Talent.com
serp_jobs.error_messages.no_longer_accepting
VP, Chief Information Security Officer

VP, Chief Information Security Officer

SCAN GroupLong Beach, CA, US
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Description

About SCAN

SCAN Group is a not-for-profit organization dedicated to tackling the most pressing issues facing older adults in the United States. SCAN Group is the sole corporate member of SCAN Health Plan, one of the nation's leading not-for-profit Medicare Advantage plans, serving more than 285,000 members in California, Arizona, Nevada, and Texas. SCAN has been a mission-driven organization dedicated to keeping seniors healthy and independent for more than 40 years and is known throughout the healthcare industry and nationally as a leading expert in senior healthcare. SCAN employees are a group of talented, passionate professionals who are committed to supporting older adults on their aging journey, while also innovating healthcare for seniors everywhere. Employees are provided in-depth training and access to state-of-the-art tools necessary to do their jobs, as well as development and growth opportunities. SCAN takes great pride in recognizing our team members as experts in their fields and rewarding them for their efforts. If you are interested in becoming part of an organization that is innovating senior healthcare visit www.thescangroup.org, www.scanhealthplan.com, or follow us on LinkedIn; Facebook; and Twitter.

The Job

As the Chief Information Security Officer (CISO), you will be responsible for establishing and maintaining the enterprise vision, strategy, and programs to ensure that information assets and technologies are adequately protected for both SCAN Health Plan and associated portfolio companies. This role requires a deep understanding of the complexities and regulatory requirements specific to the healthcare industry, including patient data protection, HIPAA compliance, and cybersecurity threats. The CISO will be the strategic leader for all aspects of information security, including security architecture, risk management framework, incident response, security awareness training, and vulnerability management. Responsible for the effective management of information security functions and / or technology teams within the enterprise; including but not limited to applications, communications (voice and data), and computing services. This role will direct the development and administration of information security systems and functions to ensure that enterprise security goals are met. This position works collaboratively with executive leadership, IT, legal, compliance, and external partners to safeguard sensitive health information, maintain regulatory compliance, and mitigate risks associated with evolving cyber threats.

You Will

  • Provide leadership, vision and executive oversight in the development and implementation of the information security strategy to define state-of-the-art policies and processes that enable the establishment of consistent and effective information security practices that minimize risk.
  • Implement robust risk management practices and conduct regular security assessments to identify, evaluate, and mitigate information security risks.
  • Establish and chair a Security Governance Committee that regularly reviews security risks and ensures appropriate mitigation strategies.
  • Develop, maintain, and enforce information security policies and procedures. Ensure compliance with healthcare regulations, including HIPAA.
  • Lead the response to information security incidents. Develop and maintain an incident response plan ensuring swift action to minimize impact and manage communication, coordinating with internal and external stakeholders.
  • Oversee the management of information security vendors and third-party service providers.
  • Evaluate and recommend security enhancements and technology solutions. Ensure the security of all electronic information assets.
  • Coordinate with internal and external auditors. Ensure the organization is prepared for and compliant with all regulatory audits.
  • Develop and manage the information security budget.
  • Stay abreast of the latest information security trends and technologies. Foster a culture of continuous improvement in information security practices.
  • Plan for incident-specific responses as well as disaster recovery planning.
  • Monitor compliance with State and Federal regulations for information security of employee data and financial information, responses to identity theft, and other compliance issues such as HIPAA, HITECH, and Cyber Security Act.
  • Respond to data security breaches and lead the development of appropriate tracking / reporting systems.
  • Establish and enforce a process to ensure that all users receive appropriate information security training to perform duties along with periodic information security awareness training; ensures appropriate levels of information security awareness and personal responsibility.
  • Oversee the audit and assessment of system security vulnerabilities, direct the development and deployment of remediation plans, and work with business stakeholders to mitigate the risks and ensure compliance.
  • Create system hardening standards for the various hosts and network systems and oversees their deployment.
  • Assess the current information security landscape and recommend technology and processes to address current and emerging risks.
  • Work with management to develop and maintain a risk management matrix, which maps known risks to IT controls.
  • Remain current on security standards and compliance requirements.
  • Accomplish staff results by communicating job expectations; planning, monitoring, and appraising job results; coaching and counseling employees; initiating, coordinating, and enforcing systems, policies, and procedures.
  • Maintain staff by recruiting, selecting, orienting, and training employees; maintaining a safe and secure work environment; developing personal growth opportunities.
  • Maintain professional and technical knowledge by attending educational workshops; reviewing professional publications; establishing personal networks; participating in professional societies.
  • Actively support the achievement of SCAN's Vision and Goals.
  • Other duties as assigned.

Your Qualifications

  • Bachelor's degree preferred
  • CISSP (Certified Information Systems Security Professional) or Certified Information Security Manager (CISM)
  • GIAC Intrusion Analyst or Security Essentials Certification, and Ethical Hacking training a plus
  • 15 years of Information Technology experience, including 8+ years of experience with information security key function areas or enterprise-wide IT management / administration.
  • 5 years of experience leading or managing a technical team.
  • Healthcare industry experience is required.
  • Understanding and experience with adherence to information and network security standards (HIPAA, HITECH, HITRUST, PCI and PII compliance), data management, disaster recovery.
  • First-hand experience setting up formal IT Security Governance, IT Security Steering Committees, IT Security Operation Centers etc.
  • Strong working knowledge of Cyber Security frameworks like NIST, HITRUST and ISO 27000's.
  • Ability to react quickly and effectively to risks and threats from external and internal sources on a 24 / 7 basis.
  • Thorough understanding of Active Directory, Network / Remote Access Security, Systems Security (Windows, Unix, Mainframe), Application and Web Security, Firewalls and Intrusion Detection Systems, TCP / IP, Proxy, SPAM Filtering, SIEMs, Vulnerability Scanners, IDS / IPS, SQL.
  • Excellent written and oral communication skills, as well as strong interpersonal, critical thinking, and analytical skills.
  • What's in it for you?

  • Base Pay Range : $285,000 to $335,000 annually
  • An annual employee bonus program
  • Robust Wellness Program
  • Generous paid-time-off (PTO)
  • 11 paid holidays per year, 1 floating holiday, birthday off, and 2 volunteer days
  • Excellent 401(k) Retirement Saving Plan with employer match
  • Robust employee recognition program
  • Tuition reimbursement
  • An opportunity to become part of a team that makes a difference to our members and our community every day!
  • We're always looking for talented people to join our team! Qualified applicants are encouraged to apply now!

    At SCAN we believe that it is our business to improve the state of our world. Each of us has a responsibility to drive Equality in our communities and workplaces. We are committed to creating a workforce that reflects our community through inclusive programs and initiatives such as equal pay, employee resource groups, inclusive benefits, and more.

    SCAN is proud to be an Equal Employment Opportunity and Affirmative Action workplace. Individuals seeking employment will receive consideration for employment without regard to race, color, national origin, religion, age, sex (including pregnancy, childbirth or related medical conditions), sexual orientation, gender perception or identity, age, marital status, disability, protected veteran status or any other status protected by law. A background check is required.

    LI-JB1 #LI-Hybrid

    Equal Opportunity Employer / Protected Veterans / Individuals with Disabilities

    This employer is required to notify all applicants of their rights pursuant to federal employment laws.

    For further information, please review the Know Your Rights notice from the Department of Labor.

    J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Chief Information Security Officer • Long Beach, CA, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Chief Technology Officer

    Chief Technology Officer

    VirtualVocationsPasadena, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Chief Technology Officer and EVP, Deep Tech & Exploration.Key Responsibilities Oversee IT infrastructure, platforms, and budgets, including Azure cloud services and cyb...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Information Security Engineer

    Senior Information Security Engineer

    VirtualVocationsWhittier, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Information Security Lead to oversee security operations and engineering in a healthcare-pharmacy environment. Key Responsibilities Own the technical roadmap for ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Information Security Engineer

    Information Security Engineer

    VirtualVocationsSanta Ana, California, United States
    serp_jobs.job_card.full_time
    A company is looking for an Information Security Engineer II to develop and support enterprise security tools for cloud environments. Key Responsibilities Implement and maintain new features and c...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Information Security Analyst

    Senior Information Security Analyst

    VirtualVocationsPasadena, California, United States
    serp_jobs.job_card.full_time
    A company is looking for an Information Security Policy Analyst Senior.Key Responsibilities Develop, update, and implement security directives, policies, and procedures Perform gap analysis of e...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Director of Cybersecurity

    Senior Director of Cybersecurity

    VirtualVocationsWhittier, California, United States
    serp_jobs.job_card.temporary
    A company is looking for a Senior Director of Cyber Architecture and Engineering.Key Responsibilities Lead the cybersecurity program, focusing on governance, risk management, resilience, and comp...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Vice President of Vendor Management

    Vice President of Vendor Management

    VirtualVocationsNorwalk, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Vice President of Vendor Management.Key Responsibilities Oversee vendor relationships and performance management Develop and implement vendor management strategies Co...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Vice President of Compliance

    Vice President of Compliance

    VirtualVocationsSanta Ana, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Vice President, Compliance.Key Responsibilities Maintain and optimize the compliance program to ensure compliant business practices Identify compliance risks and imple...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Part-time Chief Information Security Officer

    Part-time Chief Information Security Officer

    VirtualVocationsLos Angeles, California, United States
    serp_jobs.job_card.part_time
    A company is looking for a Chief Information Security Officer (Part-time).Key Responsibilities Define and implement a comprehensive global information security strategy and roadmap Drive best pr...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Security Manager

    Cyber Security Manager

    VirtualVocationsWhittier, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Security Manager (Remote).Key Responsibilities Manage the Information Security Program, overseeing the evaluation, development, and implementation of security ini...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Vice President of Data Applications

    Vice President of Data Applications

    VirtualVocationsLong Beach, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Vice President of Enterprise Data and Applications.Key Responsibilities : Lead global technology teams for business systems support, business intelligence, and cloud dat...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Digital Strategy Vice President

    Digital Strategy Vice President

    VirtualVocationsNorwalk, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a VP of Digital Strategy to provide strategic leadership in enhancing client digital experiences. Key Responsibilities Engage with clients to offer expertise in digital ex...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Director of Cybersecurity Protection

    Director of Cybersecurity Protection

    VirtualVocationsGlendale, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Director, Cybersecurity Data & Application Protection.Key Responsibilities Lead the development and implementation of enterprise infrastructure security protection solu...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Senior Information Systems Security Officer

    Senior Information Systems Security Officer

    VirtualVocationsNorwalk, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Information System Security Officer (ISSO) - Federal Modernization.Key Responsibilities Serve as security lead for assigned systems through design, modernization...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cybersecurity Compliance Director

    Cybersecurity Compliance Director

    VirtualVocationsNorwalk, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity Director, Compliance and Assessments.Key Responsibilities Lead and manage the Cybersecurity Compliance and Assessments team, providing project oversight a...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Director of Product Security

    Director of Product Security

    VirtualVocationsWhittier, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Director of Product Security to lead its global product security team.Key Responsibilities Lead and scale a globally distributed product security team and serve as a st...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Vice President of Product Management

    Vice President of Product Management

    VirtualVocationsSanta Ana, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Vice President of Product Management.Key Responsibilities Become an expert in the cybersecurity market segment and develop a product strategy aligned with market needs ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Director of Information Security

    Senior Director of Information Security

    VirtualVocationsLong Beach, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Director of Information Security to lead and mature its global security program.Key Responsibilities Define and execute the global information security strategy ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Vice President of Renewals

    Senior Vice President of Renewals

    VirtualVocationsFullerton, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Vice President, Renewals - Remote.Key Responsibilities Lead and develop a team responsible for executing and closing complex renewals across major accounts Driv...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Information Security Analyst

    Information Security Analyst

    VirtualVocationsWhittier, California, United States
    serp_jobs.job_card.full_time
    A company is looking for an Information Security Cybersecurity II.Key Responsibilities Ensure the security of technology and information systems, including internal IT and cloud-based systems Im...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cybersecurity IAM Senior

    Cybersecurity IAM Senior

    VirtualVocationsWhittier, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity-IAM senior (Remote).Key Responsibilities : Lead IAM / IGA engineering and operations teams, providing mentorship and performance management Oversee implemen...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days