Head of IT & Security
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Head of IT & Security (Security Governance, Compliance, and IT Operations): Building and leading ’s security, compliance, privacy, and IT programs for healthcare infrastructure with an accent on SOC 2, HIPAA, cloud security, vendor risk, and incident response. Focus on establishing a security function from a near-zero baseline, influencing engineering security practices, and building a scalable team.
Location: San Francisco, California, United States
Salary: $160,000–$200,000 USD base salary
Company
is a healthcare technology company building an infrastructure platform that connects patients, providers, developers, and fragmented EHR systems through software, APIs, payments, and patient experiences.
What you will do
- Own security governance, compliance, privacy operations, IT programs, risk management, and business continuity planning.
- Serve as Information Security Officer and Privacy Officer for SOC 2 and HIPAA, managing policies, control mapping, evidence collection, and the external audit relationship.
- Set standards for application security, vulnerability management, AWS cloud security, audit logging, access controls, and workforce security.
- Build and develop the IT and workforce security function, including endpoints, identity, SaaS administration, phishing simulations, training, and facilities security.
- Manage vendor security assessments, BAAs, Trust Center content, subprocessors, incident response, breach determinations, and tabletop exercises.
- Hire a Staff-level IT individual contributor within the first year and expand the function over time.
Requirements
- 8+ years of relevant security experience, including 3+ years in a security leadership role building and scaling programs.
- Experience building a security program from a near-zero baseline and owning recurring external audits end to end.
- Software engineering background with the ability to review pull requests, evaluate cloud configurations, and engage engineering teams on technical security decisions.
- Hands-on experience with SIEM, MDR, IDS/IPS, WAF, DLP, and vulnerability scanning tools.
- Experience hiring and developing senior security or IT individual contributors and influencing operational change without direct authority.
- Work location: San Francisco, California, United States.
Culture & Benefits
- Medical, dental, and vision insurance with up to 100% coverage.
- 401(k) and commuter benefits.
- Flexible PTO and unlimited paid time off policy.
- Stock options may be included in the total compensation package.
- Culture centered on ownership, direct communication, first-principles thinking, customer focus, and solving difficult problems.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →