Chief Information Security Officer (CISO)
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
We are conducting a confidential search on behalf of our client for an experienced Chief Information Security Officer (CISO) to lead the organizationâs enterprise cybersecurity strategy and operations. This executive will be responsible for safeguarding patient data, ensuring regulatory compliance, managing cyber risk across a complex clinical environment, and building a resilient, people-first security culture. The CISO will report to senior IT/executive leadership and serve as a key advisor to the C-suite and Board on all matters of information security, privacy, and technology risk. This is a high-visibility leadership role responsible for setting strategic direction while remaining hands-on with governance, operations, and incident response in a 24/7 healthcare delivery environment., * Own and evolve the enterprise cybersecurity strategy, aligning security investments with the organizationâs clinical, operational, and strategic goals.
- Lead enterprise-wide Identity and Access Management (IAM) programs, including orchestration and automation to improve speed, accuracy, and least-privilege enforcement.
- Oversee cyber operations, including threat intelligence, endpoint detection and response (EDR), vulnerability management, dark web monitoring, and 24/7 security monitoring.
- Direct Governance, Risk, and Compliance (GRC) programs to ensure adherence to HIPAA, HITECH, state privacy laws, and other healthcare regulatory frameworks.
- Manage third-party/vendor risk management programs, including cybersecurity RFP processes and vendor security assessments.
- Lead business continuity planning (BCP) and disaster recovery (DR) efforts to ensure resilience against ransomware, natural disasters, and other disruptive events.
- Build and maintain incident response plans; serve as the executive lead during security incidents and breaches, coordinating with legal, compliance, and executive leadership.
- Develop and mature a security awareness culture across clinical and administrative staff (âpeople-firstâ security).
- Represent the organization externally with industry peers, regulatory bodies, and healthcare information-sharing organizations (e.g., H-ISAC).
- Partner closely with the CIO/IT leadership on infrastructure, AI adoption, and data governance initiatives to ensure âsecurity by design.â
- Manage and mentor a team of security professionals, and oversee the cybersecurity budget and vendor relationships.
- Provide regular reporting and briefings to executive leadership and the Board on the organizationâs risk posture.
Requirements
- 10+ years of progressive experience in information security leadership roles, with at least 3-5 years in a CISO, Deputy CISO, or equivalent executive security role.
- Required: Prior experience in the healthcare industry, with deep familiarity with HIPAA/HITECH compliance and clinical operations.
- Required: Willingness to relocate to Reno, NV. This is an on-site/hybrid role based in Reno.
- Demonstrated expertise in identity and access management, cyber operations, GRC, and third-party risk management.
- Proven experience developing and executing business continuity and disaster recovery programs.
- Strong track record of executive communication - able to translate technical risk into business terms for the C-suite and Board.
- Experience managing security incidents and breach response in complex, always-on operational environments.
- Bachelorâs degree required; Masterâs degree (e.g., MHA, MBA, MS in Cybersecurity/Emergency Management) strongly preferred.
- Relevant certifications required or strongly preferred: CISM, CISSP, CRISC, or equivalent., * Experience in a combined CISO/CTO or CISO/IT leadership capacity.
- Familiarity with AI governance and securing AI/automation initiatives within clinical workflows.
- Experience serving on industry advisory boards or with organizations such as AEHIS, H-ISAC, or similar healthcare security associations.
- Experience with M&A/integration security (e.g., health system mergers or acquisitions).
Benefits & conditions
- Competitive executive compensation package
- Comprehensive health, dental, and vision benefits
- Retirement savings plan with employer match
- Relocation assistance for candidates relocating to Reno, NV
- The opportunity to lead cybersecurity strategy for one of northern Nevadaâs largest and most respected health systems
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role â technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Best Paying Jobs in Technology
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
What Industries Outside of AI Are Hiring The Most AI Experts?
9 Ways to Make Money Hacking