Manager - Information Security

Stamford Health

Stamford, CT

JOB DETAILS
SKILLS
Annuities, Artificial Intelligence (AI), Authentication, Best Practices, Budgeting, Business Continuity Planning (BCP), Business Operations, CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Childcare, Computer Science, Computer Security, Contract Review, DNS (Domain Name System), Digital Certificates, Disaster Recovery, Email Security, Endpoint Security, Environmental Compliance, Firewalls, GLP (Good Laboratory Practices), Health Insurance, Healthcare, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Leadership, Maintain Compliance, Microsoft Certifications, Network Access Control (NAC), Operational Communications, Performance Management, Retirement Plan, Risk, Risk Management, Security Attacks, Security Monitoring, Team Lead/Manager, Technical Operations, Tuition Reimbursement, U.S. National Institute of Standards and Technology (NIST), VPN (Virtual Private Network)
LOCATION
Stamford, CT
POSTED
5 days ago

Information Security Manager

As a Certified Great Place to Work organization, Stamford Health understands what it takes to attract talent to improve our workforce and support our mission, to that end we offer:

  • Competitive salary
  • Comprehensive, low-cost health insurance plans (including GLP-1 coverage options) available day one
  • Wellness programs
  • Paid Time Off accruals
  • Tax deferred annuity and (403b) pension plan
  • Tuition reimbursement
  • Free on-site parking and train station shuttle
  • Childcare partnership with Children's Learning Center

Regular, Full Time

Monday-Friday, 8:00AM-5:00PM

Responsibilities:

Reporting to the SVP & CIO of Stamford Health, the Chief Information Security Officer (CISO) designs, implements, operates, and optimizes all security strategies for Stamford Health. In this enterprise role, the CISO collaborates with all levels of the organization, including the Executive Team, to ensure technology and operations come together to achieve the performance goals of the organization while maintaining the appropriate security/risk mitigation strategies.

  • Provide strategic vision and leadership for the development, advancement, and support of Stamford Health's cybersecurity program leveraging the NIST Framework.

  • Measure and report on all cybersecurity activity to ensure visibility into effectiveness and overall impact on business operations and communicate risk to executive leadership.

  • Develop, implement, maintain, and oversee enforcement of policies, procedures, and associated plans for information security administration, adoption and use of technology and infrastructure including Artificial Intelligence (AI).

  • Implement and promote awareness with ongoing training and remediation to ensure a culture of strong information security including yearly table top exercises.

  • Collaborate with our Business Continuity team on enterprise-wide disaster recovery and business continuity plans, procedures, audits, enhancements, and recurring testing; including emergency preparedness.

  • Work with Stamford Health leadership, the Corporate Compliance and Privacy Officer to establish and maintain a culture of compliance and cyber security policies.

  • Oversee the planning and implementation of enterprise IT systems, business operations, and facility defenses against security breaches and vulnerability issues.

  • Develop, monitor, and control a budget in line with the organization's objectives including review of contracts to ensure compliance with our environment.

  • Performance management and leadership for team.

Qualifications:

  • Bachelor's degree in Computer Science, Information Systems, Information Security
  • Minimum 3 years of healthcare experience
  • Minimum of ten years of relevant experience in Cybersecurity Operations & Engineering with at least five years' experience leading cybersecurity teams.
  • Professional certifications in Information Security, Risk Management and/or Compliance (such as CISM, CISA, CRISC, CISSP etc.)
  • Proficient in Secure DNS, Secure email gateways, Fortinet firewall/NAC/VPN, threat and vulnerability management, endpoint security, digital certification management, Microsoft CAS/Authenticator
  • Expert knowledge with general security best practices, protocols, etc.

About the Company

S

Stamford Health