Cybersecurity Director- Franklin, TN
Franklin, TN, United States
Acadia Healthcare
Acadia Healthcare operates a network of premier behavioral healthcare facilities in the United States and Puerto Rico. Offering multiple levels of care for all populations.Overview
We are seeking an experienced Cybersecurity Director to join our team in Franklin, TN.
Location: This position is based at Acadia Healthcare's corporate office in Franklin, TN. The first 90 days in this role will be fully in-person to ensure comprehensive onboarding and training.
After the initial period, the position will transition to a hybrid model, with 2 days remote and 3 days in the office each week.
PURPOSE STATEMENT:
The Cybersecurity Director is responsible for leading and managing Acadia’s cybersecurity strategy, programs, and initiatives to protect the confidentiality, integrity, and availability of its information assets. This role involves developing and implementing comprehensive cybersecurity strategies, overseeing the security posture, managing cybersecurity teams, and ensuring compliance with regulatory requirements and industry standards.
Responsibilities
ESSENTIAL FUNCTIONS:
OTHER FUNCTIONS:
- Performs other duties as assigned.
STANDARD EXPECTATIONS:
- Complies with organizational policies, procedures, performance improvement initiatives and maintains organizational and industry policies regarding confidentiality.
- Communicate clearly and effectively to person(s) receiving services and their family members, guests and other members of the health care team.
- Develops constructive and cooperative working relationships with others and maintains them over time.
- Encourages and builds mutual trust, respect, and cooperation among team members.
- Maintains regular and predictable attendance.
Qualifications
EDUCATION/EXPERIENCE/SKILL REQUIREMENTS:
- Education: A Bachelor's degree or equivalent work experience.
- Experience: Minimum of 5 years of cybersecurity experience, with a preference for at least 2 years in a leadership role.
- Expertise: Strong knowledge of cybersecurity principles, technologies, and best practices.
- Communication: Excellent communication and interpersonal skills.
- Decision-Making: Ability to work effectively under pressure and make critical decisions in high-stress situations.
- Compliance: Knowledge and understanding of relevant legal and regulatory requirements, such as: Sarbanes-Oxley Act (SOX), Health Insurance Portability and Accountability Act (HIPAA) and Payment Card Industry/Data Security Standard (PCI).
- Frameworks: Proficiency in common information security management frameworks, such as ITIL, Center for Internet Security (CIS) Critical Security Controls (CSC), and NIST, including 800-53 and Cybersecurity Framework
- Problem-Solving: Strong problem-solving and analytical abilities.
- Technology Proficiency: Candidates must be capable of effectively evaluating and implementing technical alternatives, staying up to date with emerging technologies.
- Incident Response Proficiency: Proven background in incident response and a demonstrated ability to effectively manage data breaches highly desirable.
- Budget Management: Experience in managing cybersecurity budgets effectively and efficiently.
- Interpersonal Skills: Excellent interpersonal skills, including the ability to interact professionally with individuals at all levels, both internally and externally.
- Self-Motivation: Self-motivated with strong organizational skills and exceptional attention to detail.
- Multitasking: Ability to manage multiple tasks/projects simultaneously within strict time frames and adapt to frequent priority changes.
- Adherence: Capability to work within established policies, procedures, and practices set by the organization.
- Language Skills: Proficient in English to provide and receive instructions and directions effectively.
LICENSES/DESIGNATIONS/CERTIFICATIONS:
- Certifications: Desired by not required: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), GIAC Information Security Fundamentals (GISF), Certified Data Privacy Solutions Engineer (CDPSE), GIAC Critical Controls Certification (GCCC) or other similar credentials.
SUPERVISORY REQUIREMENTS:
Supervises a team of employees
While this job description is intended to be an accurate reflection of the requirements of the job, management reserves the right to add or remove duties from particular jobs when circumstances (e.g. emergencies, changes in workload, rush jobs or technological developments) dictate.
#LI-AH
AHCORP
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: CISA CISM CISSP Compliance CRISC GIAC Governance HIPAA Incident response ITIL KPIs NIST NIST 800-53 Privacy Risk assessment Risk management RMF SOX Strategy Vendor management Vulnerabilities
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.