Director, Information & Cyber Security (32561)

GI Alliance

Southlake (TX)

On-site

USD 180,000 - 260,000

Full time

18 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

GI Alliance is seeking an Identity and Access Management Director to lead strategy, governance, and operations for the enterprise IAM program. The role focuses on secure, compliant access to critical systems, driving modern identity principles including Zero Trust, automation, and cloud-based services.

The candidate will partner with executives and IT teams to align identity security with business priorities, oversee PAM and IGA initiatives, and mentor cross-functional teams to deliver secure,

Qualifications

  • Bachelor's degree in Information Security, Cybersecurity, Information Technology, Business, Risk Management, Healthcare Administration, or a related field.
  • 10+ years of progressive experience in Governance, Risk & Compliance, Information Security, Internal Audit, or Cybersecurity.
  • 5+ years of leadership experience managing GRC, Compliance, Risk, or Security teams.
  • Experience within the healthcare, medical device, healthcare technology, payer, provider, or life sciences industry.
  • Demonstrated experience leading enterprise compliance and risk management programs.

Responsibilities

  • Lead enterprise-scale IAM transformation programs, providing strategic direction for IGA and PAM initiatives across complex client environments.
  • Oversee the design, architecture, and governance of IAM solutions addressing identity lifecycle management, privileged access controls, compliance, and security requirements.
  • Serve as the executive technical advisor and escalation point for complex identity governance, privileged access, application onboarding, and modernization challenges.
  • Lead and mentor cross-functional teams of technical specialists while fostering delivery excellence, innovation, and growth across IAM programs.
  • Partner with executive stakeholders, security leaders, application owners, and business executives to develop IAM roadmaps and establish leading practices for governance and risk management.
  • Support business development efforts through solution development, proposal creation, thought leadership, and identification of opportunities to expand identity security, governance, and privileged access services within existing and prospective accounts.
  • Act with integrity, professionalism, and personal responsibility to uphold a respectful and courteous work environment.
  • Establish IAM frameworks, security policies, standards, and procedures aligned with organizational objectives.

Skills

Executive leadership
Strategic planning
Regulatory interpretation
Cross-functional collaboration
Audit readiness

Education

Bachelor's degree in Information Security / related field
Master's degree in Cybersecurity / Information Systems / Healthcare admin or related

Job description

Incident response governance

Company Conformance Statements
  • Perform quality work within deadlines with or without direct supervision.
  • Interact professionally with other employees, customers and suppliers.
  • Work effectively as a senior contributor on all projects.
  • Work independently while understanding the necessity for communicating and coordinating team efforts with departments and organizations.
Position Summary

The Identity and Access Management Director directs the strategy, governance, and operational execution of the enterprise Identity and Access Management (IAM) program to ensure secure, reliable, and compliant access to critical business systems, applications, and data. Leads the evolution of identity services, access governance, privileged access management, and authentication technologies to support organizational growth, regulatory requirements, and cybersecurity objectives. Partners with executive leadership, business stakeholders, infrastructure teams, application owners, and security functions to align identity capabilities with business priorities while enabling a secure and frictionless user experience. Drives the adoption of modern identity principles, including Zero Trust, automation, and cloud-based identity services, to strengthen the organization's security posture and operational efficiency.

Responsibilities/Duties/Functions/Tasks

Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Key Responsibilities
  • Lead enterprise-scale Identity Access Management (IAM) transformation programs, providing strategic direction for Identity Governance Administration (IGA) and Privileged Access Management (PAM) initiatives across complex client environments
  • Oversee the design, architecture, and governance of IAM solutions leveraging Identity technologies to address identity lifecycle management, privileged access controls, compliance, and security requirements
  • Serve as the executive technical advisor and escalation point for complex identity governance, privileged access, application onboarding, and modernization challenges, driving successful outcomes and mitigating security and operational risks
  • Lead and mentor cross-functional teams of technical specialists while fostering delivery excellence, innovation, and growth across IAM programs
  • Partner with executive stakeholders, security leaders, application owners, and business executives to develop IAM roadmaps, align identity security strategies with business objectives, and establish leading practices for governance and risk management
  • Support business development efforts through solution development, proposal creation, thought leadership, and identification of opportunities to expand identity security, governance, and privileged access services within existing and prospective accounts
  • Act with integrity, professionalism, and personal responsibility to uphold a respectful and courteous work environment
  • Establish IAM frameworks, security policies, standards, and procedures aligned with organizational objectives.
Regulatory Compliance
  • Lead compliance initiatives as they relate to IMA in the context of healthcare regulations, including HIPAA Privacy, Security, and Breach Notification Rules.
  • Ensure IAM compliance with applicable federal, state, and industry regulations affecting healthcare organizations.
  • Participate in internal and external compliance audits.
  • Participate in regulatory examinations and respond to audit findings.
  • Monitor regulatory changes and assess organizational impact.
Security Frameworks & Controls
  • Develop and maintain security controls aligned with:
    • NIST Cybersecurity Framework (CSF)
    • NIST SP 800-53
    • NIST SP 800-171
    • SOC 2 Trust Services Criteria
    • Sarbanes-Oxley (SOX) IT General Controls (ITGCs)
  • Evaluate control effectiveness and recommend improvements in the context of IAM
  • Partner with IT and Security teams to ensure technical controls support regulatory and business requirements.
Audit & Assurance
  • Participate and assist TSA GRC in internal and external audits including HIPAA, SOC 2, SOX, and customer security assessments.
  • Track remediation efforts through completion.
Qualifications
  • Bachelor's degree in Information Security, Cybersecurity, Information Technology, Business, Risk Management, Healthcare Administration, or a related field.
  • 10+ years of progressive experience in Governance, Risk & Compliance, Information Security, Internal Audit, or Cybersecurity.
  • 5+ years of leadership experience managing GRC, Compliance, Risk, or Security teams.
  • Experience within the healthcare, medical device, healthcare technology, payer, provider, or life sciences industry.
  • Demonstrated experience leading enterprise compliance and risk management programs.
Candidates Must Possess Strong Working Knowledge Of:
  • HIPAA Privacy Rule, Security Rule, and Breach Notification Rule
  • NIST Cybersecurity Framework (CSF)
  • NIST Special Publication 800-53
  • SOC 2 Trust Services Criteria and audit readiness
  • Sarbanes-Oxley (SOX), including IT General Controls (ITGCs)
  • Security governance and policy development
  • Audit management and regulatory examinations
  • Incident response governance
Preferred Qualifications
  • Master's degree in Cybersecurity, Information Systems, Business Administration, Healthcare Administration, or related discipline.
  • Professional certifications such as:
    • Certified Information Systems Security Professional (CISSP)
    • Certified Information Security Manager (CISM)
    • Certified in Risk and Information Systems Control (CRISC)
    • Certified Information Systems Auditor (CISA)
    • Certified in Healthcare Privacy and Security (CHPS)
    • Healthcare Information Security and Privacy Practitioner (HCISPP)
Key Competencies
  • Executive communication and presentation skills
  • Strategic leadership
  • Regulatory interpretation and implementation
  • Enterprise risk management
  • Analytical problem-solving
  • Cross-functional collaboration
  • Program and project management
  • Audit readiness and remediation
  • Policy development and governance
  • Change management
Equipment Operated:

This role routinely uses standard office equipment such as computers, phones, and fax machines.

Work Environment:

This job operates in professional office environments.

Physical Requirements:

While performing the duties of this job, the employee is occasionally required to stand; walk; sit; use hands to finger, handle, or feel objects, tools or controls; reach with hands and arms; climb stairs; balance; stoop, kneel, crouch or crawl; talk or hear; and taste or smell. The employee must occasionally lift or move up to 50 pounds. Specific vision abilities required by the job include close vision, distance vision, color vision, peripheral vision, depth perception and the ability to adjust focus.

Education/Experience:
  • Bachelor s degree in computer science or other technical/scientific discipline.
  • 10+ years related work including 5+ years as in security.
  • 2+ years in a dedicated information security role at a senior level including cybersecurity experience specializing in enterprise security optimization
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, and NIST.
  • CISSP or equivalent certification required.
Essential Skills And Experience:
  • Leadership: a demonstrated ability to lead people and get results through others.
  • Strategy and planning: an ability to think ahead and plan over a 12-24 month time span.
  • Demonstrated understanding of Information Security best practices.
  • Problem analysis and problem resolution at both a strategic and functional level.
  • Experience in developing and deploying security specific solutions including the automation of repeatable security tasks and controls
  • Experience with security vulnerability and penetration tools, remediation, and processes.
  • Strong customer orientation.
  • Must be willing to travel
Performance Requirements:
  • Excellent communication skills, both written and verbal.
  • Proficient technical (computer) skills.
  • Ability to multi-task and prioritize.
  • Self-motivated with initiative.
  • Strong sense of ethics.
  • Ability to manage conflict and resolve problems.
Equipment Operated:

This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets and fax machines.

Work Environment:

This job operates in professional office environments.

Physical Requirements:

While performing the duties of this job, the employee is occasionally required to stand; walk; sit; use hands to finger, handle, or feel objects, tools or controls; reach with hands and arms; climb stairs; balance; stoop, kneel, crouch or crawl; talk or hear; and taste or smell. The employee must occasionally lift or move up to 30 pounds. Specific vision abilities required by the job include close vision, distance vision, color vision, peripheral vision, depth perception and the ability to adjust focus.

Equal Opportunity Statement

GI Alliance is an Equal Opportunity Employer. We are committed to creating an inclusive, welcoming, and equitable work environment. Our company values and celebrates the diversity of our physicians, staff and patients. We firmly believe our service is greatly enriched by our diversity of thought, experience, perspective, culture, and background.

EEO/AA-M/F/disabled/protected veteran

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director, Information & Cyber Security
Director, Information & Cyber Security

Paycom • Southlake (TX)

On-site
USD 140,000 - 210,000
Cybersecurity Engineer
Cybersecurity Engineer

SSA Marine • Seattle (WA)

Hybrid
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+11
Sr Identity and Access Management Analyst
Sr Identity and Access Management Analyst

Chicago Bridge & Iron Company • The Woodlands (TX)

On-site
USD 100,000 - 130,000
Identity and Access Management Architect
Identity and Access Management Architect

Tata Consultancy Services • New York (NY)

On-site
USD 100,000 - 130,000
Head of Information Security
Head of Information Security

Grayson Search Partners • Nashville (TN)

On-site
USD 120,000 - 150,000
IAM Engineer-
IAM Engineer-

Associates Systems LLC • Irving (TX)

On-site
USD 120,000 - 160,000
Senior Security Advisor, Identity
Senior Security Advisor, Identity

MRO • United States

On-site
USD 120,000 - 150,000
Annual cash bonus
Comprehensive benefits offering
401(k) plan
Lead Information Security Analyst
Lead Information Security Analyst

Jobtailor • Arizona

Hybrid
USD 110,000 - 170,000
Sr. Identity and Access Management Analyst
Sr. Identity and Access Management Analyst

CB&I • The Woodlands (TX)

On-site
USD 120,000 - 170,000
Senior Director, IT Security
Senior Director, IT Security

Global Lending Services • Greenville (SC)

On-site
USD 120,000 - 170,000
Competitive base pay
Medical, dental, vision insurance
401K with employer match
+2