Director of Cyber Security Operations
Whittier, California, United States
Full Time Executive-level / Director USD 230K - 250K
Altera Digital Health
A global leader in healthcare IT, our solutions, services and partnerships enable organizations worldwide to build open, connect communities of health.Altera, a member of the N. Harris Computer Corporation family, delivers health IT solutions that support caregivers around the world. These include the Sunrise™, Paragon®, Altera TouchWorks®, Altera Opal, STAR™, HealthQuest™ and dbMotion™ solutions. At the intersection of technology and the human experience, Altera Digital Health is driving a new era of healthcare, in which innovation and expertise can elevate care delivery and inspire healthier communities across the globe. A new age in healthcare technology has just begun.
Director of Cyber Security Operations
As the Director of Cyber Security Operations at a $2B healthcare organization, you will be responsible for spearheading the operations, development, implementation, and management of comprehensive security policies, strategies, and programs aimed at protecting our organization's information systems from cyber threats. This leadership role requires a strategic thinker with strong technical expertise and a proven ability to collaborate with senior executives, coordinate cross-functional teams, and navigate complex environments.
Key Responsibilities:
- Security Policy Development: Create, maintain, and enforce security policies that align with industry standards, compliance regulations, organizational requirements and best practices within the healthcare sector. Create and maintain a series of security related key performance indicators driven by a set of data analytics that enhances the trust of the organization in the Security operations of the organization.
- Intrusion Risk Management: Identify vulnerabilities and manage intrusion risks by implementing robust detection and response protocols. Regularly assess threat intelligence to enhance our security posture.
- Incident Escalation and Resolution: Lead the response to security incidents, manage escalation pathways, and ensure effective resolution while minimizing business disruption.
- Strategy Development: Collaborate with senior executives to develop comprehensive cyber risk strategies and recovery plans. Provide regular updates and recommendations to the executive team on the state of cybersecurity and necessary risk mitigation measures.
- Technical Leadership: Oversee the implementation of security technologies and strategies that protect sensitive data and systems. Stay current with the latest technologies, trends, and best practices in cyber security and IT.
- Team Management: Build, manage, and develop a high-performing cyber security team. Foster a collaborative and innovative work environment, emphasizing ongoing cyber security training and skill development.
- Interdepartmental Collaboration: Work effectively in a matrixed environment to promote cybersecurity awareness and engage with various departments, ensuring cohesive implementation of security measures.
- Culture of Cyber Security Awareness: Create policies, security protocols and training that fosters a culture of Cyber Security awareness and education regarding safeguards and risk for the organization.
Qualifications:
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field; advanced degree preferred.
- Minimum of 8-10 years of experience in information security, with at least 5 years in a leadership role within the healthcare sector or related industries.
- Proven track record of creating and managing security policies, risk management strategies, and incident response plans.
- Strong expertise in security frameworks (e.g., NIST CSF), network security, and data protection technologies.
- Excellent understanding of regulatory requirements in healthcare, such as HIPAA and HITECH, along with experience in navigating compliance issues.
- Exceptional interpersonal and communication skills, with the ability to articulate technical concepts to non-technical stakeholders and foster relationships across the organization.
- Experience in crisis management, conflict resolution, and negotiation.
- Relevant certifications (e.g., CISSP, CISM, CISA, CEH) preferred.
Key Skills:
- Cyber Security Expertise:
- Advanced knowledge of cybersecurity principles, practices, and technologies, including intrusion detection, risk analysis, and vulnerability management.
- Proficiency in understanding the latest security tools and technologies such as firewalls, intrusion prevention systems (IPS), endpoint protection, and SIEM solutions.
- Policy Development and Compliance:
- Ability to create, implement, and enforce robust security policies and procedures that adhere to industry regulations and standards (e.g., HIPAA, HITECH, PCI).
- Familiarity with compliance frameworks and requirements specific to the healthcare environment.
- Risk Management:
- Strong skills in identifying, evaluating, and prioritizing cyber security risks, as well as developing strategic mitigation plans.
- Experience with conducting risk assessments and audits to improve overall security posture.
- Experience working with 3rd parties that might contribute to strengthening the overall security posture.
- Incident Response Management:
- Proven ability to lead incident response activities, manage escalations, and communicate effectively during security events.
- Experience developing and executing incident response plans that minimize impact and facilitate recovery.
- Leadership and Team Management:
- Demonstrated capability to lead, mentor, and develop a cybersecurity team in a matrixed organizational structure.
- Excellent interpersonal skills to foster strong relationships with team members, stakeholders, and executive leadership.
- Strategic Planning and Communication:
- Strong strategic thinking skills to align cybersecurity initiatives with organizational goals and objectives.
- Effective verbal and written communication skills, with the ability to present complex technical information to non-technical audiences.
- Technical Acumen:
- Deep understanding of IT and communication technologies, including networks, systems architecture, and cloud security.
- Familiarity with emerging trends in cybersecurity, risk management, and data privacy.
- Problem-Solving Orientation:
- Strong analytical skills to troubleshoot and resolve complex cyber security issues efficiently and effectively.
Relevant Experience Required:
- Industry Experience:
- At least 5 years of leadership experience in a cyber security or IT security role specifically in the healthcare sector or closely related industries, demonstrating a clear understanding of healthcare regulations and compliance.
- C-level Collaboration:
- Proven experience in strategizing and collaborating with senior-level executives, including presentations to C-suite leadership regarding cyber risks, strategies, and recovery plans.
- Program Management:
- Experience in developing and managing comprehensive cybersecurity programs, including success in implementing security initiatives that mitigate risks and respond to evolving threat landscapes.
- Project Leadership:
- A history of successfully leading cybersecurity projects, from conception through execution, while managing resources and achieving project objectives within established timelines and budgets.
- Incident Response Experience:
- Demonstrated expertise in managing security incidents, including executing response protocols and leading post-incident analyses to improve future security measures.
- Industry Certifications:
- Holding relevant cybersecurity certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CISA (Certified Information Systems Auditor) is highly advantageous.
Why Altera?
At Altera Digital Health, you will have the opportunity to profoundly impact the lives of patients by empowering healthcare providers to deliver superior care. You will join a passionate and gifted team committed to innovation and excellence. We offer a competitive benefits package and the opportunity to work in a fast-paced and dynamic environment.
Our company complies with all local/state regulations in regard to displaying salary ranges. If required, the salary range(s) are displayed below and are specifically for those potential hires who will perform work in or reside in the location(s) listed, if selected for the role. Any offered salary is determined based on internal equity, internal salary ranges, market data, ranges, applicant's skills and prior relevant experience, certain degrees and certifications (e.g. JD, technology), for example.
Salary Range$230,000—$250,000 USDAltera is an Equal Opportunity/Affirmative Action Employer. We consider applicants without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, or membership in any other group protected by federal, state or local law.
If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at:
HR.Recruiting@AlteraHealth.com
Tags: Analytics Audits C CEH CISA CISM CISSP Cloud Compliance Computer Science Data Analytics Firewalls HIPAA Incident response Intrusion detection Intrusion prevention IPS Network security NIST Privacy Risk analysis Risk assessment Risk management SIEM Strategy Threat intelligence Vulnerabilities Vulnerability management
Perks/benefits: Competitive pay Equity / stock options Health care Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.