Manager of Security & IT

fabrichealth

United States

On-site

USD 160,000 - 175,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Medical benefits
Dental benefits
Vision benefits
Unlimited PTO
401(k) plan
Stock options
Bonuses

Job summary

FabricHealth seeks a Manager, Security and IT to lead our security program and corporate IT for a healthcare technology company handling PHI at scale. You will set policy, run security operations, and own corporate IT, hiring and guiding a small team.

You will partner with compliance on SOC2, HITRUST, and HIPAA requirements while staying hands-on across incident response, vendor reviews, and risk management. This dual-hat role balances strategy with practical delivery.

Qualifications

  • 7+ years of security experience with 2+ years in a leadership role.
  • Direct experience managing corporate IT operations: identity, endpoint, MDM, SaaS provisioning, helpdesk.
  • Strong application security or cloud security background and ability to lead a security engineer.
  • Experience operating in healthcare or regulated environments.
  • Familiarity with SOC2 and HIPAA; HITRUST a plus.
  • Experience building and growing a small function from a baseline.

Responsibilities

  • Lead the security program across application, security ops, IAM, endpoint, cloud, and vendor security.
  • Own corporate IT operations: identity platform, MDM, endpoint management, helpdesk, provisioning.
  • Hire and grow the team, starting with 1–2 reports and scale with the company.
  • Partner with compliance to feed evidence and operationalize SOC2, HITRUST, HIPAA requirements.
  • Lead security questionnaires and vendor security reviews with external partners.
  • Oversee incident response end-to-end and drive improvements.
  • Set policy and standards that engineering, product, and ops can follow.
  • Represent security in executive risk and investment discussions.

Skills

Leadership
Security operations
Identity & access management
Healthcare/regulatory
Vendor security

Tools

Okta
MDM
SaaS provisioning
SOC2
HIPAA

Job description

About the Role

We are looking for a Manager, Security and IT to lead Fabric's security program and corporate IT function. You will set security strategy, run security operations, and own corporate IT for a healthcare technology company that handles PHI at scale. You will hire and lead a small team, partner with the compliance program owner, and be the person who decides what security investments matter and what can wait.

This is a hands-on leadership role. You will set policy, but you will also be doing the work, running identity, owning the endpoint program, leading incident response, and reviewing vendors. We are not looking for someone who delegates everything; we are looking for someone who can build the program and then scale it.

What You'll Do

As the Manager of Security and IT, you will lead Fabric's security program and own corporate IT operations end to end. Your primary responsibilities will include:

