Healthcare Business Information Security Officer

Full Time
Remote
Posted
Job description

SUMMARY

The Business Information Security Officer leads the successful delivery of security initiatives across several information security domains for ACM Global Laboratories. In conjunction with the CIO, the Business Information Security Officer serves as a trusted security advisor to lines of business across the organization. This individual will identify, assess and execute remediation/mitigations plans to minimize security risks while partnering with business leaders to ensure they are making decisions with Security in mind.

STATUS: Full-time

LOCATION: Remote

DEPARTMENT: Information Technology

SCHEDULE: Days

ATTRIBUTES:

  • Experience working with senior management, third parties, project managers and business subject matter experts (SMEs)
  • Strong written and verbal communication skills across all levels of the organization.
  • Capable of working with diverse teams and promoting an enterprise-wide positive security culture.
  • Demonstrates a working knowledge of NIST, HITRUST and ISO Cybersecurity Frameworks.
  • Knowledge of regulatory requirements and industry specific mandates to minimally include HIPAA/HITECH, FDA, EU/UK GDPR, and State Breach Disclosure.
  • Adept at understanding business focus and processes and ability to inject cybersecurity into the business through teamwork and influence.
  • Strong project management, multitasking and organizational skills.
  • Ability to work effectively with diverse teams and varying personalities, and adapt management style to effectively reach mutually beneficial outcomes.
  • Able to attain and preserve credibility with the team through sustained industry knowledge.
  • Applicable knowledge of national and global cybersecurity policies, regulations and security frameworks.
  • Demonstrated understanding and comprehension of a wide range of cybersecurity solutions.

RESPONSIBILITIES:

  • Implementation. Design, implement, maintain and document a complex multi-dimensional healthcare-specific compliance frameworks to meet client requirements, and work closely with security leadership to implement cybersecurity policies and practices. Identify and document threats and vulnerabilities that may impact the business and address them regularly with business units. Develop and track corrective actions for audit and assessment findings. Assist in creation and management of Information Security initiatives and service delivery dashboards and newsletters or similar awareness materials.
  • Advise. Act as a liaison with internal and external resources to ensure cybersecurity practices are built into business unit initiatives for the entire lifecycle to best maintain alignment with industry-accepted IT security standards. Ensure that vendors work closely with security leadership to draft and implement cybersecurity policies. Liaise with RRH IS&T CISO and ACM CIO to ensure identified IT security risks are prioritized and remediated based on agreed timelines. Verify security content training initiatives and internal/external communication are conducted regularly.
  • Manage. Work with the CIO to inventory the current state of the organization’s disaster recovery and business continuity infrastructure, providing advice when working with leaders for business and cybersecurity resiliency. Assist in the development and testing of disaster recovery / contingency plans and continuity of operation plans for multiple sites and affiliates. Manage the ACM and DRUGSCAN IT security risk management registry to include audit and assessment findings. Develop and support the integration of processes and procedures for secure application development, security risk management, and effective risk assessment practices.

MINIMUM QUALIFICATIONS:

  • Bachelor’s Degree in Information technology, Computer Science, Engineering or related fields required.
  • 5 years’ of information technology and/or cybersecurity experience required.

REQUIRED LICENSURE/CERTIFICATION:

  • Certified Information Security Manager (CISM) or Certified Information Systems Security Professional (CISSP) or Certified in Risk & Information Systems Control (CRISC) or Certified Information Systems Auditor (CISA) required.

Job Type: Full-time

Benefits:

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Employee discount
  • Health insurance
  • Life insurance
  • Paid time off
  • Referral program
  • Retirement plan
  • Tuition reimbursement
  • Vision insurance

Schedule:

  • Monday to Friday

Education:

  • Bachelor's (Required)

Experience:

  • Information security: 5 years (Preferred)
  • Healthcare Compliance: 5 years (Preferred)

License/Certification:

  • CISSP (Preferred)

Work Location: Remote

blackflymedia.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, blackflymedia.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, blackflymedia.com is the ideal place to find your next job.

Intrested in this job?

Related Jobs

All Related Listed jobs