Your champion through the ups and downs of recovery.
Director, Information Security
Location
United States
Posted
31 days ago
Salary
$175K - $200K / year
Seniority
Lead
Job Description
Director, Information Security
Bicycle Health
• Build the team, processes, and technical controls required to protect our highly sensitive patient data while navigating the intersection of HIPAA and 42 CFR Part 2. • Own the 12–24 month roadmap to achieve HITRUST Certification, ensuring that our security practices are not only effective but are measurable, auditable, and scalable. • Make our Information Security, Trust & Compliance practices a competitive differentiator for Bicycle Health.
Job Requirements
- Proven Audit Success: 10+ years in Information Security, with direct experience leading at least one organization through a successful HITRUST CSF or SOC2 Type II (healthcare focus) certification.
- Healthcare Regulatory Expertise: Expert-level knowledge of HIPAA and a working understanding of 42 CFR Part 2. Experience managing the privacy nuances of controlled substance prescribing is a significant plus.
- Startup-to-Enterprise Growth: Experience in a Series C+ environment, with the ability to build programs from the ground up while maintaining operational stability.
- Technical Breadth: A strong background in both AppSec (securing SaaS products) and SecOps (defending cloud infrastructure). You should be comfortable speaking "code" with engineers and "risk" with the Board.
- Leadership Persona: Exceptional communication skills with the ability to influence remote teams and drive cross-departmental initiatives.
- Certifications: CISSP, CISM, or CCSFP (Certified CSF Practitioner) are highly desirable.
Benefits
- Discretionary PTO + 8.5 days of additional sick time + 10 paid holidays
- Paid parental leave
- 100% Employer Paid Employee Medical, Dental, and Vision Insurance
- Employer Paid STD & LTD
- 401k
- $50 monthly Remote Work Stipend
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Cybersecurity Engineer (Security Orchestration, Automation, & Response)
Phoenix Data SecurityFounded in 2011, Phoenix Cybersecurity provides services in cybersecurity engineering, operations, sustainment, and managed security. The company helps a range of clients, from gov
Title: Cybersecurity Engineer (SOAR) [JOB ID 20260504] Location: Remote Department: Client Services Full-time Experienced Job Description: Phoenix Cyber is looking for Cybersecurity Engineers to join our client delivery team. This is a remote, work-from-home position with the possibility of minimal travel within the continental United States. Requirements: - Degree in a STEM related discipline and/or a minimum 5 years of experience - 2+ years of experience developing with Python - Working knowledge of scripting languages Bash and PowerShell - At least 3 years of experience in software development with COTS integration - Working knowledge of one or more programming languages such as C#, JavaScript, or Node.js - Experience in API development/consumption - Prior consulting experience Nice to have: - Demonstrated proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security - Experience with SOAR tools, Swimlane, Cyber Triage, Phantom - Experience with container services (Docker, Kubernetes, etc.) - Linux administration experience - Cloud infrastructure experience (AWS, Google, or Azure) - Experience with the ELK (Elasticsearch, Logstash, Kibana) stack, Elastic Cloud on Kubernetes (ECK), Kafka, Beats, and/or Splunk - Experience using Agile methodologies - Prior government, large enterprise experience - Government security clearance Responsibilities: - Provide technical expertise and real-life experience in creating innovative solutions within the cybersecurity space - Develop and implement automations in response to security incidents - Proactively collaborating, developing, and designing security orchestrations with SMEs/engineers, vendors, and project stakeholders - Ability to navigate and adapt to a fast-paced ever-changing environment with a team of like-minded, cross-functional individuals Phoenix Cyber is a national provider of cybersecurity engineering services, operations services, sustainment services and managed security services to organizations determined to strengthen their security posture and enhance the processes and technology used by their security operations team. Phoenix Cyber is an equal opportunity employer and complies with Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, the Vietnam Era Veteran's Readjustment Assistance Act (VEVRAA), all amendments to these regulations, and applicable executive orders, federal, and state regulations. Applicants are considered without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, and/or veteran status. Phoenix Cyber participates in E-Verify to confirm the employment eligibility of all newly-hired employees. To learn more about E-Verify, including your rights and responsibilities, go to https://www.e-verify.gov/
Software Engineer II, Messaging Security Products
Abnormal SecurityAbnormally-Precise, Cloud-Native Email Security
• Design and execute software projects that are crucial to Abnormal’s success, in collaboration with a team of engineers, through conception, design, implementation, launch, and operation • Provide guidance and mentorship for junior members of the team • Collaborate with Technical Program Managers, Product Managers, and GTM teams to implement, verify, and iterate on issues and requests from our customers • Raise the standard of excellence in engineering by actively sharing knowledge within the team and engaging in professional development activities • Hit the ground running by contributing to the team's work within the first two weeks
Chief Information Security Officer
Witan SearchThe Catalyst to Your Success: Specialist Talent Solutions
• Own enterprise cybersecurity strategy and multi-year roadmap in partnership with the CTO • Serve as the executive voice on cybersecurity to the CEO, ELT, board, and Audit Committee, translating technical risk into business and financial terms • Own all SEC cybersecurity disclosure obligations (10-K Item 1C, Item 1.05 material incident determinations, disclosure controls) and executive ownership of cybersecurity-relevant SOX controls • Lead cybersecurity insurance strategy, coverage adequacy, and renewal • Lead executive incident communication and material breach response in coordination with Legal and Investor Relations • Lead, mentor, and develop the existing cybersecurity organisation, including the Director of Cyber Operations • Set cybersecurity strategy across IT, cloud, identity, and end-user computing, aligned with NIST CSF, ISO 27001, and SOC 2 • Own the OT and ICS security programme across six global manufacturing sites — bridging IT and OT without disrupting operations • Provide executive cybersecurity oversight for the connected-product platform (millions of users), including secure-by-design standards, DevSecOps, and PCI-DSS compliance for payment products • Own AI cybersecurity strategy: governance for AI tool adoption, deployment of AI-enabled security platforms, and response to AI-enabled offensive threats • Own the third-party cybersecurity risk programme and executive relationships with strategic vendors, MSSPs, audit firms, and outside cyber counsel
Security Account Executive – Commercial Select
CiscoCisco is a publicly-traded, award-winning global technology solutions firm. Established in 1984 by a group of Stanford University computer scientists, Cisco has
• Drive sales in the cybersecurity sector • Enhance security resilience for customers and communities • Build strong executive and internal relationships • Seek opportunities to showcase Cisco's security portfolio • Develop and lead security account plans and strategies • Drive double-digit revenue growth • Forecast and report activities in line with expectations using Salesforce and Clari • Identify major projects and lead initiatives to improve product and services revenue



