Vice President Chief Information Security Office Job at Passion Dental, Boston, MA

S0xDekJCQUdQVll0cUkwMHhtWGtLSDlnZ3c9PQ==
  • Passion Dental
  • Boston, MA

Job Description

Job Title: Vice President, Chief Information Security Officer (CISO)

Location: Marlborough Massachusetts

Reports To: Chief Technology Officer / President

Job Overview:

The Vice President, Chief Information Security Officer (CISO) is responsible for the development, implementation, and management of the company's information security strategy. This executive-level role oversees the protection of the organization's information assets, data, and IT infrastructure against cybersecurity threats, ensuring that systems and networks are secure, compliant, and resilient to attacks. The CISO collaborates closely with senior leadership and other departments to drive a comprehensive cybersecurity strategy that aligns with business goals and risk management frameworks.

Key Responsibilities:
  1. Cybersecurity Strategy and Governance:
  • Lead the development and execution of the company’s cybersecurity strategy, ensuring alignment with the organization’s business objectives and risk management priorities.
  • Oversee the implementation of information security policies, procedures, and controls.
  • Develop a comprehensive risk management program to identify, evaluate, and mitigate security risks.
  • Lead the governance of security practices, ensuring compliance with applicable laws, regulations, and industry standards (e.g., GDPR, HIPAA, PCI-DSS).
  1. Leadership and Team Management:
  • Build, lead, and mentor the information security team, ensuring ongoing development and high performance.
  • Collaborate with other C-suite executives and departments to integrate security considerations into business and IT processes.
  • Provide clear and concise reporting to senior leadership and the Board of Directors on security posture, risks, and mitigation strategies.
  1. Incident Response and Crisis Management:
  • Oversee the company’s incident response program, ensuring rapid identification, containment, and resolution of security incidents.
  • Lead the development and execution of disaster recovery and business continuity plans to minimize impact from security breaches or IT disruptions.
  • Conduct post-incident analyses to identify root causes and implement corrective actions to prevent future incidents.
  1. Risk and Compliance:
  • Ensure that the organization’s cybersecurity practices are aligned with industry best practices and regulatory requirements.
  • Work closely with the legal, compliance, and audit teams to address risk management, audit requirements, and regulatory changes affecting information security.
  • Conduct regular risk assessments and vulnerability assessments across the organization’s IT infrastructure.
  1. Technology and Security Architecture:
  • Oversee the design and implementation of secure IT systems and architectures, including network security, endpoint security, cloud security, and application security.
  • Stay ahead of emerging security technologies and industry trends, evaluating and implementing new solutions that improve security posture.
  • Ensure that all systems are protected by industry-standard encryption, firewalls, and access controls.
  1. Stakeholder Communication and Training:
  • Communicate security risks, strategy, and policies to non-technical stakeholders, including board members, senior executives, and employees.
  • Promote a company-wide security culture by implementing awareness programs, training sessions, and promoting best practices among employees.
  • Serve as the primary spokesperson for the organization on all matters related to information security.
Qualifications:
  • Education:
  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (Master’s degree preferred).
  • Certifications:
  • Certified Information Systems Security Professional (CISSP) or equivalent advanced certifications in information security.
  • Certified Information Security Manager (CISM), Certified Ethical Hacker (CEH), or Certified Cloud Security Professional (CCSP) are a plus.
  • Experience:
  • 6+ years of progressive experience in information security, with at least 5 years in an executive or leadership role.
  • Proven track record of managing cybersecurity teams and complex security infrastructures.
  • Strong knowledge of security frameworks, such as NIST, ISO/IEC 27001, and COBIT.
  • Experience in risk management, security architecture, incident response, and compliance with industry regulations.
  • Skills:
  • In-depth knowledge of current cybersecurity threats, vulnerabilities, and best practices.
  • Strong leadership and interpersonal skills, with the ability to communicate complex security concepts to non-technical audiences.
  • Ability to manage cross-functional teams and collaborate effectively with senior leadership.
  • Expertise in risk assessment, vulnerability management, and security compliance.
  • Familiarity with cloud security, encryption standards, and data protection practices.
Working Conditions:
  • Full-time position.
  • Potential for on-call responsibilities during security incidents or critical updates.
  • Travel may be required for security audits, conferences, and meetings.
Key Competencies:
  • Strategic Thinking: Ability to define and execute a long-term security strategy aligned with business goals.
  • Analytical Skills: Expertise in risk analysis, threat intelligence, and incident response.
  • Communication Skills: Capable of delivering clear, actionable security information to all levels of the organization.
  • Leadership: Strong leadership capabilities to inspire and manage teams, build relationships, and influence decision-making

Job Tags

Full time, Work at office,

Similar Jobs

Staffing the Universe

Application Developer IV/ Remote ( Salem, OR ) 6+ Months Contract Job at Staffing the Universe

 ...Information Technology Applications Developer Full-time professional work experience in the development and support of information...  ...information technology certification program, accredited college and/or graduate training may substitute for the required work experience. May... 

Vista Staffing

Locum Tenens CRNA - Anesthesia Job at Vista Staffing

 ...Job Description Vista Staffing is seeking a CRNA Anesthesia for a locum tenens job in Pontiac, Illinois. Job Description & Requirements ~ Specialty: Anesthesia ~ Discipline: CRNA ~ Duration: 13 weeks ~40 hours per week ~ Shift: 8 hours ~ Employment... 

AEG Petroleum

Class A CDL Driver Job at AEG Petroleum

 ...Job Description Job Description Class A CDL Hazmat Driver AEG Petroleum LLC, based in Amarillo, TX, is a growing family owned and...  ...5 lbs.) Willingness to work flexible hours, including nights and weekends, as needed. Standard hours will be 7:30 A.M. to 5:3... 

CYBER CODE MASTERS LLC

REMOTE: X12 EDI Engineer for DHS/Customs and Border Protection (CBP) Job at CYBER CODE MASTERS LLC

 ...transmission support multiple formats: UNEDIFACT, ANSI X12, and 2 custom formats called CATAIR and CAM. Dept of Homeland Security (DHS) / CBP receives over 100 different message types in one or a combination of the supported formats. Current on latest modernization... 

Aquent Talent

Program Coordinator [206451] Job at Aquent Talent

 ...opportunity for a Program Coordinator in Woonsocket, RI !\n This is a hybrid position . The expectations are to be in the office 3 days/week (Tuesday, Wednesday, and Thursday), while working remotely on Monday and Friday. For this reason, we will only consider...