The Stamford Hospital logo

Manager - Information Security

The Stamford Hospital
  • Stamford, CT
    30+ days ago

    Job Description

    As a Certified Great Place to Work organization, Stamford Health understands what it takes to attract talent to improve our workforce and support our mission, to that end we offer:

    • Competitive salary
    • Comprehensive, low-cost health insurance plans (including GLP-1 coverage options) available day one
    • Wellness programs
    • Paid Time Off accruals
    • Tax deferred annuity and (403b) pension plan
    • Tuition reimbursement
    • Free on-site parking and train station shuttle
    • Childcare partnership with Children's Learning Center

    Regular, Full Time

    Monday-Friday, 8:00AM-5:00PM

    Responsibilities:

    The Manager, Security Operations reports into the Director IS & CISO for Stamford Health. In partnership, the manager and CISO will define and execute Stamford's Information/Cyber security strategies and operational excellence. The Manager, Security Operations oversees the Information security team and leads the day to the day support of enforcing Stamford's Information security program. This effort includes perimeter/edge defenses, endpoint security, threat and vulnerability management, new project implementation, enforcing policies and standards, risk management and overall transformation and maturity of the information security initiatives. The Manager will assist the CISO with the support continual/regular refinement and enforcement of our Stamford's Information Security policies, procedures, programs, and response plans, and with the creation and implementation of those policies, procedures and programs that do not currently exist.

    • Oversee the delivery and ongoing support of Stamford Health's information security services.

    • Oversee the development and implementation of technical cybersecurity initiatives to continuously improve and expand protective and defensive security capabilities.

    • Monitor and report on key performance metrics to ensure service quality and delivery

    • Drive security control implementation and maturity in both on-prem and cloud environments and ensure compliance with corporate security policies and regulatory requirements.

    • Lead a team of Information Security architects, engineers, and analysts that plan, implement and sustain the full lifecycle of various cybersecurity capabilities.

    • Ensure security assessments of the information technology environment are being performed and with assisting in the developing and implementing security plans to mitigate those risks.

    • Assist with forensics investigation, penetration testing, implementation of new security solutions, participation in the creation and or maintenance of policies, standards, and procedures.

    • Recommend changes/upgrades to service components, technologies, processes and metrics to keep pace with the threat landscape and align with and business strategies.

    • Partner with department leaders / project sponsors in the implementation of secure-by-design initiatives into their business processes.

    • Develops and/or oversees the development of documentation (procedures, runbooks, etc.) to ensure effective service delivery

    • Coach and mentor team for high performance, creating a supportive working environment where everyone has the opportunity to fulfill their potential

    • Maintain up-to-date knowledge of industry standards, best practices and the evolving security threat landscape

    • Manage information security related tasks performed by the team including, but not limited to: digital forensic investigations, vulnerability management, alert and incident response.

    • Manage employees including performance management, salary administration, succession planning and workforce development.

    • Partner & collaborate with other IT teams as necessary to ensure that overall IT objectives are met.

    • Performs special projects and other duties as assigned by management

    Qualifications:

    • Bachelor's degree in Computer Science, Information Systems, Information Security

    • Minimum 3 years of healthcare experience

    • Minimum of ten years of relevant experience in Cybersecurity Operations & Engineering with at least five years' experience leading cybersecurity teams.

    • Professional certifications in Information Security, Risk Management and/or Compliance (such as CISM, CISA, CRISC, CISSP etc.)

    • Proficient in Secure DNS, Secure email gateways, Fortinet firewall/NAC/VPN, threat and vulnerability management, endpoint security, digital certification management, Microsoft CAS/Authenticator

    • Expert knowledge with general security best practices, protocols, etc.

    Numbers & Facts

    LocationStamford, CT
    IndustryHealthcare Services
    Company Size100 to 499 employees
    Year Founded2005
    Websitehttps://www.stamfordhealth.org

    About Company

    Stamford Health is Healing. Reimagined. A team committed to caring for the whole person in mind, body, and spirit. We provide you with the absolute finest in care, from prevention and wellness, to diagnosis, treatment, and ongoing support. We believe that to heal is to make whole. So we look not only at disease or injury, but more broadly at the complete person and his or her needs.

    At Stamford Health, you are at the core of everything we think, feel, and do. Your specific needs and unique life experiences inspire us to:

    Put you—our patient—first so we can take caregiving to a level of excellence never known before.
    Personalize, humanize, and demystify healthcare for you, your family, and the greater community.
    Be a proud member of the Planetree Alliance, a group of hospitals nationwide whose philosophy revolves around putting you at the forefront.
    Strive for continued success in partnership with experts at NewYork-Presbyterian Healthcare System and Columbia University College of Physicians and Surgeons.

    Skills

    • Annuitiesunmatched
    • Authenticationunmatched
    • Best Practicesunmatched
    • Business Processesunmatched
    • Business Strategyunmatched
    • CISA - Certified Information Systems Auditorunmatched
    • CISM - Certified Information Security Managerunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Childcareunmatched
    • Cloud Computingunmatched
    • Coachingunmatched
    • Compensation Managementunmatched
    • Computer Forensicsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Continuous Improvementunmatched
    • Corporate Policiesunmatched
    • DNS (Domain Name System)unmatched
    • Digital Certificatesunmatched
    • Documentationunmatched
    • Email Securityunmatched
    • Endpoint Securityunmatched
    • Firewallsunmatched
    • Forensic Scienceunmatched
    • GLP (Good Laboratory Practices)unmatched
    • Health Insuranceunmatched
    • Healthcareunmatched
    • Incident Responseunmatched
    • Industry Standardsunmatched
    • Information Architectureunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Maintain Complianceunmatched
    • Mentoringunmatched
    • Metricsunmatched
    • Microsoft Certificationsunmatched
    • Network Access Control (NAC)unmatched
    • Operational Strategyunmatched
    • Operations Managementunmatched
    • Penetration Testingunmatched
    • People Managementunmatched
    • Performance Analysisunmatched
    • Performance Managementunmatched
    • Performance Metricsunmatched
    • Policy Implementationunmatched
    • Procedure Developmentunmatched
    • Program Planningunmatched
    • Protective Servicesunmatched
    • Regulatory Requirementsunmatched
    • Retirement Planunmatched
    • Risk Managementunmatched
    • Security Architectureunmatched
    • Security Attacksunmatched
    • Security Complianceunmatched
    • Security Monitoringunmatched
    • Service Deliveryunmatched
    • Succession Planningunmatched
    • Team Lead/Managerunmatched
    • Technology Analysisunmatched
    • Tuition Reimbursementunmatched
    • VPN (Virtual Private Network)unmatched
    • Workforce Planningunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder