Adoreal

Adoreal

Adoreal is a comprehensive aesthetics companion that offers a range of services from quick maintenance treatments to long-term procedures. They provide information, reminders, and support throughout the aesthetic journey, along with easy access to medi...

Health Care Providers & Services
1-10

Description

  • Own and execute the company’s security strategy, including incident response, vulnerability management, and threat detection.
  • Lead HIPAA compliance initiatives by conducting risk assessments and implementing required security controls.
  • Develop, maintain, and document security policies, procedures, and the Security Incident Response Plan.
  • Conduct breach risk assessments and manage HIPAA notification procedures and documentation of security events.
  • Oversee IT infrastructure, including MDM, identity management, endpoint protection, and network security.
  • Lead the transition from BYOD to company-owned devices and implement secure device lifecycle management.
  • Implement and manage SSO, MFA, and privileged access management across the organization.
  • Ensure business continuity through disaster recovery planning and regular testing.
  • Develop contractor security policies, vendor security assessment frameworks, and manage vendor HIPAA compliance.
  • Hire, mentor, and manage the IT Systems Administrator and IT Security Administrator while reporting to executive leadership and the board.

Requirements

  • 6+ years of progressive IT experience, including at least 2 years in a leadership or management role.
  • Deep expertise in information security, including incident response, vulnerability management, and security architecture.
  • Demonstrated HIPAA compliance experience in a healthcare or healthcare technology environment.
  • Hands-on experience with MDM solutions, with JumpCloud preferred, as well as identity providers and endpoint protection platforms.
  • Strong understanding of cloud security, with AWS preferred, network security, and the modern threat landscape.
  • Experience building and leading IT teams, including hiring and developing talent.
  • Excellent written and verbal communication skills, including the ability to present to executive and board audiences.
  • CISSP, CISM, or an equivalent security certification preferred.
  • Experience building IT/security functions from the ground up at a growth-stage company preferred.
  • Familiarity with GDPR compliance preferred.
  • Experience with security monitoring tools such as Datadog, CloudWatch, and Cloudflare preferred.
  • Background in healthcare technology or regulated industries preferred.
  • Must have current and valid authorization to work in the country where applying; no visa sponsorship is available.

Benefits

  • Healthcare coverage for you and your family.
  • Paid time off and paid holidays.
  • Performance-based bonuses.
  • Company equity and ownership opportunities.
  • Fully remote work environment with flexible schedules.
  • Collaborative, people-first team culture.
  • Promotion and growth opportunities tied to performance.
  • Accommodations for disabilities available upon request during the recruitment process.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Anti-Bot Engineer (Remote, Full-Time) [HR177]

Smart Working Internet Software & Services

Smart Working is hiring a senior Anti-Bot Engineer to build and operate large-scale web scraping systems that reliably extract data from highly protected, fast-changing websites.

Docker Go HTTP JavaScript Kubernetes Playwright Puppeteer Python Rust Selenium
1 hour, 38 minutes ago

Senior Microsoft 365 Engineer

Your Business Internet Software & Services

NRI North America is hiring a Senior Microsoft 365 Engineer to support managed services clients remotely by resolving escalations and optimizing Microsoft 365 environments, with a primary focus on M365 security.

Active Directory PowerShell
1 hour, 44 minutes ago

Cyber Security Strategist

Civica 1K-5K Internet Software & Services

Civica is seeking a Cyber Security Strategist to shape security architecture, integration, and governance across its enterprise and cloud environments supporting critical public services.

AWS Azure Cybersecurity DevSecOps Docker GCP GitHub Kubernetes WAF
2 hours, 6 minutes ago

Security Engineer, DevSecOps - Mexico

JumpCloud 251-1K Internet Software & Services

JumpCloud is hiring a remote Security Engineer for its DevSecOps team in Mexico to design and build cloud security automation, detection, and vulnerability management solutions that protect the company’s data and infrastructure.

AWS DevSecOps GCP GitHub Actions Go Python SIEM Terraform
4 hours, 7 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers