Назад
Company hidden
обновлено 5 дней назад

Head of IT & Security

160 000 - 200 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
head
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Head of IT & Security (Security Governance, Compliance, and IT Operations): Building and leading NexHealth’s security, compliance, privacy, and IT programs for healthcare infrastructure with an accent on SOC 2, HIPAA, cloud security, vendor risk, and incident response. Focus on establishing a security function from a near-zero baseline, influencing engineering security practices, and building a scalable team.

Location: San Francisco, California, United States or Seattle, Washington, United States

Base salary: $160,000–$200,000 USD annually

Company

hirify.global is building healthcare infrastructure that connects patients, providers, developers, and fragmented EHR systems through software, APIs, payments, and patient experiences.

What you will do

  • Own security governance, compliance, IT operations, risk management, privacy operations, and business continuity programs end to end.
  • Serve as Information Security Officer and Privacy Officer for SOC 2 and HIPAA, maintaining policies, mapping controls, collecting evidence, and managing the external audit relationship.
  • Set standards for application security, vulnerability management, AWS and cloud security, audit logging, access controls, and incident response.
  • Build the IT and workforce security function across endpoints, identity, SaaS administration, phishing simulations, training, and facilities security.
  • Lead vendor security assessments, BAA execution, ongoing oversight, Trust Center materials, and subprocessor disclosures.
  • Hire a Staff-level IT individual contributor within the first year and grow the function.

Requirements

  • 8+ years of relevant security experience, including 3+ years in a security leadership role.
  • Experience building a security program from a near-zero baseline and owning recurring external audits such as SOC 2, ISO, PCI, or HITRUST.
  • Software engineering background with the ability to review pull requests, evaluate cloud configurations, and engage Engineering on technical security matters.
  • Hands-on experience with SIEM, MDR, IDS/IPS, WAF, DLP, and vulnerability scanning tools.
  • Experience hiring and developing senior security or IT individual contributors.
  • Must be located in San Francisco or Seattle.

Culture & Benefits

  • Full medical, dental, and vision coverage of up to 100%.
  • 401(k), commuter benefits, and flexible paid time off.
  • Stock options may be included in the total compensation package.
  • Work focused on improving healthcare access and patient experiences.
  • Culture centered on ownership, first-principles thinking, direct communication, trust, and solving difficult customer problems.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →