Remotery

Virtual Chief Information Security Officer – vCISO

Posted Jun 17

This is a fully remote position, open to applicants in United States.

📋 Description

• Take charge of the strategy, design, execution, and ongoing enhancement of Triplemoon's information security and compliance program.

• Ensure continuous adherence to HIPAA and the best practices in healthcare security.

• Spearhead preparation efforts for future SOC 2 certification and other necessary security frameworks.

• Create, maintain, and document security policies, procedures, and controls.

• Organize security incident response, investigations, remediation, and post-incident evaluations.

• Assist with customer security questionnaires, audits, and compliance inquiries.

• Collaborate with leadership to identify, evaluate, and mitigate information security risks.

• Manage and supervise an IT MSP or MSSP responsible for implementing security controls and compliance within SaaS vendors and IT systems.

• Offer tiered support for end-user issues related to hardware, software, and SaaS applications.

• Handle device and asset management.

• Oversee identity and access management, including systems for onboarding and offboarding.

• Keep system documentation, operating procedures, and technology standards updated.

• Suggest and implement enhancements to improve security, scalability, and user experience.

• Conduct security evaluations of third-party vendors and software platforms.

• Maintain essential security documentation, such as BAAs, DPAs, SOC reports, and related compliance artifacts.

• Monitor vendor compliance and assist with periodic risk assessments.


⛳️ Requirements

• Over 7 years of experience in information security, IT administration, compliance, or similar roles.

• Experience acting as a vCISO, security leader, or senior security consultant.

• Comprehensive knowledge of HIPAA Security Rule requirements and healthcare security best practices.

• Proven experience preparing organizations for SOC 2 audits and other compliance frameworks.

• Experience supporting early-stage startups or rapidly growing healthcare organizations.

• Practical experience managing Google Workspace, identity management platforms, endpoint management tools, and SaaS environments.

• Familiarity with security for remote workforces and cloud-first technology settings.

• Exceptional documentation, communication, and stakeholder management abilities.

• Capability to operate independently while serving as a strategic advisor to company leadership.


🏝️ Benefits

• Competitive compensation based on experience and scope.

People also viewed

Nous Research20 hours ago

Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Driven Brands Inc.20 hours ago

Vice President, Chief Information Security Officer, CISO

US flagNorth Carolina OnlyFull-timeCybersecurity / Security Engineer$199.2k – $355.8k/year
ApplyView job
Akamai Technologies1 day ago

Security Incident Responder

US flagMassachusetts OnlyFull-timeCybersecurity / Security Engineer$53.6k – $96.4k/year
ApplyView job
Deutsche Telekom IT Solutions HU1 day ago

Head of Security Team

HU flagHungary OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
CBIZ3 days ago

Lead Security Engineer

US flagNew York OnlyFull-timeCybersecurity / Security Engineer$111k – $180k/year
ApplyView job
Akamai Technologies3 days ago

Senior Security Sales Specialist

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers