Information Security Director

Northeast Georgia Health System Gainesville , GA 30501

Posted 5 days ago

Job Category:

Executive Leadership

Work Shift/Schedule:

8 Hr Morning - Afternoon

Northeast Georgia Health System is rooted in a foundation of improving the health of our communities.

About the Role:

Job Summary

Serves the organization, patients, and other customers by providing a wide range of Information Security, Cyber Security & related technical services. Assists in the formulation of strategic planning for both short- and long-term activities, and performing all other duties as assigned by the Chief Technology Officer. Operationally skilled, willing and eager to dive into deep technical challenges to provide direction, support and assistance to enhance health system outcomes. Strong knowledge of the OSI model to understand issues from physical to application layer. Disaster recovery planning and testing for highly available infrastructure. Deep skills and experience in managing complex large-scale projects required. Serve as the focal point of contact for the information security team and ITS organization in continual alignment with the Chief Technology Officer and Chief Information Officer as required.

Minimum Job Qualifications

  • Licensure or other certifications:

  • Educational Requirements: Bachelors Degree in Information Systems, Information Technology Management or related field required.

  • Minimum Experience: Minimum of ten (10) years of advanced IT Security experience with an emphasis in Cyber Security, Risk Management and Data Governance is required.

  • Other:

Preferred Job Qualifications

  • Preferred Licensure or other certifications:

  • Preferred Educational Requirements:

  • Preferred Experience:

  • Other:

Job Specific and Unique Knowledge, Skills and Abilities

  • Accomplished team-oriented leader with demonstrated results in leading a high-performing team and mentoring and developing staff

  • Proven ability to take individual initiative and responsibility for assignments; high attention to detail; outstanding follow through; problem solver

  • Demonstrates ability to engage in and complete multiple concurrent assignments, on-time and within budget

  • Excellent verbal, written, analytical, problem solving and organizational skills. Customer-focused and service-oriented

  • Proven ability to maintain a positive attitude in a team environment

  • Proactive in bringing issues to the senior management team and other leaders, building consensus and delivering practical solutions

  • Demonstrated skills in critical thinking, negotiation, meeting facilitation and relationship building

  • Must be a skilled decision-maker who works efficiently in a high stress environment

  • Fiscally responsible, experienced in managing budgets

  • Demonstrates strong understanding of leading telecommunications technologies and methodologies implemented in 24x7 mission-critical environments

Essential Tasks and Responsibilities

  • Develops an information security vision and strategy that is aligned to organizational priorities and enables and facilitates the organization's business objectives, and ensures senior stakeholder buy-in and mandate

  • Provides regular reporting on the current status of the information security program to enterprise risk teams, senior business leaders and the board of directors as part of a strategic enterprise risk management program, thus supporting business outcomes

  • Minimum ten (10) years relevant IT and Cyber Security experience in key technical security and leadership roles. Understands and interacts with related disciplines, either directly or through committees, to ensure the consistent application of policies and standards across all technology projects, systems and services, including privacy, risk management, compliance and business continuity management.

  • Facilitates an information security governance structure through the implementation of a hierarchical governance program, including the formation of an information security steering committee or advisory board as required.

  • Develops, socializes and coordinates approval and implementation of security policies. Manages operational and capital budgets for the information security function, monitoring and reporting on opportunities and discrepancies

  • Creates and manages a unified and flexible, risk-based control framework to integrate and normalize the wide variety and ever-changing requirements resulting from global laws, standards and regulations

  • Leads the strategic alignment for Third- Party Risk Management organization-wide to assess, educate, mitigate and reduce risk throughout the healthcare system.

  • Ensures that security is embedded in the project delivery process by providing the appropriate information security policies, practices and guidelines.

  • Provides clear risk mitigating directives for projects with components in IT, including the mandatory application of controls.

  • Monitors the external threat environment for emerging threats, and advises relevant stakeholders on the appropriate courses of action.

  • Manages and contains information security incidents and events to protect corporate IT assets, intellectual property, regulated data and the company's reputation.

  • Oversees technology dependencies outside of direct organizational control. This includes reviewing contracts and the creation of alternatives for managing risk.

  • Develops and oversees effective disaster recovery (DR) policies and standards to align with the enterprise business continuity management (BCM) program goals, with the realization that components supporting primary business processes may be outside the corporate perimeter.

  • Coordinates the development of implementation of incident response plans and procedures to ensure that business-critical services are recovered in the event of a security event; provides direction, support and in-house consulting in these areas

  • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or other similar credentials.

  • Assists in the formulation of strategic planning for both short- and long-term activities, and performing all others duties as assigned by the Chief Technology Officer.

Physical Demands

  • Weight Lifted: Up to 50 lbs, Frequently 31-65% of time

  • Weight Carried: Up to 50 lbs, Occasionally 0-30% of time

  • Vision: Heavy, Frequently 31-65% of time of time

  • Kneeling/Stooping/Bending: Frequently 31-65%

  • Standing/Walking: Frequently 31-65%

  • Pushing/Pulling: Frequently 31-65%

  • Intensity of Work: Frequently 31-65%

  • Job Requires: Reading, Writing, Reasoning, Talking, Keyboarding, Driving

Working at NGHS means being part of something special: a team invested in you as a person, an employee, and in helping you reach your goals.

NGHS: Opportunities start here.

Northeast Georgia Health System is an Equal Opportunity Employer and will not tolerate discrimination in employment on the basis of race, color, age, sex, sexual orientation, gender identity or expression, religion, disability, ethnicity, national origin, marital status, protected veteran status, genetic information, or any other legally protected classification or status.


icon no score

See how you match
to the job

Find your dream job anywhere
with the LiveCareer app.
Mobile App Icon
Download the
LiveCareer app and find
your dream job anywhere
App Store Icon Google Play Icon
lc_ad

Boost your job search productivity with our
free Chrome Extension!

lc_apply_tool GET EXTENSION

Similar Jobs

Want to see jobs matched to your resume? Upload One Now! Remove
Information Security Director

Northeast Georgia Health System

Posted 5 days ago

VIEW JOBS 6/25/2024 12:00:00 AM 2024-09-23T00:00 Job Category: Executive Leadership Work Shift/Schedule: 8 Hr Morning - Afternoon Northeast Georgia Health System is rooted in a foundation of improving the Northeast Georgia Health System Gainesville GA

Information Security Director

Northeast Georgia Health System