budget, planning and prioritizing security projects, including funding for tools and conferences.
  • Sales and Business Development:
  • * Perform first pass responses to RFI/RFP for new business deals working closely with the sales team

Required Qualifications

  • Education:

Bachelor's degree or equivalent work experience.

  • Experience:
  • * 10+ years of experience as a CISO or similar role, with at least 3 years of security-related leadership.
  • Proven background in systems administration.
  • Experience leading teams.
  • Certifications:
  • * Certified Information Systems Security Professional (CISSP) required.
  • Skills & Knowledge:
  • * Expertise in vulnerability testing, penetration testing, and developing security practices.
  • Knowledge of standards-based architecture, compliance monitoring, and enforceability.
  • Strong leadership skills with the ability to motivate and guide teams.
  • Experience in healthcare or other highly-regulated environments.

Preferred Qualifications

  • Experience in healthcare or other highly-regulated industries.

Why Join Us? At MIE and Enterprise Health, we offer more than just a job. We provide an environment where innovative thinking is encouraged, teamwork is valued, and growth is fostered. Our comprehensive benefits package includes:

  • Competitive compensation
  • Comprehensive benefits package including medical/dental/vision insurance
  • 401k with company match
  • Unlimited Paid-Time off
  • Quarterly bonus program
  • Flexible work schedule
  • Remote work

Medical Informatics Engineering and Enterprise Health are equal-opportunity employers. We celebrate diversity and are committed to creating an inclusive environment for all employees. Apply tot his job Apply To this Job

You might also like

Senior Investment Director

100% Remote Full-time

Associate, Risk/Compliance

100% Remote Full-time

Executive Vice President and Chief Financial and Business Strategy Officer

100% Remote Full-time

Chief Strategy Officer, fundraising focus

100% Remote Full-time

LPN- Adverse Drug Events, Accredo- Work from Home

100% Remote Full-time

GTM CIO US Public Sector (PS) Director

100% Remote Full-time

Mechanical Claims Adjuster (Remote) 5000 South Fwy Fort Worth, TX 76115

100% Remote Full-time

Cigna EHE Health Coach

100% Remote Full-time

LPN Telephonic Care Coordinator 10:30am - 7pm EST - Evernorth - Work at home United States Work at Home

100% Remote Full-time

Ciox Health – Health Information Specialist I (Hybrid – Neptune, NJ) – Neptune City, NJ

100% Remote Full-time

Experienced Work-at-Home Customer Service Representative – Full-Time & Part-Time Opportunities

100% Remote Full-time

Sr. Sales Executive, Enterprise

100% Remote Full-time

Experienced Social Media Sales Representative – Remote Opportunity for Latin America Residents to Excel in USD-Based Sales Careers with arenaflex

100% Remote Full-time

Site Reliability Engineer

100% Remote Full-time

Content Localization Editor, English Education Videos (Australia) (Freelance)

100% Remote Full-time

Application Developer - ACCLiiVE - Remote

100% Remote Full-time

Experienced Remote Customer Service Representative – Delivering Exceptional Support and Account Management Services

100% Remote Full-time

Entry-Level Virtual Account Coordinator

100% Remote Full-time

Join Today: XDA - Computing Product Reviewer

100% Remote Full-time

Experienced Customer Success Manager - Public Sector: Unlocking Enterprise Value with arenaflex Signature Success

100% Remote Full-time