The GW Medical Faculty Associates logo
The GW Medical Faculty Associates

The largest academic physician practice in the Metro DC area with over 700 providers and 52 clinical specialties.

Information Security Manager

Location

District Of Columbia + 1 moreAll locations: District Of Columbia, Washington

Posted

2 days ago

Salary

$130.3K - $170.9K / year

Seniority

Senior

Bachelor DegreeEnglishCloudCyber Security

Job Description

• Conduct comprehensive security and third-party risk assessments to ensure initiatives align with MFA policies, standards, and regulatory requirements, including HIPAA, HITRUST, HITECH, and other applicable healthcare regulations • Identify risks and recommend remediation strategies using risk-based prioritization, mitigating controls, and continuous improvement methodologies • Evaluate, develop, and recommend information security assessment tools, processes, and techniques • Develop and deliver HIPAA security training and awareness programs • Collaborate with internal stakeholders to identify, track, manage, and report security risks • Build, enhance, and support security operations capabilities, including monitoring and response • Develop, implement, and maintain security policies, standards, and procedures to support enterprise-wide risk mitigation • Contribute to and maintain best practices, methodologies, documentation, and templates • Support and coordinate compliance-focused programs and initiatives across the organization • Mentor and support team members on information security practices and standards • Support environments that include hybrid on-premises infrastructure, cloud platforms, and SaaS solutions • Participate in a 24x7 on-call rotation for Information Security • Perform other duties as assigned that are consistent with the role and organizational needs

Job Requirements

  • Bachelor’s degree in Computer Science, Information Security, or a related field preferred
  • Equivalent combination of education and relevant experience will be considered
  • Certifications (Preferred): CISSP, CISM, CISA, SANS certifications, Security+
  • Working knowledge of HIPAA Security Rule, NIST Cybersecurity Framework, and PCI requirements
  • Understanding of information security frameworks and industry best practices
  • Experience supporting enterprise security operations
  • Experience working in virtualized and cloud environments
  • Familiarity with Electronic Health Record (EHR) systems, PACS, and connected medical devices
  • Hands-on experience implementing, operating, and maintaining security tools and technologies
  • Ability to independently manage security assessments and security-related projects
  • Change management and project management experience preferred

Related Categories

Related Job Pages

More Security Engineer Jobs

Kraken Digital Asset Exchange logo

Security Associate, M&A & Partnerships

Kraken Digital Asset Exchange

We put the power in your hands to buy, sell, and trade digital currency 🌏

Full TimeRemoteTeam 1,001-5,000Since 2011H1B No Sponsor

Security Associate focusing on M&A diligence and integrations at Kraken

United States
$83.4K - $166.8K / year
OtherRemoteTeam 11-50H1B No Sponsor

Avint is hiring a Penetration Tester (Ethical Hacker / Red Team Operator) to support and protect critical systems within the HACS program at FRTIB HQ. In this role, you’ll conduct offensive security testing, identify vulnerabilities, and provide action...

United States
PatientPoint logo

Security Architect

PatientPoint

The patient engagement platform more providers trust.

Full TimeRemoteTeam 501-1,000H1B Sponsor

The Security Architect will design, implement, and oversee security strategies protecting enterprise systems, networks, applications, and data from cyber threats, embedding security into all technology solutions. This involves developing secure architecture frameworks, defining security controls for cloud/on-premises environments, and collaborating with engineering and DevOps teams to integrate security into the SDLC.

United States
$124K - $177K / year