> Markdown version of [/jobs/ext/2419499-director-information-security](https://www.wearedevelopers.com/jobs/ext/2419499-director-information-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Director, Information Security - **Company:** AGFA Healthcare Corporation - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, User Authentication, Health Informatics, Software as a Service, Cloud Computing, Cyber Security, Information Systems, Continuous Delivery, Continuous Integration, Data Security, Decision Support Systems, DevOps, Health Information Technology, Identity and Access Management, Information Lifecycle Management, Internet Security, Internet Services, Information Systems Security Architecture Professional, Zero Trust Network Access, Service Pack, Software Vulnerability Management, Privacy Controls, Autoscaling, Cyber Threat Analysis, Information Technology, Patch Management, Data Management, Multiplatform, Devsecops, Cisco - **Published:** August 20, 2026 - **Apply:** https://www.careerbuilder.com/job-details/director-information-security-beverly-hills-ca--12e5803c-e387-4952-bf82-aa2ae9635656 ## About the Role * 10+ years of progressive experience in cybersecurity with 5+ years leading enterprise security programs or functions; proven leadership in high-growth or highly regulated environments. * Demonstrated success designing and operating security programs aligned to leading frameworks and sustaining regulatory compliance and audit readiness. * Expert ability to identify, prioritize, and communicate risk; proven track record translating complex technical concepts into actionable insights and decisions for executive, Board, and technical audiences. * Strong cross-functional leadership and collaboration skills; experienced at influencing product, engineering, IT, legal, compliance, and operations stakeholders. * Advanced knowledge across core security domains: endpoint protection, monitoring/telemetry, DLP, IAM/zero trust, vulnerability/patch management, incident response, cloud and infrastructure security, authentication/authorization, and sensitive data protection. * Experience leading incident response, resiliency programs, and crisis management, including executive and Board-level reporting., Alliance/Partner Management, Amazon Web Services (AWS), Artificial Intelligence (AI), Authentication, Automation, Autoscaling, Business Growth, Business Strategy, CCSP - Cisco Certified Security Professional, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Career Development, Cloud Computing, Code of Federal Regulations, Communication Skills, Computer Security, Continuous Deployment/Delivery, Continuous Improvement, Continuous Integration, Crisis Management, Cross-Functional, Customer Relations, Data Management, Decision Support, DevOps, Diversity, Embedded Systems, Endpoint Security, Enterprise Protection, Establish Priorities, FDA (Food and Drug Administration), HIPAA (Health Insurance Portability and Accountability Act), Health Information Technology, Healthcare, Healthcare Providers, ISO (International Organization for Standardization), Incident Response, Informatics, Information Technology & Information Systems, Information Technology Software, Information/Data Security (InfoSec), Internet Security, Internet Service Providers, Leadership, Legal, Machine Tool, Maintain Compliance, Marketing, Medical Imaging, Multiplatform/Cross-Platform, Operational Strategy, Patient Safety, Performance Management, Privacy Controls, Privacy Impact Assessment (PIA), Problem Solving Skills, Product Design, Product Development, Product Engineering, Productivity Management, Protective Services, Regulations, Regulatory Compliance, Research & Development (R&D), Risk, Risk Analysis, Sales Support, Security Analysis, Security Compliance, Security Design, Software Patches, Software as a Service (SaaS), Team Player, Telemetry ## Description AGFA HealthCare is seeking an operational Director, Information Security to define and execute the company's global cybersecurity vision across all business units and geographies. This role provides enterprise-wide security leadership with primary operational focus on cloud-native and SaaS platforms, while maintaining oversight of legacy on-premise environments. The leader is accountable for measurable security outcomes, ensuring the confidentiality, integrity, and availability of healthcare data and systems, strengthening regulatory posture, and reinforcing trust in AGFA HealthCare's imaging and informatics platforms. This is a hands-on leadership role that combines strategic partnership at the enterprise level with execution-oriented ownership of security operations. Location: * Remote: US What Youll Do: * Scaled and resilient security operations capabilities aligned with business growth and risk maturity. * Material reduction in critical and high-risk security findings through preventive controls and remediation. * Successful ISO 27001 / ISO 27017 / ISO 27018 HITRUST audit outcomes, with improved audit efficiency year over year. * Demonstrated adoption of Secure-by-Design and DevSecOps practices across cloud and on-premise products and R&D pipelines. * Improved executive visibility into cyber risk with actionable, business-oriented reporting. Operational Oversight * Provide leadership and direction for security operations across AGFA HealthCare, including cloud and on-premise environments. * Establish, scale, and continuously improve SOC capabilities, ensuring effective detection, response, and recovery aligned with business needs and risk profile. * Oversee threat intelligence, vulnerability management, and incident response with a focus on automation and continuous improvement. * Partner with CloudOps and DevOps teams to integrate DevSecOps practices into CI/CD pipelines. * Optimize and scale security tooling, including AWS-native services and endpoint protection platforms. Risk, Compliance, and Governance * Ensure compliance with global security and privacy standards across cloud and on-premise environments. * Oversee risk assessments, privacy impact analyses, and security reviews. * Maintain and evolve the incident response program in partnership with Legal, Privacy, ISP, and Quality and Regulatory teams. Strategic Leadership * Define and execute AGFA HealthCare's enterprise information security strategy in alignment with business goals, healthcare regulations, and patient safety priorities. * Act as a trusted advisor to executive leadership and the board on cyber risk posture, emerging threats, and security investment priorities. * Serve as an executive customer-facing security leader, engaging directly with clients to articulate the company's security strategy, build trust, address risk and compliance concerns, and support sales efforts by positioning security as a strategic business enabler * Lead the development and evolution of governance frameworks, policies, and standards supporting HIPAA, FDA 21 CFR Part 11, ISO 27001, ISO 27017, ISO 27018, and SOC 2. * Embed security by design across products, platforms, imaging workflows, and the full data lifecycle, including third-party and embedded solutions. * Partner with Marketing and commercial teams to articulate AGFA HealthCare's security posture and trust narrative to the market. * Champion a strong culture of security awareness, education, and accountability across R&D, CloudOps, and customer-facing teams., * Own It (I do what I say, full accountability for results, finding solutions and Practice ethical and safe behaviors) * Play as One (Collaborate for a common goal, diverse perspectives. Listen and communicate with respect, support decision for teams' benefits) * Move Forward (Embrace change, explore opportunities to innovate, feedback and improve performance, Proactive steps to resolve issues and continuous progress). * Drive Value (Bold choices to maximize value creation, customer deliver exceptional value, add value to all stakeholders, use data to generate crucial insights and outcomes). * Advanced security certifications (CISSP, CISM, CCSP, AWS Certified Security). * Background in medical imaging or healthcare IT. * Familiarity with AI/ML security considerations. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)