Senior Information Security Strategist
Job Title: Senior Information Security Strategist
About the Job:
This role is responsible for leading teams within the Infosec and IT Governance & Compliance department, focusing on administrative tasks, audit functions, and collaborating with internal departments to secure Everise infrastructure.
Key Responsibilities:
• Work with stakeholders to design security service components and procedures, assessing business viability of new adoption requirements.
• Develop security solutions to address customer security challenges, working with cloud security solution providers and risk teams.
• Manage security operations to ensure implemented technologies are effective in protecting the company.
• Oversight of a robust security monitoring program arrangement and implementation.
• Identify and remediate root causes of cybersecurity incidents.
• Provide advisory services on security threats and vulnerabilities, including vulnerability scans and analysis.
• Oversee corporate security awareness and training programs development and execution, securing senior stakeholder buy-in and funding.
• Enhance early detection capabilities, driving lessons learned activities after incident closure to identify potential security control gaps.
Requirements:
• At least 12-14 years of experience in Risk, Compliance & Security domain, with proven team management track record. Education considered in lieu of experience.
• Experience working as part of a large cross-cultural team.
• Exposure to data security, application security, infrastructure security & risk compliance domains.
• IT audit experience.
• Familiarity with PCI, SOC2 reporting, and HITRUST framework.
• Proactive in achieving results, ability to multitask, and work well in fast-paced environments.
• Excellent computer skills and attention to detail.
Preferred Qualifications:
• US healthcare regulations knowledge.
• Project management skills.