Director, Information & Cyber Security (32561)

Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Security, Cybersecurity, Information Technology, Business, Risk Management, Healthcare Administration, or a related field.
  • 10+ years in Governance, Risk & Compliance, Information Security, Internal Audit, or Cybersecurity roles.
  • 5+ years of leadership experience managing GRC, Compliance, Risk, or Security teams.
  • Experience in healthcare, medical devices, healthcare technology, payer, provider, or life sciences industries.
  • Strong knowledge of HIPAA and NIST compliance frameworks.

Responsibilities

  • Lead enterprise-scale IAM transformation programs with a focus on strategic direction for IGA and PAM.
  • Oversee the design and governance of IAM solutions addressing identity lifecycle and compliance needs.
  • Serve as the technical advisor for identity governance and application onboarding challenges.
  • Mentor cross-functional technical teams, promoting innovation and delivery excellence.
  • Collaborate with executive stakeholders to develop IAM roadmaps and strategies aligned with business objectives.
  • Support business development by creating IAM solutions and identifying new service opportunities.
  • Establish IAM frameworks and security policies to meet organizational goals.

Benefits

  • Opportunities for professional development and growth.
  • Collaborative work environment with cross-functional teams.
  • Engagement in meaningful projects that impact security and compliance in healthcare.
  • Supportive leadership encouraging innovation and strategic thinking.
Full Job Description
GI Alliance is seeking an experienced Director of Identity & Access Management.

Position Summary

The Identity and Access Management Director directs the strategy, governance, and operational execution of the enterprise Identity and Access Management (IAM) program to ensure secure, reliable, and compliant access to critical business systems, applications, and data. Leads the evolution of identity services, access governance, privileged access management, and authentication technologies to support organizational growth, regulatory requirements, and cybersecurity objectives. Partners with executive leadership, business stakeholders, infrastructure teams, application owners, and security functions to align identity capabilities with business priorities while enabling a secure and frictionless user experience. Drives the adoption of modern identity principles, including Zero Trust, automation, and cloud-based identity services, to strengthen the organization's security posture and operational efficiency.

Responsibilities/Duties/Functions/Tasks:

Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Key Responsibilities
  • Lead enterprise-scale Identity Access Management (IAM) transformation programs, providing strategic direction for Identity Governance Administration (IGA) and Privileged Access Management (PAM) initiatives across complex client environments
  • Oversee the design, architecture, and governance of IAM solutions leveraging Identity technologies to address identity lifecycle management, privileged access controls, compliance, and security requirements
  • Serve as the executive technical advisor and escalation point for complex identity governance, privileged access, application onboarding, and modernization challenges, driving successful outcomes and mitigating security and operational risks
  • Lead and mentor cross-functional teams of technical specialists while fostering delivery excellence, innovation, and growth across IAM programs
  • Partner with executive stakeholders, security leaders, application owners, and business executives to develop IAM roadmaps, align identity security strategies with business objectives, and establish leading practices for governance and risk management
  • Support business development efforts through solution development, proposal creation, thought leadership, and identification of opportunities to expand identity security, governance, and privileged access services within existing and prospective accounts
  • Act with integrity, professionalism, and personal responsibility to uphold a respectful and courteous work environment
  • Establish IAM frameworks, security policies, standards, and procedures aligned with organizational objectives.

Regulatory Compliance
  • Lead compliance initiatives as they relate to IMA in the context of healthcare regulations, including HIPAA Privacy, Security, and Breach Notification Rules.
  • Ensure IAM compliance with applicable federal, state, and industry regulations affecting healthcare organizations.
  • Participate in internal and external compliance audits.
  • Participate in regulatory examinations and respond to audit findings.
  • Monitor regulatory changes and assess organizational impact.

Security Frameworks & Controls
  • Develop and maintain security controls aligned with:
    • NIST Cybersecurity Framework (CSF)
    • NIST SP 800-53
    • NIST SP 800-171
    • SOC 2 Trust Services Criteria
    • Sarbanes-Oxley (SOX) IT General Controls (ITGCs)
  • Evaluate control effectiveness and recommend improvements in the context of IAM
  • Partner with IT and Security teams to ensure technical controls support regulatory and business requirements.

Audit & Assurance
  • Participate and assist TSA GRC in internal and external audits including HIPAA, SOC 2, SOX, and customer security assessments.
  • Track remediation efforts through completion.

Qualifications
  • Bachelor's degree in Information Security, Cybersecurity, Information Technology, Business, Risk Management, Healthcare Administration, or a related field.
  • 10+ years of progressive experience in Governance, Risk & Compliance, Information Security, Internal Audit, or Cybersecurity.
  • 5+ years of leadership experience managing GRC, Compliance, Risk, or Security teams.
  • Experience within the healthcare, medical device, healthcare technology, payer, provider, or life sciences industry.
  • Demonstrated experience leading enterprise compliance and risk management programs.

