Senior Director, Information Security

1 week ago


Lake Success, United States Northwell Health Full time

Job Description

Directs, plans, organizes, and evaluates the staff and activities of the Information Security function. Protects the organizations digital assets from unauthorized access. Secures systems which protect both online and on-premise infrastructures, responds to alerts, mitigates risks before breaches occur and supports efforts to contain, triage and recover from cyber incidents when they occur.

Job Responsibility

1.Plans, organizes, and directs the staff and activities for applicable information security design, engineering and operational support activities. 2.Develops and articulates a short and long-term strategic vision for areas of responsibility. 3.Leads the Information Security Team in the development, documentation and maintenance of security policies, guidelines, standards and baselines and procedures. 4.Interprets legislation or pending legislation related to the storage, retrieval, and protection of information assets or technology systems, and develops strategies for ensuring organizational compliance with regulations. 5.Oversees performance of IT risk assessments, reviews security architectures, identifies vulnerabilities, and oversees remediation activities. 6.Plans, organizes, and directs the staff and activities for applicable information security design within all health system computing environments. 7.Ensures compliance with HIPAA and other applicable regulatory and standards-based requirements. 8.Develops and oversees Information Security Programs (e.g. Emergency Patch Management, Incident Response, Vulnerability Management, Security Operations Center, Disaster Recovery). 9.Prepares recommendations for security enhancements and upgrades to Information Security tools, technologies and services portfolio. 10.Selects, develops, manages, and evaluates direct reports and oversees the development, selection, and evaluation of indirect reports. 11.Ensures performance appraisals are completed in a timely fashion. 12.Develops and enforces security protocols for application and infrastructure configurations. 13.Provides oversight to prioritizing risk remediation activities. 14.Assists company units to determine critical business processes, identify acceptable recovery time periods and establish resources required for the successful resumption of business operations in the event of a disaster. 15.Plans and coordinates the testing of recovery support and business resumption procedures in different functional areas; ensures that recovery procedures are effective for the restoration of key corporate resources and for the resumption of critical business processes. Performs related duties as required. All responsibilities noted here are considered essential functions of the job under the Americans with Disabilities Act. Duties not mentioned here, but considered related are not essential functions.

Job Qualification

Bachelor's degree in Computer Science, Cyber Security or related field, required.
8-12 years of relevant experience and 7+ years of leadership / management experience, required.

Highly PReferred:

  • Deep healthcare industry knowledge: Understanding HIPAA, HITECH, and other relevant regulations, as well as the unique operational challenges and data sensitivities within healthcare.
  • Disaster Recovery expertise: Proven experience designing, implementing, and testing disaster recovery plans, including RTO/RPO/MTD definition and achievement. Familiarity with various recovery strategies (active/active, active/passive, warm/cold sites) and technologies.
  • Business Continuity Planning: Integrating disaster recovery within a broader business continuity framework, ensuring organizational resilience and minimizing service disruptions.
  • Information Security acumen: Strong understanding of information security principles, risk management, and cybersecurity best practices within a healthcare context.
  • Leadership and Communication: Ability to lead and influence cross-functional teams, communicate effectively with technical and non-technical stakeholders, including C-level executives, and build consensus.
  • Project Management: Experience managing complex projects, including budget management, resource allocation, and vendor management.
  • Technical proficiency: Familiarity with relevant technologies, including cloud computing, virtualization, backup/recovery solutions, and networking.
  • Problem-solving and analytical skills: Ability to analyze complex situations, identify risks, and develop effective solutions.
  • Regulatory compliance: Knowledge of relevant regulations (HIPAA, HITECH, etc.) and experience ensuring compliance.
  • Vendor management: Experience negotiating and managing contracts with third-party vendors.
  • Certifications: Relevant certifications such as CBCP, MBCI, CISSP, CISA, CRISC are highly valued.
  • Experience: 8-10 years directing an enterprise Disaster Recovery team
  • It's also beneficial to have experience with specific healthcare IT systems (EHR, EMR, PACS) and emerging technologies like AI and machine learning for disaster recovery automation and optimization.


*Additional Salary Detail
The salary range and/or hourly rate listed is a good faith determination of potential base compensation that may be offered to a successful applicant for this position at the time of this job advertisement and may be modified in the future.When determining a team member's base salary and/or rate, several factors may be considered as applicable (e.g., location, specialty, service line, years of relevant experience, education, credentials, negotiated contracts, budget and internal equity).



  • Lake Forest, United States Grainger Businesses Full time

    Work Location Type: Hybrid As a leading industrial distributor with operations primarily in North America, Japan and the United Kingdom, We Keep The World Working® by serving more than 4.5 million customers worldwide with products delivered through innovative technology and deep customer relationships. With 2023 sales of $16.5 billion, we're dedicated to...


  • Lake Forest, United States W.W. Grainger Full time

    Work Location Type: Hybrid As a leading industrial distributor with operations primarily in North America, Japan and the United Kingdom, We Keep The World Working by serving more than 4.5 million customers worldwide with products delivered through i Director, Security, Continuous Improvement, Information, Operations, Cybersecurity, Retail


  • Salt Lake, Utah, United States Sorenson Communications Full time

    Senior Information Security OfficerWe are seeking an experienced Senior Information Security Officer to join our team at Sorenson Communications. This is a critical role that will lead the development and implementation of our information security strategy, ensuring the confidentiality, integrity, and availability of our information assets. The ideal...


  • Silver Lake, Kansas, United States Walmart Full time

    About UsWe are Senior Information Security Consultants at Walmart Global Tech, where we are passionate about building a culture of innovation, collaboration, and trust. Our team consists of experienced cybersecurity professionals who are dedicated to protecting our customers' data and ensuring the integrity of our systems.Our MissionWe strive to create a...


  • Salt Lake, Utah, United States Sorenson Full time

    Job SummaryWe are seeking an experienced Information Security Leader to join our team at Sorenson Communications. This role will lead the development and implementation of our information security strategy, providing strategic leadership and direction to the information security team.About the RoleThe Information Security Leader will be responsible...


  • Salt Lake City, United States DYNO NOBEL INC. Full time

    DYNO NOBEL INC. Senior Director Cyber Security and Governance SALT LAKE CITY, Utah Apply NowJob Brief: Responsible for leading the organization's information security strategy, ensuring the integrity, confidentiality, and availability of information assets.Who We Are: Dyno Nobel is a global leader in the commercial explosives industry. We provide innovative...


  • Salt Lake, Utah, United States Dyno Nobel, Inc. Full time

    Cyber Security Director - Global StrategyWe are seeking a highly skilled Cyber Security Director to lead our global information security strategy. The successful candidate will ensure the integrity, confidentiality, and availability of information assets across our organization.About Dyno NobelDyno Nobel is a leading provider of commercial explosives...


  • Salt Lake City, United States Dyno Nobel, Inc. Full time

    Job BriefResponsible for leading the organization's information security strategy, ensuring the integrity, confidentiality, and availability of information assets.Who We AreDyno Nobel is a global leader in the commercial explosives industry. We provide innovative blasting solutions and quality explosives products throughout North America, Australia and...


  • Salt Lake City, United States Dyno Nobel Full time

    Who We Are Dyno Nobel is a global leader in the commercial explosives industry. We provide innovative blasting solutions and quality explosives products throughout North America, Australia, and selected customers in the Asia Pacific. Join us in everything that’s great about Dyno Nobel: OUR culture, OUR values, OUR commitment to safety, and most...


  • Salt Lake City, United States Dyno Nobel Full time

    Who We Are Dyno Nobel is a global leader in the commercial explosives industry. We provide innovative blasting solutions and quality explosives products throughout North America, Australia and selected customers in the Asia Pacific. Join us in everything that’s great about Dyno Nobel: OUR culture, OUR values, OUR commitment to safety and most importantly...


  • Salt Lake City, United States Sorenson Communications Full time

    Description Salary: $210K DOE Bonus Hybrid for Local and Fully Remote in the United States Essential Duties and Responsibilities Strategic Leadership: Assist the CISO in developing and implementing the overall information security strategy. Provide leadership and direction to the information security team, ensuring alignment with organizational goals....


  • Salt Lake City, United States Sorenson Communications Full time

    Description Salary: $210K DOE + Bonus Hybrid for Local and Fully Remote in the United States Essential Duties and Responsibilities Strategic Leadership: Assist the CISO in developing and implementing the overall information security strategy. Provide leadership and direction to the information security team, ensuring alignment with organizational goals....


  • Lake Shore, United States L3Harris Technologies Full time

    Job Title: Senior Scientist, Information Security Systems Engineering This Subject Matter Expert will apply current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of systems and networks to maintain system security and execute system CONOPS. The Lead will work closely...


  • Avon Lake, United States Avient Full time

    Job Summary The Chief Information Security Officer (CISO) is responsible for leading and directing the global information security strategy, policy, and program for the organization. This role involves safeguarding the company's information assets, managing risks, and ensuring compliance with relevant regulations across all regions in which the company...


  • Avon Lake, United States Avient Full time

    Job Summary The Chief Information Security Officer (CISO) is responsible for leading and directing the global information security strategy, policy, and program for the organization. This role involves safeguarding the company's information assets, managing risks, and ensuring compliance with relevant regulations across all regions in which the company...


  • Salt Lake City, United States L3 Technologies Full time

    Job Title:Senior Scientist, Information Security Systems EngineeringJob Location:Salt Lake City-UTJob Code:15721Job Schedule:9/80, every other Friday offPosition Overview:This Subject Matter Expert will apply current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of...


  • Salt Lake City, United States L3 Technologies Full time

    Job Title:Senior Scientist, Information Security Systems EngineeringJob Location:Salt Lake City-UTJob Code:15721Job Schedule:9/80, every other Friday offPosition Overview:This Subject Matter Expert will apply current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of...


  • North Salt Lake, United States L3Harris Technologies Full time

    Job Title: Senior Scientist, Information Security Systems Engineering Job Location: Salt Lake City-UT Job Code: 15721 Job Schedule: 9/80, every other Friday off Position Overview: This Subject Matter Expert will apply current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and...


  • Salt Lake City, United States L3Harris Full time

    Job Title: Senior Scientist, Information Security Systems Engineering Job Location: Salt Lake City-UT Job Code: 15721 Job Schedule: 9/80, every other Friday off Position Overview: This Subject Matter Expert will apply current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and...


  • Salt Lake City, United States L3 Technologies Full time

    Job Title: Senior Scientist, Information Security Systems Engineering Job Location: Salt Lake City-UT Job Code: 15721 Job Schedule: 9/80, every other Friday off Position Overview: This Subject Matter Expert will apply current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration...