Apply Edge Start your job search

Director Information Security

Healthcare IS · Montana, United States

Apply & track with Apply Edge
Director of Information SecurityRemote | Community Healthcare Organization | Executive Leadership OpportunityProtect the Technology That Supports Patient CareAn established, independent healthcare organization is seeking an experienced Director of Information Security to lead and advance its enterprise cybersecurity program.This opportunity is ideal for a healthcare security leader who understands the unique challenges of protecting a hospital environment—where cybersecurity directly impacts patient care, clinical operations, regulatory compliance, and organizational resilience.Unlike highly specialized security organizations, this role offers broad ownership across the entire security program. You'll work closely with executive leadership, IT, clinical departments, and operational leaders to develop strategy, strengthen security practices, reduce organizational risk, and foster a culture where cybersecurity is integrated into everyday healthcare operations.If you've successfully led security initiatives within a community hospital, regional health system, or similarly sized healthcare organization, this is an opportunity to make a lasting impact while helping shape the future of information security.What You'll LeadAs the organization's senior information security leader, you'll be responsible for advancing cybersecurity across both strategic planning and day-to-day operations.Responsibilities include:Lead the enterprise information security strategy and long-term cybersecurity roadmapBuild and mature a comprehensive security program aligned with the needs of a community healthcare organizationProtect critical hospital systems, clinical applications, patient information, and enterprise technologiesDevelop and maintain security governance, policies, standards, and best practicesOversee enterprise risk assessments, vulnerability management, and remediation planningEnsure compliance with HIPAA Security Rule and recognized healthcare cybersecurity frameworksPartner with executive leadership to communicate organizational security risks and strategic prioritiesDevelop executive dashboards, metrics, and reporting for leadership and governance committeesLead third-party risk management and vendor security reviewsDirect incident response planning, business continuity, and disaster recovery preparednessPromote security awareness throughout the organization by partnering with both clinical and non-clinical departmentsCollaborate with infrastructure, applications, clinical informatics, and operational teams to ensure security is integrated into technology initiativesEvaluate emerging cybersecurity threats and recommend practical solutions appropriate for a hospital environmentWhy This Opportunity Stands OutFully remote executive leadership positionOpportunity to own and shape the organization's entire cybersecurity programHighly visible role working directly with executive leadershipSignificant influence across clinical, operational, and technology teamsEnvironment where decisions can be made quickly and your contributions have immediate impactOpportunity to balance strategic leadership with meaningful operational involvementMission-driven healthcare organization committed to serving its communityCollaborative leadership culture where security is viewed as a business partner—not just a compliance functionWe're Especially Interested In Professionals Who Have Experience InWe recognize that healthcare cybersecurity is different from other industries.The strongest candidates will have experience working in hospital environments where security decisions directly support patient care, regulatory compliance, and clinical operations.Experience with organizations such as:Community hospitalsIndependent healthcare systemsRegional medical centersCritical access hospitalsIntegrated delivery networksMulti-hospital healthcare organizations with lean, collaborative IT teamsCandidates who have built or led security programs within small to mid-sized healthcare organizations are particularly encouraged to apply.Ideal Background8+ years of progressive experience in information security, cybersecurity, or enterprise risk managementLeadership experience within a hospital, health system, or healthcare provider organizationExperience developing or maturing an enterprise information security programStrong understanding of HIPAA Security Rule and healthcare regulatory requirementsExperience supporting electronic health record (EHR) environments and other mission-critical clinical technologiesWorking knowledge of NIST Cybersecurity Framework, CIS Controls, HITRUST, ISO 27001, and healthcare security best practicesExperience leading governance, risk management, compliance, vulnerability management, and third-party security programsDemonstrated success presenting cybersecurity strategy and organizational risk to executive leadership and governing bodiesAbility to balance strategic leadership with practical operational executionExcellent communication and relationship-building skills across technical, clinical, and executive stakeholdersBachelor's degree or equivalent experience requiredCISSP, CISM, CRISC, HCISPP, or similar certifications preferredJoin an Organization Where Your Leadership MattersThis is an opportunity to lead cybersecurity in an organization where your work has a direct impact on protecting patient information, supporting clinical operations, and strengthening the technology that healthcare providers rely on every day.If you're looking for a role where you can influence strategy, build meaningful relationships, and help shape the future of information security within a community-focused healthcare organization, we'd welcome the opportunity to connect.