Job Closed
This listing is no longer active.
Building better workplaces for everyone.
Information Security Officer
Location
United States
Posted
100 days ago
Salary
0
No structured requirement data.
Job Description
Information Security Officer
Bloom
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description This role involves serving as Bloom's Information Security Officer, focusing on building security into the foundation of the organization. - Own the security program end-to-end: designing and implementing controls, architecting systems to prevent breaches, and driving a culture of proactive risk management. - Use data and metrics to measure effectiveness, identify gaps, and demonstrate continuous improvement. - Build and lead a proactive security program with a prevention-first mindset. - Evaluate, refine, and enforce security policies, standards, and procedures. - Conduct regular risk assessments and threat modeling. - Lead tabletop exercises, penetration testing, and red team activities. - Build, operate, and monitor the security program, ensuring effective education of stakeholders. - Serve as the primary owner for HIPAA, HITRUST, and SOC 2 Type II compliance oversight. - Maintain knowledge of NIST standards and emerging healthcare security regulations. - Translate regulatory requirements into engineering specifications and operational procedures. - Partner with Engineering, IT, and DevOps to embed security controls into infrastructure. - Define and track key security metrics and KPIs. - Develop and deliver security awareness training. Qualifications - Bachelor’s degree in information systems, Computer Science, Engineering, or a related technical field, or a minimum of four (4) years of experience in lieu of degree. - 7+ years of progressive experience in information security, with at least 3 years in a security program leadership role. - Previous experience guiding an organization through successful assessments in SOC 2 and/or HITRUST R2. Requirements - Deep expertise in healthcare security and privacy regulations, particularly HIPAA Security Rule requirements. - Hands-on experience achieving and maintaining HITRUST CSF certification and SOC 2 Type II attestation. - Strong working knowledge of NIST frameworks and FedRAMP. - Proven track record implementing technical security controls and managing a comprehensive security program. - Experience with cloud security (AWS, Azure, or GCP) and modern DevSecOps practices. - Demonstrated ability to use metrics and data analysis to drive security program improvements. - Excellent communication skills—able to translate technical risk into business terms for executives and board members. - Relevant certifications: CISSP, CISM, HCISPP, HITRUST CCSFP, or equivalent. - Experience in a high-growth healthcare technology or digital health environment. - First-hand experience building security programs or security-first architectures. - Experience with GRC platforms and security automation tools. Benefits - Competitive compensation. - Comprehensive health coverage. - Long-term growth opportunities. - Remote work environment. - BeBloom™, a proprietary employee training and engagement program. Core Values - Put People First: Uphold and promote a people-first culture within the organization. - Be Stronger Together: Embrace a team player mentality. - Do What’s Right: Adhere to high ethical standards. - Embrace a Growth Mindset: Embrace a culture of continuous learning. - Drive Solutions: Demonstrate ingenuity and skill by sharing ideas and solutions.
Job Requirements
- Bachelor’s degree in information systems, Computer Science, Engineering, or a related technical field, or a minimum of four (4) years of experience in lieu of degree.
- 7+ years of progressive experience in information security, with at least 3 years in a security program leadership role.
- Previous experience guiding an organization through successful assessments in SOC 2 and/or HITRUST R2.
- Deep expertise in healthcare security and privacy regulations, particularly HIPAA Security Rule requirements.
- Hands-on experience achieving and maintaining HITRUST CSF certification and SOC 2 Type II attestation.
- Strong working knowledge of NIST frameworks and FedRAMP.
- Proven track record implementing technical security controls and managing a comprehensive security program.
- Experience with cloud security (AWS, Azure, or GCP) and modern DevSecOps practices.
- Demonstrated ability to use metrics and data analysis to drive security program improvements.
- Excellent communication skills—able to translate technical risk into business terms for executives and board members.
- Relevant certifications: CISSP, CISM, HCISPP, HITRUST CCSFP, or equivalent.
- Experience in a high-growth healthcare technology or digital health environment.
- First-hand experience building security programs or security-first architectures.
- Experience with GRC platforms and security automation tools.
Benefits
- Competitive compensation.
- Comprehensive health coverage.
- Long-term growth opportunities.
- Remote work environment.
- BeBloom™, a proprietary employee training and engagement program.
- Core Values
- Put People First: Uphold and promote a people-first culture within the organization.
- Be Stronger Together: Embrace a team player mentality.
- Do What’s Right: Adhere to high ethical standards.
- Embrace a Growth Mindset: Embrace a culture of continuous learning.
- Drive Solutions: Demonstrate ingenuity and skill by sharing ideas and solutions.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Job Description The Career Exploration and Elective Teacher is a state certified teacher responsible for delivering specific course content in an online environment. The Career Exploration teacher must provide instruction, support, and guidance; manage the learning process; and focus on students’ individual needs. Teachers monitor student progress through Stride K12’s learning management system and work actively with students and parents to advance each student’s learning and to develop and monitor a plan for post-secondary success via online tools.This non-negotiable salary for this position is $43,000 along with the opportunity for an annual bonus through the School. Start Date - 2026-2027 K12, a Stride Company, believes in Education for ANY ONE. We provide families an online option for a high-quality, personalized education experience. Students can thrive, find their passion, and learn in an environment that encourages discovery at their own pace. The mission of Ohio Virtual Academy (OHVA) is to provide an exemplary individualized and engaging educational experience for students by incorporating school and community/family partnerships coupled with a rigorous curriculum along with a data-driven and student-centered instructional model. Student success will be measured by valid and reliable assessment data, parent and student satisfaction, and continued institutional growth within the academic community. Join us! Summary: The Career Exploration and Elective Teacher is a state certified teacher responsible for delivering specific course content in an online environment. The Career Exploration teacher must provide instruction, support, and guidance; manage the learning process; and focus on students’ individual needs. Teachers monitor student progress through Stride K12’s learning management system and work actively with students and parents to advance each student’s learning and to develop and monitor a plan for post-secondary success via online tools. This is a full-time position. Ability to work independently, typically 40+ hours per week is required. Ability to maintain a professional home office without distraction during workday, typically 9-5 (or 8-4) or as defined by the school. Essential Functions: Reasonable accommodations may be made to enable individuals with disabilities to perform the essential duties. - Provides rich and engaging synchronous and asynchronous learning experiences for students - Commitment to personalizing learning for all students - Demonstrates a belief in all students’ ability to succeed and meet high expectations - Differentiates instruction based on student level of mastery - Augments course content according to prescribed policies and procedures using appropriate asynchronous and synchronous tools under guidance from principal and coach - Maintains grade book ensuring student academic integrity, makes student placement and promotion decisions, and alerts administrators to concerns about student performance and progress - Prepares students for high stakes standardized tests - Understands that a primary responsibility is to establish and maintain positive rapport with families and regularly communicates with and responds to students and learning coaches/parents in a timely manner - Supports learning coaches/parents with student curricular and instructional issues, as well as basic troubleshooting in a virtual classroom environment that is in line with academy policies and procedures - Travels as required (on average once per month and/or up to 25% of the time) for face-to-face professional development, student testing, and as required by school - Maintains and effectively applies knowledge of the State, National, and Industry Specific learning standards - Develops effective instructional tools and strategies to supplement and enhance provided curriculum - Collaborates regularly with the school and national professional learning community - Supports a project-based learning model Minimum Required Qualifications: - Bachelor’s degree AND - Active CTE state teaching certification OR - Active high school grade level state teaching certification with CTE Validation - Ability to clear required background check(s) Residency Requirement: Ohio OTHER REQUIRED QUALIFICATIONS: - Ability to work collaboratively with other teachers to interpret and produce numeric, tabular, and graphic representations of student data, and use it to drive instructional decisions - Receptive to receiving coaching on a regular basis with administrators and teacher trainers - Ability to embrace change and adapt to ensure excellent student outcomes - Proficient in Microsoft Excel, Outlook, Word; PowerPoint - Ability to rapidly learn and adapt to new technologies and teaching platforms DESIRED Qualifications: - Experience working with proposed age group - Experience supporting adults and children in the use of technology - Experience teaching in an online (virtual) and/or in a brick-and-mortar environment - Experience with project-based learning Work Environment: The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. - This is a virtual, home-based position Job Type Board Employee_CW The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer. If you are a job seeker with a disability and require a reasonable accommodation to apply for one of our jobs, you can request the appropriate accommodation by contacting stridecareers@k12.com. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities Stride, Inc. is an equal opportunity employer. Applicants receive consideration for employment based on merit without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status, or any other basis prohibited by federal, state, or local law. Stride, Inc. complies with all legally required affirmative action obligations. Applicants will not be discriminated against because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.
Enterprise Security Architect
Navitus Health Solutions, LLCNavitus - Putting People First in Pharmacy - Navitus was founded as an alternative to traditional pharmacy benefit manager (PBM) models. We are committed to removing cost from the drug supply chain to make medications more affordable for the people who need them. At Navitus, our team members work in an environment that celebrates diversity, fosters creativity and encourages growth.
Company Navitus About Us Navitus - Putting People First in Pharmacy - Navitus was founded as an alternative to traditional pharmacy benefit manager (PBM) models. We are committed to removing cost from the drug supply chain to make medications more affordable for the people who need them. At Navitus, our team members work in an environment that celebrates diversity, fosters creativity and encourages growth. We welcome new ideas and share a passion for excellent service to our customers and each other._____________________________________________________________________________________________________________________________________________________________________________________________________________. Current associates must use SSO login option at https://employees-navitus.icims.com/ to be considered for internal opportunities. Pay Range USD $120,524.00 - USD $150,656.00 /Yr. STAR Bonus % (At Risk Maximum) 5.00 - Salaried Non-Management except pharmacists Work Schedule Description (e.g. M-F 8am to 5pm) M-F: 8 am to 5 pm Remote Work Notification ATTENTION: Navitus is unable to offer remote work to residents of Alaska, Hawaii, Maine, Mississippi, New Hampshire, New Mexico, North Dakota, Rhode Island, South Carolina, South Dakota, West Virginia, and Wyoming. Overview Due to growth, we are adding a Enterprise Security Architect to our team! The Enterprise Security Architect is responsible for participating in the design, construction, maintenance, and enhancement of the Navitus IT Security and infrastructure landscape. With minimal leadership and tactical supervision, the Enterprise Security Architect collaborates with clients, staff, IT colleagues, and other stakeholders to identify user requirements, assess available technologies, and recommend solution options to meet the operational needs of Navitus. In addition to administering multiple security tools, this role will architect and implement long-term and short-term solutions to improve the security posture of Navitus. Is this you? Find out more below! Responsibilities How do I make an impact on my team? - Act as subject matter expert on infrastructure, security and network architecture. Serve as a security team advisor on corporate projects, providing technical security consultations on highly complex business projects. - Research utilization and capacity planning of existing technologies to plan for future growth. - Analyze and design effective and clear technical solutions for infrastructure and enterprise security related projects. - Collaborate with other IT teams to perform a Proof of Concept for solutions that show promise. - Assist in the development and implementation of corporate information security policies and procedures, strategies, including deployment, administration, configuration and support of security related systems. - Maintain knowledge in Infrastructure Operations, Data Center Operations, Virtualization (Server, Network, Storage, Desktop, and Application); attend conferences, meet with vendors, and keep current on technology trends. - Analyze, provide guidance and diagnose security incidents and may cause a threat to Navitus’s security and safety. - Recognized as a system expert in multiple core enterprise systems and be able to effectively provide knowledge training to peers. - On-call availability. - Some travel may be required. - Provide after-hours support. - Other duties as assigned Qualifications What our team expects from you? - Bachelor’s degree or a minimum of 7+ years of professional experience in IT Security or Network Architecture required. - (ISC)² CISSP, ISACA CISM or equivalent preferred. - Experience in designing, planning, building, and maintaining an organization's overall security architecture by identifying potential threats, evaluating security risks, and implementing preventative measures to protect sensitive data and IT systems across the enterprise, ensuring compliance with security standards and best practices. - Proven ability to communicate with clients, IT teams and internal business users and provide secure solutions for the services we offer. - Solid understanding of NIST, HIPAA and PCI. - Knowledge of healthcare industry practices and applicable data privacy practices and laws required. - Participate in, adhere to, and support compliance program objectives - The ability to consistently interact cooperatively and respectfully with other employees What can you expect from Navitus? - Top of the industry benefits for Health, Dental, and Vision insurance - 20 days paid time off - 4 weeks paid parental leave - 9 paid holidays - 401K company match of up to 5% - No vesting requirement - Adoption Assistance Program - Flexible Spending Account - Educational Assistance Plan and Professional Membership assistance - Referral Bonus Program – up to $750! #LI-Remote Location : Address Remote Location : Country US
Lead Cyber Security Architect/Engineer
Solstice Advanced MaterialsSolstice Advanced Materials is a leading global specialty materials company that advances science for smarter outcomes. Solstice offers high-performance solutions that enable critical industries and applications, including refrigerants, semiconductor manufacturing, data center cooling, nuclear power, protective fibers, healthcare packaging and more. Recognized for developing next-generation materials through some of the industry's most renowned brands such as Solstice®, Genetron®, Aclar®, Spectra®, Fluka™, and Hydranal™. Partnering with over 3,000 customers across more than 120 countries and territories. Supported by a robust portfolio of over 5,700 patents. Approximately 4,000 employees worldwide drive innovation in materials science.
As a Lead Cybersecurity Architect/Engineer, you will serve as the technical lead for our Security Operations Center and drive the maturity of our threat detection and response capabilities. This role focuses on detection engineering, threat hunting, and incident leadership across enterprise, cloud, OT, and identity environments. The ideal candidate will design and tune detection logic, improve security telemetry coverage, and guide analysts during complex investigations while partnering with infrastructure and platform engineering teams to strengthen overall security visibility. You will report directly to our Sr. Cyber Security Manager, and you'll work remotely. Key Responsibilities - Act as the technical lead and escalation point for the SOC, guiding analysts during complex investigations and major incidents. - Design, implement, and tune threat detections across SIEM, EDR/XDR, and other security telemetry platforms. - Lead and coordinate incident response activities, including investigation, containment, eradication, and recovery. - Develop detection engineering practices aligned with adversary behaviors and frameworks such as MITRE ATT&CK. - Conduct proactive threat hunting and continuously improve detection coverage. - Build and maintain automation, enrichment pipelines, and response playbooks to improve SOC efficiency and investigation speed. - Collaborate with infrastructure, network, cloud, and platform engineering teams to ensure high-quality security telemetry and monitoring coverage. - Define and track SOC performance metrics (alert fidelity, MTTD, MTTR) and lead initiatives to improve detection quality. About Solstice Advanced Materials Solstice Advanced Materials is a leading global specialty materials company that advances science for smarter outcomes. Solstice offers high-performance solutions that enable critical industries and applications, including refrigerants, semiconductor manufacturing, data center cooling, nuclear power, protective fibers, healthcare packaging and more. Solstice is recognized for developing next-generation materials through some of the industry's most renowned brands such as Solstice®, Genetron®, Aclar®, Spectra®, Fluka™, and Hydranal™. Partnering with over 3,000 customers across more than 120 countries and territories and supported by a robust portfolio of over 5,700 patents, Solstice’s approximately 4,000 employees worldwide drive innovation in materials science. For more information, visit Advanced Materials.
Senior Account Executive, Offensive Security Services Consulting
UltraViolet CyberUnified Security Operations, Delivered.
• Own end-to-end sales motions: prospecting, qualification, scoping, proposal development, negotiation, and close. • Build and execute a territory plan that expands new logo acquisition and grows revenue across existing enterprise accounts. • Position the full suite of offensive security services—pen testing, red teaming, cloud security testing, and managed offensive capabilities. • Maintain a strong pipeline with 3x+ quota coverage and predictable forecasting. • Lead consultative discussions with CISOs, engineering leaders, AppSec teams, and procurement stakeholders. • Partner with technical SMEs and consulting leads to shape solutions aligned to client risk, maturity, and regulatory requirements. • Establish multi-threaded relationships within accounts to improve deal velocity and renewal rates. • Deliver compelling client presentations, statements of work, and value-based proposals. • Work closely with the consulting delivery team to scope engagements accurately and ensure high customer satisfaction. • Align with marketing on targeted campaigns, regional events, and ABM programs. • Provide field intelligence and competitive insights back to product, delivery, and leadership teams. • Achieve or exceed quarterly and annual bookings targets. • Maintain accuracy of CRM data, forecasting, and pipeline metrics. • Drive healthy mix of services revenue: net-new logos, expansion, and multi-project programs.


