Director, Security

Enovis

$130K — $180K *
Healthcare
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years leading global cybersecurity teams, preferably in medical technology or healthcare.
  • Experience in large-scale IT integrations and M&A within multi-business-unit organizations.
  • Track record of streamlining security landscapes into scalable programs.
  • Hands-on knowledge of HIPAA, HITRUST, NIST CSF, and SOC 2 frameworks.
  • Experience in managing incident responses for significant cybersecurity incidents.
  • Familiarity with cloud security (AWS, Azure, GCP) and zero trust architecture.
  • Excellent communication skills for translating security risks into business language.

Responsibilities

  • Develop and execute a global cybersecurity strategy aligned with corporate vision.
  • Mature the enterprise Information Security Program based on NIST CSF and healthcare frameworks.
  • Define and enforce security policies and procedures across all global units.
  • Present security posture and risk metrics to executive leadership.
  • Lead the cyber risk management program and maintain risk registers.
  • Oversee 24x7 Security Operations Center for threat detection and response.
  • Lead incident response programs and manage breach investigations.

Benefits

  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • Spending and Savings Accounts
  • 401(k) Plan
  • Vacation, Sick Leave, and Holidays
  • Income Protection Plans
  • Discounted Insurance Rates
  • Legal Services
Full Job Description

What You'll Do

At Enovis™ we pay attention to the details. We embrace collaboration with our partners and patients, and take pride in the pursuit of scientific excellence — with the goal of transforming medical technology as we know it.

Because that’s how we change the lives of patients for the better. And that’s how we create better together. Why work at Enovis? .

As a key member of the IT Team you will play an integral part in helping Enovis drive the medical technology industry forward through transforming patient care and creating better patient outcomes.

Job Title:

Director, Security

Reports To:

Chief Information Officer

Location:
Lewisville, Texas

Job Title/High-Level Position Summary:

As a key member of the Enovis Global IT leadership team reporting directly to the CIO, the Director of IT Security serves as the organization's senior cybersecurity leader, responsible for designing, implementing, and governing the global enterprise information security program.

The ideal candidate brings deep healthcare security expertise, a proactive risk management mindset, and the executive presence to influence at all levels of the organization. This is a hands-on leadership opportunity to upgrade cybersecurity to the next level of protection while embedding security-by-design into every aspect of our enterprise IT evolution.

Key Responsibilities:

Strategy & Governance

  • Develop and execute a cohesive global cybersecurity strategy that directly supports the "One Enovis" IT transformation, corporate vision, and the drive for profitable, capital-efficient growth.
  • Develop, own, and continuously mature the enterprise Information Security Program, aligned to NIST CSF, ISO 27001, and healthcare-specific frameworks.
  • Define and enforce enterprise security policies, standards, and procedures across all global business units.
  • Present security posture, risk metrics, and program updates to executive leadership and external auditors.
  • Lead the organization's cyber risk management program, including risk assessment, risk register maintenance, and risk treatment planning.
  • Manage the annual security budget; optimize spend across tools, services, staffing, and managed security providers.

Threat Management & Security Operations

  • Oversee the 24x7 Security Operations Center (SOC) ensuring rapid detection and response to threats.
  • Lead the Incident Response (IR) program: maintain and exercise IR plans, manage breach investigations, coordinate with legal, PR, and regulators.
  • Drive vulnerability management, penetration testing, and programs to proactively identify and remediate exposures across all environments.
  • Govern threat intelligence operations to anticipate emerging threats targeting healthcare organizations globally.

Architecture & Identity

  • Lead security architecture review for all major infrastructure and application initiatives, ensuring security-by-design.
  • Oversee identity and access management (IAM/PAM) strategy, including MFA enforcement, SSO, and privileged access governance.

Compliance & Regulatory

  • Lead enterprise cybersecurity risk assessment and regulatory compliance including HIPAA, FDA cybersecurity requirements for medical devices, GDPR, and other global standards.

Security Awareness & Culture

  • Design and execute an enterprise-wide security awareness and training program tailored to all staff globally.
  • Run simulated phishing and social engineering campaigns; track and report behavior metrics to leadership.
  • Act as a security champion and culture carrier, fostering a 'security is everyone's responsibility' mindset across the global workforce.

Minimum Basic Qualifications:

  • 7+ years' experience leading global cybersecurity teams and programs, preferably in medical technology, healthcare, or other highly regulated industries.
  • Demonstrated success leading cybersecurity aspects of large-scale IT integrations, ERP transitions, systems harmonization, and M&A integrations within complex, multi-business-unit organizations.
  • Proven ability to streamline and mature diverse security landscapes into efficient, scalable, enterprise-grade programs while supporting the unique needs of individual business units.
  • Demonstrated experience in healthcare or another highly regulated industry.
  • Deep hands-on knowledge of HIPAA Security Rule, HITRUST CSF, NIST CSF, and SOC 2 frameworks.
  • Proven track record leading incident response for significant cybersecurity events, including ransomware and data breach scenarios.
  • Experience managing and reporting to executive leadership and Board-level Risk/Audit committees.
  • Strong knowledge of cloud security (AWS, Azure, GCP), zero trust architecture, and modern IAM/PAM solutions.
  • Excellent communication skills: ability to translate complex security risk into clear business language.

Travel:

  • Up to 25%

“Creating better together”. It’s the Enovis purpose, and it’s what drives us and empowers us every day on a global scale. We know that the power to create better – for our customers, our team members, and our shareholders – begins with having the best team, pursuing common goals, operating at the highest levels, and delivering extraordinary outcomes.

What does creating better together mean to us at Enovis? Discover the “why” behind our purpose, values and behaviors:

 Our Enovis Purpose, Values and Behaviors on Vimeo

We offer a comprehensive benefits package that includes:

  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • Spending and Savings Accounts
  • 401(k) Plan
  • Vacation, Sick Leave, and Holidays
  • Income Protection Plans
  • Discounted Insurance Rates
  • Legal Services

Join us in creating better together.

Similar Jobs

More Jobs at Enovis

More Healthcare Jobs

Find similar Director, Security jobs: