Conduct enterprise risk assessments and develop mitigation strategies
Ensure compliance with federal, state, and industry regulations governing PII, PHI, and other sensitive data
Coordinate security audits, vendor risk assessments, and penetration testing
Integrate security into business processes, product development, and IT operations, including DevSecOps practices
Serve as the primary escalation point for security events, coordinating containment, investigation, and post-incident reviews
Serve as a trusted advisor to executive leadership on security posture, risk, and enterprise resilience
Define and execute the company’s security strategy aligned with business objectives
Lead major incident response efforts, including executive and board-level communications
Partner with IT, DevOps, and business units to embed security into technology, systems, and business processes
Manage SOC operations, threat detection, and secure design of systems, applications, and cloud environments (AWS, Azure)
Ensure adherence to leading security and compliance frameworks, including HIPAA, HITECH, FedRAMP, SOC 2, ISO 27001, and PCI DSS
Provide technical consultation and training to IT and business teams on secure design and operational practices
Foster a culture of security awareness through focused training programs
Requirements
Minimum of 10 years of experience in cybersecurity, with deep expertise in healthcare regulations such as HIPAA, HITECH, and HITRUST
Equivalent experience or a degree in cybersecurity, information systems, or a related field
Advanced certifications (e.g., CISSP, CISM) or degrees are highly desirable
Proven success in shaping and executing security strategies and initiatives that improve patient data protection, regulatory alignment, and secure care delivery
Strong executive communication and facilitation skills, with experience leading workshops, building consensus, and influencing senior stakeholders
Demonstrated ability to lead cross-functional engagements, drive alignment, and proactively contribute to strategic opportunities
Familiarity with Generative AI (e.g., Copilot, Gemini) and its implications for security, governance, and risk management
Experience with agile methodologies, design thinking, and collaborative solution development
Ability to conduct market research and translate insights into actionable security strategies and content
Strong collaboration, influencing, and negotiation skills, with a relentless focus on customer success
Ability to work in a fast-paced, dynamic environment where initiative and assertiveness are key
Passion for mentoring, sharing knowledge, and contributing to a culture of continuous learning
Research and evaluate emerging privacy technologies from academia and industry, contributing to open-source tools and AI privacy standards
Act as consultant and advocate for privacy best practices as central to our mission of Responsible AI
Preferred: experience embedding security into developer culture and broad security domain knowledge such as Red Teaming, Purple Teaming, Vulnerability Research, and Exploitation
Preferred: Master’s degree in Information Systems Engineering, Computer Science, Engineering, Information Security, Cyber Security, Information Assurance, or related field
Security Governance Manager at WEBTOON responsible for IT and Security governance framework. Collaborating with Legal, Product, and Engineering teams in Los Angeles headquarters.
Manager of Cybersecurity leading the company's cybersecurity initiatives at Commonwealth Fusion Systems. Responsible for security policies and team management to protect information assets from cyber threats.
Principal Cloud Operations Developer at AVEVA enhancing Cloud security and leading deployment process improvements. Collaborating with development teams to ensure operational security, stability and scalability.
Responsable cybersécurité gérant la sécurité informatique de l'entreprise. Évaluant la conformité des systèmes d'information et pilotant la feuille de route cybersécurité.
Information Security Officer ensuring legal and cybersecurity compliance across IoT product development at Daikin. Supporting development teams and managing security awareness training.
Security employee monitoring site safety at Newell Brands, ensuring compliance with safety protocols. Supports services in emergency response and monitors site safety continually.
Cybersecurity Intern assisting the Cyber GRC team and Project Manager at HF Sinclair. Gaining hands - on experience in Security Operations and Cyber Risk Management during the summer of 2026.
Associate Director overseeing Network Security Governance at Novartis in Prague or Hyderabad. Driving cyber maturity, risk management, and governance frameworks for secure network environments.
Senior Associate Security Consultant at NTT DATA making a difference through technical excellence in diverse teams. Collaborating on innovative technology and consulting projects in security consultancy.
Senior Associate Systems Integration Specialist at NTT DATA responsible for client security solutions. Leading installations and troubleshooting break/fix incidents in a hybrid work environment.