freehire launches on Product Hunt on 26 August.

Follow →

Cybersecurity Manager

Summary

Leads Envision Radiology’s cybersecurity program, aligning strategy with HIPAA/HITRUST/NIST/PCI DSS while overseeing security ops, compliance, and risk management for a healthcare-focused IT environment.

Envision Radiology is looking for a Full Time Cybersecurity Manager to join our IT Team!
|Position Pay Range: $143,480 - $179,350 |Monday - Friday: 8:00am -4:00 pm|

Summary/Objective

The Cybersecurity Manager is responsible for leading Envision Radiology's enterprise cybersecurity program by integrating cybersecurity operations, governance, risk management, and regulatory compliance into a unified security strategy. This position leads the cybersecurity team and partners with Information Technology, Compliance, Privacy, Legal, Human Resources, and business leaders to balance strategic planning with operational oversight of security governance, incident response, and security assessments in alignment with HIPAA, HITRUST, the NIST Cybersecurity Framework, and PCI DSS.

Essential Functions

1. Leads and continuously matures Envision Radiology's enterprise cybersecurity program by developing strategy, establishing priorities, managing cybersecurity personnel, and overseeing the organization's overall security posture in alignment with business objectives and regulatory requirements.

2. Directs cybersecurity operations by overseeing security technologies, including endpoint protection, endpoint detection and response (EDR), identity security, vulnerability management, email security, cloud security, and security monitoring, while ensuring effective detection, prevention, response, and recovery from cybersecurity threats and incidents.

3. Develops, maintains, and enforces information security policies, standards, procedures, governance processes, and the organization's cybersecurity training and security awareness program to promote a culture of security and ensure alignment with HIPAA, HITRUST, the NIST Cybersecurity Framework, PCI DSS, and other applicable regulatory and industry frameworks.

4. Drives enterprise cyber risk management activities by partnering with Compliance and business stakeholders to identify, assess, prioritize, document, and mitigate technology risks, and oversees security assessments, audits, regulatory reviews, customer security questionnaires, and compliance initiatives.

5. Provides governance and oversight for Identity and Access Management (IAM), privileged access, authentication standards, access reviews, and security architecture while partnering with IT Operations and Infrastructure teams to integrate security controls throughout the technology environment.

6. Oversees cybersecurity incident response, vulnerability remediation, third-party security assessments, vendor risk management, and security due diligence activities for strategic initiatives, acquisitions, and business partnerships.

7. Evaluates, recommends, implements, and optimizes cybersecurity technologies, controls, and strategic initiatives that strengthen Envision Radiology's security posture while balancing operational effectiveness, regulatory compliance, and business enablement.

8. Prepares and presents cybersecurity metrics, risk assessments, program maturity updates, and strategic recommendations to executive leadership while serving as the organization's trusted advisor on cybersecurity governance, risk, and compliance matters.

9. Performs other duties as assigned. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Competencies

1. Leadership.

2. Strategic.

3. Governance.

4. Technical.

5. Communication.

6. Collaboration.

7. Compliance.

8. Analytical.

9. Adaptability.

10. Judgment.

Supervisory Responsibility

The Cybersecurity Manager provides direct supervision and oversight to Cybersecurity team staff and is responsible for the performance management and development of direct reports.

Work Environment

This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets and fax machines.

Physical Demands

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this job, the employee is regularly required to use hands and fingers to handle, feel or operate objects, tools or controls, and reach with hands and arms. The employee is frequently required to talk and hear.

Travel

Minimal travel is expected for this position.

Job Qualifications

Job Qualifications/Experience:

• Seven (7) or more years of progressively responsible experience in cybersecurity, information security, or technology risk management.

• Three (3) or more years of leadership experience managing cybersecurity personnel, security programs, or enterprise security initiatives.

• Experience leading both cybersecurity operations and governance, risk, and compliance (GRC) functions.

• Experience supporting healthcare or another highly regulated industry preferred.

• Experience with enterprise cybersecurity technologies, including endpoint protection, EDR, vulnerability management, identity security, cloud security, email security, and security monitoring platforms.

• Experience leading security audits, regulatory assessments, customer security reviews, and technology risk assessments.

• Experience developing information security policies, standards, governance processes, and security awareness programs.

• Experience managing third-party security assessments, vendor risk, and technology risk.

• Strong understanding of Microsoft enterprise technologies, cloud platforms, identity services, and modern cybersecurity architectures.

• Excellent written, verbal, interpersonal, and presentation skills with the ability to communicate effectively with both technical and non-technical audiences.

Education/Certifications:

• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field, or an equivalent combination of education and experience.

• One or more of the following certifications preferred: CISSP, CISM, CRISC, HCISPP, Security+, Microsoft Azure Security Engineer Associate (AZ-500) or equivalent cloud security certification, HITRUST Certified CCSFP.

Additional Eligibility Qualifications

None required for this position. Compliance Adheres to Envision’s Code of Conduct and Compliance Policies and attends annual Compliance training as set forth by the Company.

Company Benefits

The following benefit programs are available to eligible employees. Benefits eligibility is dependent on a variety of factors, including employee classification.

• Health Benefits: Medical/Dental/Vision/Life Insurance • Company Matched 401k Plan

• Employee Stock Ownership Plan • Paid Time Off + Paid Holidays

• Employee Assistance Program

Other Duties

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

OSHA Exposure Rating: 1

It is reasonably anticipated NO employees in this job classification will have occupational exposure to blood and other potentially infectious body fluids.

Envision Radiology is an equal opportunity employer (M/F/D/V). We recruit, employ, train, compensate, and promote without regard to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, disability, veteran status, or any other basis protected by applicable federal, state, or local law.

Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.

See also

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available