  • Lead Fabric's security program across application security, security operations, identity and access management, endpoint security, cloud security, and vendor security.
  • Own corporate IT operations including identity platform (Okta or equivalent), MDM, endpoint management, helpdesk, hardware and SaaS provisioning.
  • Hire and grow the team. Start with 1-2 reports (an IT generalist and our application security engineer), build out as the company scales.
  • Partner with the owner of our compliance program to feed evidence, implement controls, and operationalize SOC2, HITRUST, and HIPAA requirements without bottlenecking either side.
  • Lead customer security questionnaire responses and vendor security reviews. You are the person who can speak to a CISO at a health system and earn their trust.
  • Own incident response end-to-end: detection, triage, response, post-mortem, and the improvements that follow.
  • Set security policy and standards that engineering, product, and operations can actually follow.
  • Represent security in executive conversations about risk, investment, and tradeoffs.
Why You Might Be a Good Fit
  • You have 7+ years of security experience including 2-3 years in a security leadership role and direct hands-on time across security operations.
  • You have actually run corporate IT, not just had it report to you. You know what good identity hygiene looks like, you have debugged endpoint issues yourself, you have handled an offboarding crisis at 9pm.
  • You can do both: set the program and do the work. This is not a delegate-everything role at this stage.
  • You think identity-first. Most security failures route through identity, and you build defenses with that as the starting assumption.
  • You have worked in healthcare or another regulated industry where the rules genuinely matter and audits are part of the rhythm.
  • You can talk to engineers without losing them and to executives without confusing them.
This Might Not Be The Right Fit If...
  • You want a pure CISO seat where you set policy and someone else implements. We are too early for that.
  • You have not actually run corporate IT before. Reporting to you is not the same as having done the work.
  • You are uncomfortable being the security AND IT person. This is a dual-hat role and stays that way until we are larger.
  • You need a fully built program. We have foundations but not maturity; you will be building.
Your Qualifications
  • 7+ years of security experience with at least 2 years in a security leadership or management role.
  • Direct experience managing corporate IT operations: identity, endpoint, MDM, SaaS provisioning, helpdesk.
  • Strong application security or cloud security background. You will partner closely with our application security engineer and need to be able to lead them, not just manage them.
  • Experience operating in a healthcare or regulated industry environment.
  • Working knowledge of SOC2 and HIPAA frameworks. HITRUST familiarity is a plus.
  • Manager experience with 1-3 direct reports, ideally including building a function from a small base.
Bonus Points
  • Hands-on experience with Okta or another modern IAM/SSO platform.
  • AWS or GCP cloud security depth.
  • Prior incident response leadership at a healthcare or regulated company.
  • HITRUST or NIST 800-66 specific familiarity.
  • Experience working with external auditors and assessors.
The national pay range for this role is $160,000.00 - $175,000.00 per year. Actual compensation will be determined by factors such as the candidate's geographic market, experience, skills, and qualifications. Certain roles may also be eligible for additional compensation, including a comprehensive benefits package such as medical, dental, vision, unlimited PTO, and a 401(k) plan, stock options and bonuses. If your compensation requirement is greater than our posted range, please still consider applying; a determination can be made based on unique qualifications. Expected compensation ranges for this role may change over time.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior AI AppSec Engineer
Senior AI AppSec Engineer

fabrichealth • United States

On-site
USD 130,000 - 160,000
Health benefits
401(k) plan
Security & IT Leader, Healthcare Tech
Security & IT Leader, Healthcare Tech

fabrichealth • United States

On-site
USD 160,000 - 175,000
Medical benefits
Dental benefits
Vision benefits
+4
Senior Software Engineer, Virtual Care Platform
Senior Software Engineer, Virtual Care Platform

Fabric • United States

On-site
USD 140,000 - 170,000
Medical, dental, vision
Unlimited PTO
401(k) plan
+1
Senior Software Engineer (Provider Directory & Scheduling)
Senior Software Engineer (Provider Directory & Scheduling)

Fabric • New York (NY)

On-site
USD 140,000 - 170,000
Medical insurance
Dental insurance
Vision insurance
+3
Technical Solutions Engineer
Technical Solutions Engineer

fabrichealth • United States

On-site
USD 140,000 - 170,000
Medical, dental, vision benefits
401(k) with stock options
Unlimited PTO
Senior Director of Payer Sales
Senior Director of Payer Sales

Fabric • United States

On-site
USD 180,000 - 220,000
Medical, dental, vision
Unlimited PTO
401(k) plan
+2
Software Engineer - Opportunistic
Software Engineer - Opportunistic

fabrichealth • New York (NY)

On-site
USD 70,000 - 225,000
Medical insurance
Dental insurance
Vision insurance
+4
Software Engineer - Opportunistic
Software Engineer - Opportunistic

Fabric • New York (NY)

On-site
USD 70,000 - 225,000
Medical, Dental, Vision insurance
Unlimited PTO
401(k) plan
+2
Security Engineer
Security Engineer

Candid Health • San Francisco (CA)

On-site
USD 180,000 - 258,000
Senior Product Designer
Senior Product Designer

Fabric • New York (NY)

On-site
USD 110,000 - 130,000
Medical benefits
Dental benefits
Vision benefits
+4