Director, Security Governance

Beth Israel Lahey Health

Boston (MA)

On-site

USD 176,800 - 205,920

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Beth Israel Lahey Health seeks a Director of Security Governance, Risk & Compliance to lead the GRC function and partner with IT Security to manage an organization-wide risk program in a health-system setting.

Responsibilities include strategy, policy development, audits, training, and senior-management advisory on security controls and regulatory compliance. Role requires extensive healthcare IT security experience and leadership capabilities.

Qualifications

  • Bachelor’s degree required; Master’s degree in Law preferred.
  • 10+ years related work experience required with 3–5 years supervisory/management experience.
  • Experience in healthcare industry and information security program management essential.
  • Knowledge of information security technologies, medical records and patient privacy is required.

Responsibilities

  • Lead and manage the Governance, Risk and Compliance (GRC) function and partner with IT Security Leader on organization-wide risk management and security compliance programs.
  • Collaborate with executive leadership to establish a shared vision for information security and develop compliance programs.
  • Oversee IT Security Steering Committee, governance procedures, and policy development to strengthen security posture.
  • Provide risk-mitigating directives for projects with IT components and ensure security considerations are integrated into plans.
  • Develop, implement and deliver security training and awareness programs across the organization.
  • Coordinate internal/external audits using industry-standard methods to strengthen controls.
  • Investigate security incidents, develop remediation plans and drive resolutions with stakeholders.
  • Serve as a trusted security advisor to senior management and IT Shared Services and ensure policy alignment with regulatory requirements.
  • Stay current with IT security, governance, and compliance trends and participate in industry events.

Skills

Information security leadership
Governance & risk management
Stakeholder collaboration
Policy development

Education

Bachelor’s degree
Master’s degree in Law

Job description

Director of Security Governance, Risk & Compliance

When you join the growing BILH team, you're not just taking a job, you’re making a difference in people’s lives.

The Director of Security Governance, Risk & Compliance leads and manages the Governance Risk and Compliance (GRC) function and is responsible for partnering with the IT Security Leader in managing an organization-wide information risk management program, security compliance program and security awareness campaign. The Director partners with administrative and executive leadership to establish and manage a shared vision for information security and develop a compliance program to assess cybersecurity and information risks. Responsibilities include strategy, architecture, solutions design, program coordination and execution, awareness, outreach, policy and standard development, as well as reporting on information security program effectiveness.

Primary Responsibilities
  • Leads IT Security Governance, Risk and Compliance program (essential).
  • Collaborates with IT Security Leader on building a culture focused on proactive risk management and security best practices (essential).
  • Leads IT Security Steering Committee, infusing information security governance procedures that foster resiliency, raise awareness, govern policy and review security related activities (essential).
  • Provides clear risk mitigating directives for projects with IT components (essential).
  • Responsible for the development, implementation, and execution of BILH-wide information security training and awareness programs. Provides professional and technical training and direction for internal team members as well as external staff (essential).
  • Facilitates and participates in annual internal/external audits using industry standard security methods to strengthen internal security controls, procedures and policies (essential).
  • Investigates security incidents, develops remediation plans, and works with appropriate stakeholders to implement resolutions (essential).
  • Serves as a lead advisor on security matters to ensure appropriate levels of security are integrated in process designs and architecture; demonstrates ability to be a respected information security advisor to senior management, as well as to IT Shared Service team (essential).
  • Works with IT Security team in the development and acceptance of IT policies and procedures; ensures program standards follow applicable State and Federal regulatory requirements (essential).
  • Stays current with all relevant IT security and compliance issues, technologies, and requirements, as well as emerging best practices in IT program management, planning and governance; maintains professional and technical knowledge by attending industry workshops, conferences, and participating in personal and professional networks (essential).
  • Has the authority to direct and support employees’ daily work activities. Has the direct responsibility to undertake the following employment actions: hiring, termination, corrective action and performance reviews.
  • Direct Reports: 2‑3.
  • Indirect Reports: None.
Required Qualifications
  • Bachelor’s degree required. Master’s degree in Law preferred.
  • More than 10 years related work experience required and 3‑5 years supervisory/management experience required.
  • At least 10 years of varied information technology management experience is required, five years of which must be directly related to IT program management and planning as well as computer, information, and network security assessment, administration, and management.
  • Experience in the health care industry is essential along with knowledge about program management, information security technology, medical records, patient privacy and confidentiality.
  • Other key requirements include project planning and project management experience; advanced technical computer skills as required for technical support specific to functional area and related systems.
Pay Range

$176,800.00 USD - $205,920.00 USD

Vaccination Requirement

As a health care organization, we have a responsibility to do everything in our power to care for and protect our patients, our colleagues and our communities. Beth Israel Lahey Health requires that all staff be vaccinated against influenza (flu) as a condition of employment.

Equal Opportunity Employer

Equal Opportunity Employer/Veterans/Disabled

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director, Security Governance
Director, Security Governance

Anna Jaques Hospital • United States

On-site
USD 176,000 - 206,000
Director, Integration Initiatives
Director, Integration Initiatives

Beth Israel Lahey Health • Boston (MA)

On-site
USD 140,000 - 175,000
Executive Director- Neurosurgery
Executive Director- Neurosurgery

Beth Israel Lahey Health • Boston (MA)

On-site
USD 185,000 - 225,000
Executive Assistant
Executive Assistant

Beth Israel Lahey Health • Gloucester (MA)

On-site
USD 65,000 - 100,000
Manager, Nursing Operations
Manager, Nursing Operations

Beth Israel Lahey Health • Boston (MA)

On-site
USD 70,000 - 95,000
Director, Digital Experience
Director, Digital Experience

Beth Israel Lahey Health • Boston (MA)

On-site
USD 130,000 - 160,000
Assistant Nursing Director Cardiovascular OR
Assistant Nursing Director Cardiovascular OR

Beth Israel Deaconess Medical Center, Inc. • Boston (MA)

On-site
USD 150,000 - 220,000
Executive Director, Maintenance Operations
Executive Director, Maintenance Operations

Beth Israel Lahey Health • Boston (MA)

On-site
USD 150,000 - 225,000
Senior Program Manager
Senior Program Manager

Beth Israel Lahey Health • Boston (MA)

On-site
USD 95,000 - 135,000
Administrative Coordinator, Infectious Diseases
Administrative Coordinator, Infectious Diseases

Beth Israel Lahey Health • Burlington (MA)

On-site
USD 33,000 - 44,000