Director Information Security

2 weeks ago


Columbia, United States Highmark Health Full time

Company : Highmark HealthJob Description :OverviewThis job directs and manages Identity and Access Management (IAM) services for the Enterprise. Provides leadership to the Organization's IAM program, including developing and managing the related policies, standards, architectures, and controls. Partners with Information Security, IT Infrastructure, Application Development, and business units to ensure secure and appropriate access to systems and data. Develops talent, addresses resource management, cultivates capabilities of staff, plans and coordinates work, and manages performance. Actively contributes to the IAM strategic planning process to develop and implement department strategic plans and action steps that support corporate strategic objectives. Defines service levels and monitors adherence. Sets budgets and controls expenses within the operating unit. Creates a team environment that promotes cooperation, empowerment, accountability, customer focus, and effective work relationships in order to realize business goals.Essential ResponsibilitiesPerform management responsibilities including, but not limited to: involved in hiring and termination decisions; coaching and development; rewards and recognition; performance management and staff productivity.Plan, organize, staff, direct and control the day-to-day operations of the department; develop and implement policies and programs as necessary; may have budgetary responsibility and authority.Communicate effectively with all levels of the organization: facilitate meetings; plan, design and provide presentations; represent HM Health Solutions with outside entities; prepare divisional procedures, policies, reports and correspondence.Provide Leadership to the Department: lead and champion organizational change; encourage participation in activities that support relationship development; champion information security and risk management innovation; demonstrate and champion the following characteristics in fulfilling the responsibilities of the job - passion, empowerment, accountability, collaboration and ethics.Provide oversight of all aspects of project management to ensure continuous improvement of processes: negotiate and collaborate with senior executives and staff to develop solutions and options; develop and adhere to internal standards and strategies; ensure adherence to approved methodologies; coordinate resources, time, contingency plans and risk management; provide oversight regarding metrics, funding, budgets and resources.Other duties as assigned or requested.EducationRequiredBachelor’s Degree in Information Security, Information Systems, Information Assurance, Computer Science or related field, or relevant experience and/or education as determined by the company in lieu of bachelor's degreePreferredMaster's Degree in Information Security, or a related field with a focus on Identity and Access Management.ExperienceRequired10 - 15 years in Information Security and/or Information Risk Management and/or Information Technology10 - 15 years in developing, communicating and presenting Information Security and Risk Management concepts to varying audiences7 - 10 years in mentoring others in a leadership role5 - 7 years in Staff Management5 - 7 years in developing and executing strategic plans to realize business objectives5 - 7 years establishing budgets and meeting fiduciary goalsPreferredExperience managing an Identity and Access Management program using industry-standard frameworks.Experience with cloud-based IAM solutions.Experience with implementing and managing role-based access control (RBAC), attribute-based access control (ABAC), and policy-based access control (PBAC).Experience with Zero Trust security models and their application to Identity and Access Management.Experience with the application of Artificial Intelligence (AI) and Machine Learning (ML) to Identity and Access Management.Experience with Identity Governance technologies (e.g., SailPoint).Experience with Public Key Infrastructure (PKI).Experience with Federated Identity Management (SAML, OAuth, OpenID Connect).Experience with enterprise directory services such as Active Directory and LDAP.Experience with securing APIs using IAM principles and technologies.Experience with cloud-based identity providers like Azure AD, AWS IAM, and Google Cloud Identity.Licenses and CertificationsRequiredNonePreferredCertified Information Systems Security Professional (CISSP)Certified Information Security Manager (CISM)Certified in Risk and Information Systems Controls (CRISC)Information Technology Infrastructure Library (ITIL)SkillsKnowledge of regulatory requirements such as Health Insurance Portability and Accountability Act (HIPAA), HITECH, Payment Card Industry Data Security Standards (PCI DSS), and FIPS-140Strong executive communication and presenting skillsStrong teamwork and interpersonal skillsExperience in leading process improvement initiativesAbility to motivate high performance, multi-discipline teamsDemonstrated competency in project executionDemonstrated abilities in relationship managementLanguage (Other than English)NoneTravel Requirement0% - 25%Physical, Mental Demands and Working ConditionsPosition TypeOffice-basedTeaches / trains others regularlyOccasionallyTravel regularly from the office to various work sites or from site-to-siteRarelyWorks primarily out-of-the office selling products/services (sales employees)NeverPhysical work site requiredYesLifting: up to 10 poundsConstantlyLifting: 10 to 25 poundsOccasionallyLifting: 25 to 50 poundsRarelyDisclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy.Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.Pay Range Minimum:$126,400.00Pay Range Maximum:$236,000.00Note: Base pay is determined by a variety of factors including a candidate’s qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations. The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.For accommodation requests, please contact HR Services Online at HRServices@highmarkhealth.orgCalifornia Consumer Privacy Act Employees, Contractors, and Applicants NoticeReq ID: J269803 #J-18808-Ljbffr



  • Columbia, United States nDepth Security, LLC Full time

    Information Systems Security Engineer at nDepth Security, LLCLocation: Columbia, MDResponsibilitiesSupport the customer in the design, development, implementation, and/or integration of IA architectures, systems, or system components.Provide assistance to ensure that the architecture and design of information systems are functional and secure, including...


  • Columbia, United States Assured Information Security, Inc. Full time

    Description Assured Information Security (AIS) has an opening for a Cybersecurity Product Manager. This is on onsite position located in Columbia, MD and requires an active TS/SCI with CI Poly . In this role, you will support our Defense and Intelligence Business Unit, Cyber and National Operations sector, delivering full-spectrum offensive and defensive...


  • Columbia, United States Highmark Health Full time

    A health services organization is seeking an experienced leader to manage Identity and Access Management (IAM) services. You will develop policies and lead a team to ensure secure access to systems and data while contributing to strategic planning. The ideal candidate has extensive experience in information security and a strong leadership track record. This...

  • Director - Security

    1 week ago


    Columbia, United States Maury Regional Health Full time

    Title: Director of Security Location: Maury Regional Medical Center – Columbia, TN Position Shift: Full Time – Monday-Friday 8am-5pm Position Summary: Supervises shift operations daily operations of the department. In addition to these duties the Director will perform a variety of security related functions while involved in the safeguarding of...


  • Columbia, United States Howard Community College Full time

    Position Information Position Title Information Security Manager FLSA Exempt FT/PT Full Time Hours Per Week Work Schedule Monday-Friday Grade 18 Summary We are seeking a highly skilled and experienced Information Security Manager to lead our IT security team. The successful candidate will be responsible for developing and implementing comprehensive security...


  • Columbia, United States US Tech Solutions Full time

    Duration : + months contract Candidate MUST be a SC resident or willing to relocate to SC prior to starting the role at their own expense. Job Summary: Scope of the Project: The Office of Cybersecurity (OCS) is responsible for the security and compliance of Information Systems and Data. OCS seeks an expert Senior ISSO to oversee (and actively participate in)...


  • Columbia, United States US Tech Solutions Full time

    Duration : 12+ months contract Candidate MUST be a SC resident or willing to relocate to SC prior to starting the role at their own expense. Job Summary: Scope of the Project: The Office of Cybersecurity (OCS) is responsible for the security and compliance of Information Systems and Data . OCS seeks an expert Senior ISSO to oversee (and actively participate...


  • Columbia, United States Howard Community College Full time

    Position Details Position Information About Us Howard Community College (HCC) is an exciting place to work, learn, and grow! We are proud to have received the Great Colleges to Work For honor for 12 consecutive years, 2009-2020. Howard Community College values diversity among its faculty, staff and student population. We are an innovative institution that is...


  • Columbia, MD, United States Howard Community College Full time

    Position Details Position Information About Us Howard Community College (HCC) is an exciting place to work, learn, and grow! We are proud to have received the Great Colleges to Work For honor for 12 consecutive years, 2009-2020. Howard Community College values diversity among its faculty, staff and student population. We are an innovative institution that...


  • Columbia, MD, United States Howard Community College Full time

    Position Details Position Information About Us Howard Community College (HCC) is an exciting place to work, learn, and grow! We are proud to have received the Great Colleges to Work For honor for 12 consecutive years, 2009-2020. Howard Community College values diversity among its faculty, staff and student population. We are an innovative institution that...