Director Information Security

Healthcare IS

Town of Montana (WI)

On-site

USD 150,000 - 210,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Fully remote

Job summary

Healthcare IS is seeking a Director of Information Security for a fully remote executive leadership role overseeing enterprise cybersecurity in a community healthcare setting. You will partner with executive leadership, IT, clinical departments, and operations to set strategy and reduce risk.

Responsibilities include governance, risk management, HIPAA compliance, incident response planning, and developing leadership dashboards for governance committees.

Qualifications

  • 8+ years of progressive information security or risk management experience.
  • Leadership experience within healthcare provider organizations.
  • Experience building or maturing an enterprise information security program.
  • Strong knowledge of HIPAA Security Rule and healthcare regulatory requirements.
  • Experience with EHR security environments and clinical technologies.
  • Familiarity with NIST CSF, CIS Controls, HITRUST, ISO 27001, and healthcare security best practices.
  • Proven ability to present strategy and risk to executives and governance bodies.

Responsibilities

  • Lead the enterprise information security strategy and long-term cybersecurity roadmap.
  • Build and mature a comprehensive security program aligned with a community healthcare organization.
  • Protect critical hospital systems, clinical applications, patient information, and enterprise technologies.
  • Develop and maintain security governance, policies, standards, and best practices.
  • Oversee enterprise risk assessments, vulnerability management, and remediation planning.
  • Ensure HIPAA Security Rule compliance and alignment with healthcare frameworks.
  • Partner with executive leadership to communicate security risks and priorities.
  • Develop executive dashboards, metrics, and reporting for governance committees.
  • Lead third-party risk management and vendor security reviews.
  • Direct incident response planning, business continuity, and disaster recovery preparedness.
  • Promote security awareness across clinical and non-clinical teams.
  • Collaborate with infrastructure, applications, clinical informatics, and operations teams.

Skills

Security leadership
HIPAA regulatory knowledge
EHR security experience
NIST/ISO frameworks
Stakeholder communication

Education

Bachelor's degree or equivalent

Job description

Remote | Community Healthcare Organization | Executive Leadership Opportunity


Protect the Technology That Supports Patient Care


An established, independent healthcare organization is seeking an experienced Director of Information Security to lead and advance its enterprise cybersecurity program.


This opportunity is ideal for a healthcare security leader who understands the unique challenges of protecting a hospital environment—where cybersecurity directly impacts patient care, clinical operations, regulatory compliance, and organizational resilience.


Unlike highly specialized security organizations, this role offers broad ownership across the entire security program. You'll work closely with executive leadership, IT, clinical departments, and operational leaders to develop strategy, strengthen security practices, reduce organizational risk, and foster a culture where cybersecurity is integrated into everyday healthcare operations.


If you've successfully led security initiatives within a community hospital, regional health system, or similarly sized healthcare organization, this is an opportunity to make a lasting impact while helping shape the future of information security.


What You'll Lead

As the organization's senior information security leader, you'll be responsible for advancing cybersecurity across both strategic planning and day-to-day operations.


Responsibilities include:



  • Lead the enterprise information security strategy and long-term cybersecurity roadmap

  • Build and mature a comprehensive security program aligned with the needs of a community healthcare organization

  • Protect critical hospital systems, clinical applications, patient information, and enterprise technologies

  • Develop and maintain security governance, policies, standards, and best practices

  • Oversee enterprise risk assessments, vulnerability management, and remediation planning

  • Ensure compliance with HIPAA Security Rule and recognized healthcare cybersecurity frameworks

  • Partner with executive leadership to communicate organizational security risks and strategic priorities

  • Develop executive dashboards, metrics, and reporting for leadership and governance committees

  • Lead third-party risk management and vendor security reviews

  • Direct incident response planning, business continuity, and disaster recovery preparedness

  • Promote security awareness throughout the organization by partnering with both clinical and non-clinical departments

  • Collaborate with infrastructure, applications, clinical informatics, and operational teams to ensure security is integrated into technology initiatives

  • Evaluate emerging cybersecurity threats and recommend practical solutions appropriate for a hospital environment


Why This Opportunity Stands Out


  • Fully remote executive leadership position

  • Opportunity to own and shape the organization's entire cybersecurity program

  • Highly visible role working directly with executive leadership

  • Significant influence across clinical, operational, and technology teams

  • Environment where decisions can be made quickly and your contributions have immediate impact

  • Opportunity to balance strategic leadership with meaningful operational involvement

  • Mission-driven healthcare organization committed to serving its community

  • Collaborative leadership culture where security is viewed as a business partner—not just a compliance function


We're Especially Interested In Professionals Who Have Experience In

We recognize that healthcare cybersecurity is different from other industries.


The strongest candidates will have experience working in hospital environments where security decisions directly support patient care, regulatory compliance, and clinical operations.


Experience with organizations such as:


  • Community hospitals

  • Independent healthcare systems

  • Regional medical centers

  • Critical access hospitals

  • Integrated delivery networks

  • Multi-hospital healthcare organizations with lean, collaborative IT teams


Candidates who have built or led security programs within small to mid-sized healthcare organizations are particularly encouraged to apply.


Ideal Background


  • 8+ years of progressive experience in information security, cybersecurity, or enterprise risk management

  • Leadership experience within a hospital, health system, or healthcare provider organization

  • Experience developing or maturing an enterprise information security program

  • Strong understanding of HIPAA Security Rule and healthcare regulatory requirements

  • Experience supporting electronic health record (EHR) environments and other mission-critical clinical technologies

  • Working knowledge of NIST Cybersecurity Framework, CIS Controls, HITRUST, ISO 27001, and healthcare security best practices

  • Experience leading governance, risk management, compliance, vulnerability management, and third-party security programs

  • Demonstrated success presenting cybersecurity strategy and organizational risk to executive leadership and governing bodies

  • Ability to balance strategic leadership with practical operational execution

  • Excellent communication and relationship-building skills across technical, clinical, and executive stakeholders

  • Bachelor's degree or equivalent experience required

  • CISSP, CISM, CRISC, HCISPP, or similar certifications preferred


Join an Organization Where Your Leadership Matters

This is an opportunity to lead cybersecurity in an organization where your work has a direct impact on protecting patient information, supporting clinical operations, and strengthening the technology that healthcare providers rely on every day.


If you're looking for a role where you can influence strategy, build meaningful relationships, and help shape the future of information security within a community-focused healthcare organization, we'd welcome the opportunity to connect.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager of Information Security
Manager of Information Security

The Intersect Group • United States

On-site
USD 120,000 - 180,000
Director of Cyber Security
Director of Cyber Security

Interactive Resources - iR • United States

On-site
USD 180,000 - 215,000
Chief Information Security Officer (CISO) | PAM Health Corporate
Chief Information Security Officer (CISO) | PAM Health Corporate

PAM Health • Plano (TX)

Hybrid
USD 150,000 - 200,000
Remote Director of Information Security — Healthcare
Remote Director of Information Security — Healthcare

Healthcare IS • Town of Montana (WI)

On-site
USD 150,000 - 210,000
Fully remote
Director Chief Information Security Officer
Director Chief Information Security Officer

The Security Executive Council • Montana

On-site
USD 130,000 - 180,000
Executive Director Cybersecurity
Executive Director Cybersecurity

The Security Executive Council • Miami (FL)

On-site
USD 100,000 - 130,000
Competitive salary
Health insurance
Professional development opportunities
Director, Information Security
Director, Information Security

Re-krut Services • Boston (MA)

On-site
USD 80,000 - 120,000
Director of Cyber Security
Director of Cyber Security

UT Medical • Knoxville (TN)

On-site
USD 180,000 - 280,000
VP Information Security
VP Information Security

The Security Executive Council • Dallas (TX)

On-site
USD 150,000 - 200,000
Competitive salary
Health insurance
Retirement plan
Head of Information Security
Head of Information Security

Grayson Search Partners • Nashville (TN)

On-site
USD 120,000 - 150,000