Talent.com
Director Business Information Security Officer
Director Business Information Security OfficerSurescripts • Minneapolis, MN, United States
serp_jobs.error_messages.no_longer_accepting
Director Business Information Security Officer

Director Business Information Security Officer

Surescripts • Minneapolis, MN, United States
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Surescripts serves the nation through simpler, trusted health intelligence sharing, in order to increase patient safety, lower costs and ensure quality care . We deliver insights at critical points of care for better decisions - from streamlining prior authorizations to delivering comprehensive medication histories to facilitating messages between providers.

Job Summary :

The Director Business Information Security Officer (BISO) reports to the VP, Chief Information Security Officer (CISO) and acts as the primary liaison between Surescripts business units and the Information Security team. The BISO is responsible for understanding the unique business needs and risks of the organization and aligning them with security strategies and initiatives. The BISO plays a critical role in ensuring new products are launched with information security requirements embedded that align with company and information security policies and standards.

The BISO will aid in the development, implementation and awareness of information security policies, manage risk, and ensure compliance with regulatory requirements. The BISO plays a crucial role in fostering a culture of security awareness and ensures that security measures are integrated into business processes. The BISO will be responsible for day-to-day operations to support and augment the CISO's overall responsibilities. The BISO plays a key leadership role in supporting the business and external customers. The BISO ensures business decisions are not obstructed by cybersecurity but instead are made using sound security principles and supporting corporate security policies and plans.

Responsibilities :

  • Serve as a trusted advisor to the business on information security matters.
  • Work closely with Information Security leadership overseeing Identity and Access Management, Fraud and Crisis Management, merger and acquisition activities and any new business initiatives.
  • Keep abreast of current activity within the IAM and Fraud and Crisis teams and partner with team members for success.
  • Foster strong, collaborative relationships with internal business partners and external entities to maintain a strong network.
  • Enforce and influence strong security culture set forth by the CISO, ensuring uniformity across business units and employees.
  • Advise organization on enterprise-wide process and technology security recommendations.
  • Proactively gather and share pertinent information to effectively lead / engage in daily information security operations.
  • Lead the development and execution of crisis management plans and procedures.
  • Collaborate with external health care technology vendors, pharmacy partners, law enforcement, governmental entities and / and IT teams to ensure secure e-prescribing processes are being followed.
  • Assist with creating the Information Security department budget, monitoring expenditures, and ensuring alignment with the overall department budget.
  • Review customer contracts for appropriate information security language and requirements in partnership with Commercial Legal and Procurement.
  • Hold security leadership and teams accountable to consistently learn and share advanced knowledge and practices that promote excellence with the information security teams.
  • Maintain an up-to-date level of knowledge relating to security threats, vulnerabilities, and mitigations set forth to reduce the corporate attack surface.
  • Lead security projects and ensure they are delivered on time and within budget.
  • Proactively identify and remove complexity and obstacles that hinder efficient security controls enterprise wide.
  • Stay abreast of new laws, regulations, and standards, and assess their impact to the business.
  • Perform security due diligence for mergers, acquisitions, divestitures, and any new business initiatives.
  • Serve as the CISO representative when the CISO is not available, including making decisions usually made by the CISO.

Qualifications : Basic Requirements :

  • Bachelor's degree in business administration, information assurance, or related technical field
  • 10+ years of related, progressive experience in cybersecurity management with at least 8+ years in an operationally focused security practitioner role.
  • 5+ years' experience working with business leadership and with fiscal responsibilities.
  • 3+ years' experience working with product and / or data teams to ensure that security is woven into each product based on company policies and standards.
  • 3+ years of experience handling tough conversations with customers.
  • 3+ years of people management / leadership experience.
  • Strong written and verbal communication skills across all levels of the organization.
  • Driven to build a strong, cohesive team and positive enterprise-wide security culture.
  • Proven high integrity, trustworthiness and confidence, and ability to represent the company and security leadership with the highest level of professionalism.
  • Ability to effectively manage stress in a constantly changing environment.
  • Strategic vision and ability to successfully collaborate with and influence others.
  • Strong project management and organizational skills.
  • Proven experience with National Institute of Technology (NIST) standards or California Consumer Privacy Act (CCPA) or Health Information Portability and Accountability Act (HIPAA) or HITRUST or SOC2
  • Demonstrated understanding and comprehension of a wide range of cybersecurity solutions.
  • Preferred Qualifications :

  • Master's or other advanced degree (MBA, information assurance, computer science, etc.)
  • 8+ years of related security systems administration.
  • Relevant certification / s such as CISSP, CISM, CRISC, CISA, or similar.
  • Experience with agile methodology and ability to negotiate to get work prioritized.
  • Experience using AI for business improvements.
  • Experience in a similar role with large, complex organization / s.
  • Experience in the healthcare industry.
  • Travel : Within the U.S. as needed for meetings etc.

