обновлено 5 дней назад
Head of IT & Security
160 000 - 200 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Head of IT & Security (Security Governance, Compliance, and IT Operations): Building and leading NexHealth’s security, compliance, privacy, and IT programs for healthcare infrastructure with an accent on SOC 2, HIPAA, cloud security, vendor risk, and incident response. Focus on establishing a security function from a near-zero baseline, influencing engineering security practices, and building a scalable team.
Location: San Francisco, California, United States or Seattle, Washington, United States
Base salary: $160,000–$200,000 USD annually
Company
is building healthcare infrastructure that connects patients, providers, developers, and fragmented EHR systems through software, APIs, payments, and patient experiences.
What you will do
- Own security governance, compliance, IT operations, risk management, privacy operations, and business continuity programs end to end.
- Serve as Information Security Officer and Privacy Officer for SOC 2 and HIPAA, maintaining policies, mapping controls, collecting evidence, and managing the external audit relationship.
- Set standards for application security, vulnerability management, AWS and cloud security, audit logging, access controls, and incident response.
- Build the IT and workforce security function across endpoints, identity, SaaS administration, phishing simulations, training, and facilities security.
- Lead vendor security assessments, BAA execution, ongoing oversight, Trust Center materials, and subprocessor disclosures.
- Hire a Staff-level IT individual contributor within the first year and grow the function.
Requirements
- 8+ years of relevant security experience, including 3+ years in a security leadership role.
- Experience building a security program from a near-zero baseline and owning recurring external audits such as SOC 2, ISO, PCI, or HITRUST.
- Software engineering background with the ability to review pull requests, evaluate cloud configurations, and engage Engineering on technical security matters.
- Hands-on experience with SIEM, MDR, IDS/IPS, WAF, DLP, and vulnerability scanning tools.
- Experience hiring and developing senior security or IT individual contributors.
- Must be located in San Francisco or Seattle.
Culture & Benefits
- Full medical, dental, and vision coverage of up to 100%.
- 401(k), commuter benefits, and flexible paid time off.
- Stock options may be included in the total compensation package.
- Work focused on improving healthcare access and patient experiences.
- Culture centered on ownership, first-principles thinking, direct communication, trust, and solving difficult customer problems.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
8 дней назад
Lead Security Engineer (AI)
200 000 - 300 000$
5 дней назад
Compliance & IT Manager (SOC 2/ISO 27001)
125 000 - 165 000$
6 дней назад
Associate Director, Cybersecurity & IT (Cybersecurity)
140 000 - 180 000$
6 дней назад
Staff Systems Engineer (Healthcare IT)
136 000 - 160 000$
6 дней назад
Lead Security Analyst - GRC (Cybersecurity)
138 000 - 215 625$
6 дней назад
Senior Compliance Manager (AI)
195 000 - 225 000$