Candidates must possess strong working knowledge of:
  • HIPAA Privacy Rule, Security Rule, and Breach Notification Rule
  • NIST Cybersecurity Framework (CSF)
  • NIST Special Publication 800-53
  • SOC 2 Trust Services Criteria and audit readiness
  • Sarbanes-Oxley (SOX), including IT General Controls (ITGCs)
  • Security governance and policy development
  • Audit management and regulatory examinations
  • Incident response governance

Preferred Qualifications
  • Master's degree in Cybersecurity, Information Systems, Business Administration, Healthcare Administration, or related discipline.
  • Professional certifications such as:
    • Certified Information Systems Security Professional (CISSP)
    • Certified Information Security Manager (CISM)
    • Certified in Risk and Information Systems Control (CRISC)
    • Certified Information Systems Auditor (CISA)
    • Certified in Healthcare Privacy and Security (CHPS)
    • Healthcare Information Security and Privacy Practitioner (HCISPP)


Key Competencies
  • Executive communication and presentation skills
  • Strategic leadership
  • Regulatory interpretation and implementation
  • Enterprise risk management
  • Analytical problem-solving
  • Cross-functional collaboration
  • Program and project management
  • Audit readiness and remediation
  • Policy development and governance
  • Change management

Equipment Operated: This role routinely uses standard office equipment such as computers, phones, and fax machines.

Work Environment: This job operates in professional office environments.

Physical Requirements: While performing the duties of this job, the employee is occasionally required to stand; walk; sit; use hands to finger, handle, or feel objects, tools or controls; reach with hands and arms; climb stairs; balance; stoop, kneel, crouch or crawl; talk or hear; and taste or smell. The employee must occasionally lift or move up to 50 pounds. Specific vision abilities required by the job include close vision, distance vision, color vision, peripheral vision, depth perception and the ability to adjust focus.

Qualifications

Education/Experience:
  • Bachelor s degree in computer science or other technical/scientific discipline.
  • 10+ years related work including 5+ years as in security.
  • 2+ years in a dedicated information security role at a senior level including cybersecurity experience specializing in enterprise security optimization
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, and NIST.
  • CISSP or equivalent certification required.

Essential Skills and Experience:
  • Leadership: a demonstrated ability to lead people and get results through others.
  • Strategy and planning: an ability to think ahead and plan over a 12-24 month time span.
  • Demonstrated understanding of Information Security best practices.
  • Problem analysis and problem resolution at both a strategic and functional level.
  • Experience in developing and deploying security specific solutions including the automation of repeatable security tasks and controls
  • Experience with security vulnerability and penetration tools, remediation, and processes.
  • Strong customer orientation.
  • Must be willing to travel

Performance Requirements:
  • Excellent communication skills, both written and verbal.
  • Proficient technical (computer) skills.
  • Ability to multi-task and prioritize.
  • Self-motivated with initiative.
  • Strong sense of ethics.
  • Ability to manage conflict and resolve problems.

Equipment Operated: This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets and fax machines.

Work Environment: This job operates in professional office environments.
  • Physical Requirements: While performing the duties of this job, the employee is occasionally required to stand; walk; sit; use hands to finger, handle, or feel objects, tools or controls; reach with hands and arms; climb stairs; balance; stoop, kneel, crouch or crawl; talk or hear; and taste or smell. The employee must occasionally lift or move up to 30 pounds. Specific vision abilities required by the job include close vision, distance vision, color vision, peripheral vision, depth perception and the ability to adjust focus.


No phone calls or agencies, please.

About The GI Alliance Management LLC Company

GI Alliance Management LLC Careers

There has never been a better time to join the team at GI Alliance Management LLC, a leader in gastrointestinal services. This company stands as a beacon of innovation and leadership in the healthcare sector.

Work You’ll Do

Join GI Alliance Management LLC's top-tier team to assist in transforming the landscape of gastrointestinal health services. This company leads with a commitment to excellence and a strategy focused on digital and medical innovation. Transform healthcare services with the brightest minds at GI Alliance Management LLC. This company holds a unique position in the marketplace, at the crossroads of healthcare expertise, technology, and transformative leadership. Engage with a professional team dedicated to advancing healthcare through cutting-edge technology and patient-centered care. Collaborate with the largest network of gastrointestinal health experts – a team dedicated to pioneering advancements in the field.

Introducing the GI Alliance Management LLC Professional Development Program

The team is building a market-leading program to ensure that all members master their skills in healthcare management and patient care, utilizing the latest in medical technology and practice management.

Do Innovative Work

Be part of a team that delivers targeted healthcare solutions through a depth and breadth of medical expertise and innovation that’s second to none.

Do Innovative Work

Engage in work that pushes the boundaries of traditional healthcare, providing solutions that enhance patient outcomes and streamline operations.

Be Part of a Great Team

Work within a diverse team that values leadership and teamwork, harnessing a wide range of medical technology and knowledge to improve patient care.

Future-proof Your Career

Advance your career with GI Alliance Management LLC, where the opportunities for growth and professional development are abundant. Benefit from unmatched training, development, and certification support.

Explore

Discover how GI Alliance Management LLC is leading the way in predictive healthcare management and patient care excellence.

The GI Alliance Management LLC Commitment to Diversity and Innovation

The combined expertise and dedication to innovation help clients and patients overcome challenges and lead healthier lives. Clients and patients rely on GI Alliance Management LLC for new strategies and solutions that drive growth and improvement in healthcare.

Stay Connected

Join the Team

Search open positions that match your skills and interests. GI Alliance Management LLC looks for passionate, curious, creative, and solution-driven team players. SEARCH GI ALLIANCE MANAGEMENT LLC JOBS

Keep Up to Date

Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the professionals who work at GI Alliance Management LLC.

READ CAREERS BLOG

Job Alert Emails

Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Explore the exciting and rewarding opportunities that await in the field of gastrointestinal health services.
Learn more about The GI Alliance Management LLC Company
Industry

Similar Jobs

More Jobs at The GI Alliance Management LLC Company

More Information Technology Jobs

Find similar Director, Information & Cyber Security (32561) jobs: