Disaster Recovery Lead

P32HS Point32Health Services Inc

Massachusetts

Hybrid

USD 118,000 - 177,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Total rewards package

Job summary

Point32Health seeks a Lead Information Security Analyst to align security solutions with business needs in Massachusetts and to bridge security practices with regulatory requirements. This role sits within the resilience program and will drive security maturity across the organization.

The position emphasizes DR/BC, incident management, and collaboration with technology and business stakeholders to improve controls and readiness.

Qualifications

  • Bachelor’s degree in a related field required; Master’s preferred.
  • 5–7 years of information technology security experience; 2–3 years in leadership or supervision.
  • Solid knowledge of security concepts, standards, and risk management; strong communication skills.

Responsibilities

  • Lead in planning, designing, assessing, and implementing strategic security program improvements.
  • Provide advanced information security consultation across policy, risk management, and remediation.
  • Ensure confidentiality, integrity, and availability of enterprise data and systems.
  • Design, implement, and administer security tools to reduce risk.
  • Create metrics and lead continuous improvement in security controls.

Skills

Information security concepts
BC/DR, cyber resilience
Regulatory compliance (HIPAA)
Communication skills
Project and program management

Education

Bachelor's degree in related field
Master's degree

Job description

Who We Are

Point32Health is a leading not-for-profit health and well-being organization dedicated to delivering high-quality, affordable healthcare. Serving nearly 2 million members, Point32Health builds on the legacy of Harvard Pilgrim Health Care and Tufts Health Plan to provide access to care and empower healthier lives for everyone. Our culture revolves around being a community of care and having shared values that guide our behaviors and decisions. We’ve had a long-standing commitment to inclusion and equal healthcare access and outcomes, regardless of background; it’s at the core of who we are. We value the rich mix of backgrounds, perspectives, and experiences of all of our colleagues, which helps us to provide service with empathy and better understand and meet the needs of the communities where we serve, live, and work. We enjoy the important work we do every day in service to our members, partners, colleagues and communities. Learn more about who we are at Point32Health.

Job Summary

The Lead Information Security Analyst works closely with technology colleagues and business leadership to align both technical and strategic cyber & information security solutions with business needs. The Lead Information Security Analyst will help bridge the gaps between security best practices, evolving technical landscape, regulatory requirements, and business expectations with system configuration, security processes, control effectiveness, and operational efficiency. This position will work to support the design and continued maturity of cyber & information security processes and will interact regularly with business and technology stakeholders at Point32Health and external entities, as appropriate. The Disaster Recovery Lead role reports into and is part of the overall resilience program. This role has on-call responsibilities as part of the overall Incident Management & Crisis Management framework and is a critical partner for technology owners.

  • Evolves and maintains the DR framework, plans, and standards
  • Ensures alignment with Business Continuity (BC) and Incident/Crisis Management
  • Coordinates DR testing, exercises, and continuous improvement
  • Tracks remediation of DR gaps and test findings
  • Reports DR readiness and maturity to leadership
  • Coordinates recovery and incident response activities
Job Description

DUTIES/RESPONSIBILITIES – what you will be doing (top five): Provides leadership in planning, designing, assessing, and/or implementing strategic security program improvements through: Providing advanced information security consultation for all aspects of information security, compliance, policy, risk management, and remediation Identifying process improvements and developing plans to meet or exceed security best practices Ensure the confidentiality, integrity, and availability of the information residing on or transmitted to/from/through the enterprise’s devices, servers, and other systems and data repositories. Providing technical expertise and administration of security solutions, where applicable Participate in the design, implementation, and administration of security tools to reduce risk Identifying technology trends and evolving social behavior to support the success of the business Oversee and maintain system consistency through regular audits Provide leadership and education colleagues; participate as an active member of the IT and security community at Point32Health to promote information sharing, respectful challenge, efficiency, control effectiveness, and program quality through continuous improvement Create meaningful and detailed metrics based on security needs Other duties and projects as assigned.

QUALIFICATIONS

Certification and Licensure

EDUCATION Required (minimum): Bachelor’s degree in a related field Preferred: Master’s degree

EXPERIENCE (minimum years required): 5-7 years of related work experience in the Information Technology discipline. Preferred: 5-7 years of experience in Disaster Recovery/Business Continuity/Technology Resilience, including at least 2-3 years in a leadership or supervisory position.

SKILL REQUIREMENTS: Broad knowledge of commonly used information security concepts, best practices, and standards Demonstrated expertise is at least two leading security & resilience areas, e.g., BC/DR, cyber resilience, cyber recovery, crisis management areas, e.g., privileged access management, enterprise identity & access management, cloud architecture, data loss prevention, security information & event manager, incident management, third-party vendor risk assessment, API security, network security, malware prevention, database masking, secure development, application security testing, multi-factor authentication schemes Self-directed; expected to identify and lead efforts to correct security controls and/or process improvements Strong collaboration, facilitation, and negotiation skills. Strong communication skills, both written and verbal. Ability to explain complex technical issues to non-technical colleagues and business executives Ability to troubleshoot and independently solve problems as they arise Familiarity with HIPAA Security Rule and other regulatory requirements Proven analytical and problem-solving abilities Project and program management planning and organizational skills Customer service focused Time management and prioritization

WORKING CONDITIONS AND ADDITIONAL REQUIREMENTS

Must be able to work under normal office conditions and work from home as required. Work may require simultaneous use of a telephone/headset and PC/keyboard and sitting for extended durations. May be required to work additional hours beyond standard work schedule.

DISCLAIMER

The above statements are intended to describe the general nature and level of work being performed by employees assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties and skills required of employees assigned to this position. Management retains the discretion to add to or change the duties of the position at any time.

Salary Range

$117,925.60 -$176,888.40

Compensation & Total Rewards Overview

The annual base salary range provided for this position represents a range of salaries for this role and similar roles across the organization. The actual salary for this position will be determined by several factors, including the scope and complexity of the role; the skills, education, training, credentials, and experience of the candidate; as well as internal equity. As part of our comprehensive total rewards program, colleagues are also eligible for variable pay. Eligibility for any bonus, commission, benefits, or any other form of compensation and benefits remains in the Company’s sole discretion and may be modified at the Company’s sole discretion, consistent with the law. Point32Health offers their Colleagues a competitive and comprehensive total rewards package which currently includes: Medical, dental and vision coverage Retirement plans Paid time off Employer-paid life and disability insurance with additional buy-up coverage options Tuition program Well-being benefits Full suite of benefits to support career development, individual & family health, and financial health For more details on our total rewards programs, visit https://www.point32health.org/careers/benefits/

Equal Employment Opportunity

We welcome all All applicants are welcome and will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Analyst (Red Team)
Information Security Analyst (Red Team)

Point32Health • Town of Canton (NY)

Hybrid
USD 91,000 - 137,000
Medical, dental and vision coverage
Retirement plans
Paid time off
+3
Information Security Analyst (Red Team)
Information Security Analyst (Red Team)

P32HS Point32Health Services Inc • Canton (MA)

Hybrid
USD 91,000 - 137,000
Medical, dental and vision coverage
Retirement plans
Paid time off
C&IS Portfolio and Program Manager
C&IS Portfolio and Program Manager

P32HS Point32Health Services Inc • Canton (MA)

On-site
USD 155,000 - 233,000
Medical, dental and vision coverage
Retirement plans
Paid time off
+4
Information Security Analyst (Red Team)
Information Security Analyst (Red Team)

Point32Health • Canton (MA)

On-site
USD 91,000 - 137,000
Sr Business Data Analyst
Sr Business Data Analyst

RiseMe • Massachusetts

Hybrid
USD 107,000 - 161,000
Medical, dental and vision coverage
Retirement plans
Paid time off
Manager Information Security and Risk Management – Enterprise Data Security
Manager Information Security and Risk Management – Enterprise Data Security

Highmark Health • Jefferson City (MO)

On-site
USD 129,000 - 215,000
Sr Business Data Analyst
Sr Business Data Analyst

Point32Health • United States

Hybrid
USD 107,000 - 161,000
Medical, dental and vision coverage
Paid time off
Tuition program
Info Security &Cybersecurity Engineer
Info Security &Cybersecurity Engineer

Capital District Physicians Health Plan Inc • City of Utica (NY)

On-site
USD 60,000 - 107,000
Info Security &Cybersecurity Engineer
Info Security &Cybersecurity Engineer

Capital District Physicians Health Plan Inc • City of Albany (NY)

On-site
USD 60,000 - 198,000
Info Security &Cybersecurity Engineer
Info Security &Cybersecurity Engineer

Capital District Physicians Health Plan Inc • Town of De Witt (NY)

On-site
USD 70,000 - 140,000