    #LI-HYBRID

    Surescripts embraces flexibility through its Flexible Hybrid Work model for most positions. This model allows employees to work virtually while still utilizing our offices as collaboration centers. With alignment and agreement from your leadership, you can come and go from the office as needed .

    To be considered for employment, applicants must have a valid U.S. work authorization allowing work without restrictions with Surecripts in the U.S. At this time, we are unable to provide support or provide sponsorship for immigration benefits such as work visas. Additionally, we do not participate in academic training programs or work-study programs through an academic institution that require employer endorsement of F-1 / CPT or F-1 / STEM.

    What You're Like

    You're technical. Analytical. Imaginative. Maybe you're building your own crypto-mining rig-or not. Either way, your mind works to anticipate vulnerabilities and protect the company and its information against those vulnerabilities. You do the right thing because it's the right thing without seeking to point fingers or brag. And of course, you're always willing to keep learning.

    What We're Like

    We're a team of friendly folks who do serious work. Our best work is done by rising to the occasion under stress, but we keep each other cool under pressure. We're a tight team but we also look for ways to partner across the business. Our style is casual and laid back, but we shoulder our responsibility to protect patient data from sophisticated adversaries, which sometimes means delivering a difficult truth.

    What the Work is Like

    Our challenge is to protect our customers' data and our company. This requires anomaly analysis, risk reviews, pen testing of our controls, red-teaming and tabletops, policy and procedure work, documentation, and audits. We also engineer and maintain our security products and tools. It's not always a typical 9-to-5 gig, of course, but then again, you work in information security, so you already know that.

    Why Wait? Apply Now

    We're a midsize company. This means you're not just another employee ID number. Here, you can build real relationships and feel supported by truly awesome people with diverse backgrounds and talents in an innovative and collaborative work culture. We strive to create an environment where you can b e yourself, share your ideas and work your way. We offer opportunities for employee development, as well as competitive compensation packages and extensive benefits.

    At Surescripts, base pay is one part of our Total Rewards Package (which may also include bonus, benefits etc.) and is determined within a range. The base pay range for this position is $199,900 - $244,300 per year. Your base pay may vary within or outside of this range depending on a number of factors, including (but not limited to) your qualifications, skills, experience, and location.

    Benefits include, but are not limited to, comprehensive healthcare (including infertility coverage), generous paid time off including paid childbirth and parental leave and mental health days , pet insurance, and 401(k) with company match and immediate vesting. To learn more, review the Keep You and Yours Healthy , Balancing Work and Life , and Where Talent Takes Shape links under the Better Benefits. Better Work. Better Life section of our careers site.

    Physical and Mental Requirements

    While performing duties of this job, an employee may be required to perform any, or all of the following : attend meetings in and out of the office, travel, communicate effectively (both orally and in writing), and be able to effectively use computers and other electronic and standard office equipment with, or without, a reasonable accommodation. Additionally, this job requires certain mental demands, including the ability to use judgement, withstand moderate amounts of stress and maintain attention to detail with, or without, a reasonable accommodation.

    Surescripts is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate on the basis of race, color, religion, age, national origin, ancestry, disability, medical condition, marital status, pregnancy, genetic information, gender, sexual orientation, parental status, gender identity, gender expression, veteran status, or any other status protected under federal, state, or local law.

    serp_jobs.job_alerts.create_a_job

    Information Security Officer • Minneapolis, MN, United States

    Job_description.internal_linking.related_jobs
    Information Security Architect

    Information Security Architect

    KellyMitchell Group • Hopkins, MN, United States
    serp_jobs.job_card.full_time
    Our client is seeking an Information Security Architect to join their team! This position is located in Hopkins, Minnesota. Validate the design and operational effectiveness of IT General Controls a...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Project Manager

    Project Manager

    Global Technical Talent • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    Alternate / Related Job Titles : Security & Compliance Project Manager IT Risk & Controls Project Lead CIS Program Security Lead Location : Minneapolis, MN (Eligible Additional Locations : Denver, CO G...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Director, Technology Enablement

    Director, Technology Enablement

    Pioneer Management Consulting • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Pioneer Management Consulting is a mid-sized, fast-growing consulting firm with offices in Minneapolis and Denver.We partner with clients to deliver Strategy, Organizational Effectiveness, Data &am...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Manager, Enterprise Risk Management

    Manager, Enterprise Risk Management

    LivaNova • Minneapolis, MN, United States
    serp_jobs.job_card.full_time
    As a global medtech company, we are driven by our Vision of changing the trajectory of lives for a new day and our Mission to create ingenious solutions that ignite patient turnarounds.Our relentle...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Director, Technology Portfolio Planning & Operations

    Senior Director, Technology Portfolio Planning & Operations

    Best Buy • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    Senior Director, Technology Portfolio Planning & Operations.The Senior Director, Technology Portfolio Planning & Operations is a critical enabler and advisor to enterprise and Digital & Technology ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Cyber Security Manager

    Cyber Security Manager

    Ledgent Technology • Eden Prairie, MN, United States
    serp_jobs.job_card.permanent
    Technology Manager - Security focused.Direct Hire - W2, No C2C or third party vendors at this time.Onsite (4-5 days) in Eden Prairie, MN. No C2C or third-party vendors at this time.The Cybersecurity...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead Analyst - Info Sec

    Lead Analyst - Info Sec

    MAXIMUS • Minneapolis, MN, United States
    serp_jobs.job_card.full_time
    The Maximus DoD Cloud Information Systems Security Officer (ISSO) will work directly with the Maximus Federal Business Information Security Officer (BISO) to identify and manage implementation of s...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    IT Director Job Description

    IT Director Job Description

    Beer Judge Certification Program • Minneapolis, MN, United States
    serp_jobs.job_card.full_time
    Information Technology directorate and staff, and has the following duties : .Develop and manage IT plan, policy, strategy, and architecture, and direct information system development work.Identifyin...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Traveling Electronic Security Systems Site Lead

    Traveling Electronic Security Systems Site Lead

    Evergreen Fire and Security • Minneapolis, MN, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Who We Are Evergreen Fire and Security (EFS) is a recognized leader in the life safety and security solutions industry.We are entrusted by the Federal Government and commercial customers to p...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Sec Intel & Prtcn Ops Mgr, Sr

    Sec Intel & Prtcn Ops Mgr, Sr

    Old National Bank • St Louis Park, MN, United States
    serp_jobs.job_card.full_time
    Job Locations US-IN-Evansville | US-IL-Chicago | US-IN-Indianapolis | US-MN-Lake Elmo | US-MN-St Louis Park | US-TN-Nashville | US-MI-Troy Category / Function Risk / Security ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Director Financial Institution Conversions

    Director Financial Institution Conversions

    Ameriprise Financial Services, LLC • Minneapolis, MN, United States
    serp_jobs.job_card.full_time
    Director, Financial Institution Conversions.Join Ameriprise Financial Services, LLC as a Director, Financial Institution Conversions. You will lead a clearing broker dealer settlement team accountab...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Corporate Security Manager - Onsite in MN

    Senior Corporate Security Manager - Onsite in MN

    UnitedHealth Group • Eden Prairie, MN, United States
    serp_jobs.job_card.full_time
    UnitedHealth Group is a health care and well-being company that's dedicated to improving the health outcomes of millions around the world. We are comprised of two distinct and complementary business...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Travel Echo Tech - $2,393 to $2,654 per week in Burnsville, MN

    Travel Echo Tech - $2,393 to $2,654 per week in Burnsville, MN

    AlliedTravelCareers • Burnsville, MN, US
    serp_jobs.job_card.full_time
    AlliedTravelCareers is working with LRS Healthcare to find a qualified Echo Tech in Burnsville, Minnesota, 55337!.Ready to start your next travel adventure? LRS Healthcare offers a full benefits pa...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Vice President, Chief Information Security Officer

    Vice President, Chief Information Security Officer

    KLDiscovery • Eden Prairie, MN, United States
    serp_jobs.job_card.full_time
    KLDiscovery offers a fantastic opportunity for you to use your talents to make a meaningful impact in a fast-paced, growing technology and services organization! KLDiscovery is a global leader in ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cyber Security Manager (Eden Prairie)

    Cyber Security Manager (Eden Prairie)

    Ledgent Technology • Eden Prairie, MN, United States
    serp_jobs.job_card.permanent
    Technology Manager - Security focused.Direct Hire - W2, No C2C or third party vendors at this time.Onsite (4-5 days) in Eden Prairie, MN. No C2C or third-party vendors at this time.The Cybersecurity...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Travel Behavioral Health Tech - $20 to $26 per hour in Lakeville, MN

    Travel Behavioral Health Tech - $20 to $26 per hour in Lakeville, MN

    AlliedTravelCareers • Lakeville, MN, US
    serp_jobs.job_card.full_time
    AlliedTravelCareers is working with All Medical Personnel to find a qualified Behavioral Health Tech in Lakeville, Minnesota, 55044!. Specialty : Paraprofessional - Behavioral Health.Attends work on ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Sr Director, Strategic Technology and Security Risk - Remote

    Sr Director, Strategic Technology and Security Risk - Remote

    UnitedHealth Group • Eden Prairie, MN, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives.The work you do with our team will directly improve health outcomes by connect...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    Relativity • Minneapolis, MN, United States
    serp_jobs.job_card.full_time
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted