empty

Chief Information Security Officer

United Health Services

Job Description

Posted on: 
September 17, 2024

Summary and company overview

United Health Services is a not-for-profit healthcare system serving more than 500,000 people in Upstate New York’s Southern Tier region. We offer integrated healthcare services across 60 locations, including four hospitals, three walk-in centers, and 22 primary care offices, in addition to home care services and senior living facilities. The United Health Services system employs more than 6,300 people and comprises 600+ providers who are all committed to providing and supporting the delivery of exceptional patient care.

United Health Services employees and providers are “LOVED!” This means we’re Living Our Values Every Day. Here, you’ll join a team that is dedicated to values-based, coordinated patient care. Every day, we outwardly live our Values of Compassion, Trust, Respect, Teamwork, and Innovation.

This role requires sound knowledge of business management and a working knowledge of cybersecurity technologies covering the corporate network as well as the broader digital ecosystem. The CISO is responsible for establishing and maintaining the cybersecurity program to ensure that information assets and associated technology, applications, systems, infrastructure and processes are adequately protected in the digital ecosystem in which we operate.

The CISO will partner with executive management to determine acceptable levels of risk for the organization. They will proactively work with business units and ecosystem partners to implement practices that meet agreed-on policies and standards for cybersecurity. The CISO understands and can articulate the impact of cybersecurity on (digital) business, and be able to communicate this to the board of directors and other senior stakeholders.

The CISO is knowledgeable about both internal and external business environments, and ensure that information systems are maintained in a fully functional and secure mode and are compliant with legal, regulatory and contractual obligations. They serve as the process owner of the appropriate second-line assurance activities not only related to confidentiality, integrity and availability of information owned or processed by the business, but extend their expertise to aid the organization in meeting safety, privacy, reliability and resilience requirements. The CISO understands that securing information assets and associated technology, applications, systems and processes in the wider ecosystem in which the organization operates is as important as protecting information within the organization's perimeter.

Responsibilities

The CISO is responsible for implementing and running the enterprise cybersecurity program. That will involve identifying, evaluating and reporting on some or all of legal and regulatory, IT, and cybersecurity risk to information assets, while supporting and advancing business objectives.

Job Requirements

Minimum Required:

  • Bachelor’s degree in business/healthcare administration or a healthcare/technology-related field required.
  • Five (5) years experience managing IT Privacy and Security

Preferred

  • Ten (10) years experience managing IT Privacy and Security
  • Master’s degree in business/healthcare administration or a healthcare/technology-related field.
  • Previous experience as CISO and/or leadership role within IT SecuritySpecific knowledge of risk management principles and models.
  • Deep knowledge of business management practices and principles.
  • Knowledge of legislation and regulations pertaining to the healthcare industry.
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, and NIST.
  • Experience with contract and vendor negotiations and management including managed services.

License & Certification

Minimum Required:

  • Certification in CISSP, HCISSP, CISA, CISM, or CHISL required.

Additional commentary

Shift: Day

Hours per week: 40

Salary range: $70.14 - $105.24 per hour, depending on experience.

About New York’s Southern Tier

As an employee of United Health Services, you’ll call the Southern Tier, or more specifically, the Greater Binghamton area, home. Known for entertainment and restaurants, craft brews, outdoor experiences, minor-league sports, family-friendly events, and a keenness for local history (like our connection to the Twilight Zone and our six antique carousels), Greater Binghamton offers something for everyone. We’re a short drive away from the Finger Lakes region in Central New York, three hours from New York City, and just shy of four hours from Niagara Falls, Canada.


United Health Services in an Equal Opportunity Employer.

United Health Services, Inc. and the members of the UHS System neither are affiliated with, sponsored, endorsed nor approved by, nor otherwise associated with, Universal Health Services, Inc. (NYSE: UHS), UHS of Delaware, Inc. nor their affiliates, which can be found at www.uhsinc.com.

Summary and company overview

United Health Services is a not-for-profit healthcare system serving more than 500,000 people in Upstate New York’s Southern Tier region. We offer integrated healthcare services across 60 locations, including four hospitals, three walk-in centers, and 22 primary care offices, in addition to home care services and senior living facilities. The United Health Services system employs more than 6,300 people and comprises 600+ providers who are all committed to providing and supporting the delivery of exceptional patient care.

United Health Services employees and providers are “LOVED!” This means we’re Living Our Values Every Day. Here, you’ll join a team that is dedicated to values-based, coordinated patient care. Every day, we outwardly live our Values of Compassion, Trust, Respect, Teamwork, and Innovation.

This role requires sound knowledge of business management and a working knowledge of cybersecurity technologies covering the corporate network as well as the broader digital ecosystem. The CISO is responsible for establishing and maintaining the cybersecurity program to ensure that information assets and associated technology, applications, systems, infrastructure and processes are adequately protected in the digital ecosystem in which we operate.

The CISO will partner with executive management to determine acceptable levels of risk for the organization. They will proactively work with business units and ecosystem partners to implement practices that meet agreed-on policies and standards for cybersecurity. The CISO understands and can articulate the impact of cybersecurity on (digital) business, and be able to communicate this to the board of directors and other senior stakeholders.

The CISO is knowledgeable about both internal and external business environments, and ensure that information systems are maintained in a fully functional and secure mode and are compliant with legal, regulatory and contractual obligations. They serve as the process owner of the appropriate second-line assurance activities not only related to confidentiality, integrity and availability of information owned or processed by the business, but extend their expertise to aid the organization in meeting safety, privacy, reliability and resilience requirements. The CISO understands that securing information assets and associated technology, applications, systems and processes in the wider ecosystem in which the organization operates is as important as protecting information within the organization's perimeter.

Apply now