Banner Health · 11 hours ago
Director IT Cybersecurity Digital Protection and Engineering
Maximize your interview chances
Health CareInsurance
H1B Sponsor Likely
Insider Connection @Banner Health
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Collaborates with business owners and organizational stakeholders to define, implement and maintain enterprise-wide data protection tools and strategy.
Oversees the operation of a DLP solution in accordance with enterprise data security and classification standards. Work swith vendors and third-party contractors to implement integrated DLP software solutions.
Collaborates with the IT Infrastructure team to implement technical mechanisms to encrypt sensitive and business critical data while in transit or at rest in accordance with regulatory, contractual, and business requirements. Ensures all data transmissions between applications and devices are encrypted.
Develops policies, procedures and controls designed to protect sensitive data. Develop and document processes to mask sensitive data in accordance with compliance requirements. Develops and documents processes for the recovery of data in the event of an adverse event or loss of data.
Inventories systems, applications, and databases, and determine criticality based on types of data stored, processed, or transmitted by the same.
Collaborates with the risk teams team to develop and maintains control profiles for various systems, applications, and databases based on criticality and sensitivity of data stored, processed, or transmitted by the same.
Identifies and implements data channel security technologies to monitor and prevent unauthorized activity.
Develops and oversees the department budget in conjunction with corporate goals and objectives. This position is accountable for meeting annual budgetary goals. Identifies and prioritizes security program expenditures in coordination with I/T, Audit, Compliance, Privacy and Legal.
This position reports to the Senior Leadership and will interface with and support staff at all levels and in all areas throughout the enterprise. This person will also work frequently with external customers, vendors, and business partners on projects and various assignments.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Requires a Bachelor’s degree in Computer Science, Information Systems, Engineering, Business Administration or a related field.
Requires proficiency level typically attained with ten or more years experience in information security experience in positions of increasing responsibility including seven or more years of data protection and five years of leadership experience.
Extensive knowledge of data protection controls.
Strong understanding of data classification tiers (e.g., Critical, Classified, Internal Use Only, Public, etc.) and the applicability of control profiles based on the selected classification.
Extensive experience designing, implementing and managing technical solutions for data security, including DLP, Digital Rights Management, eDiscovery and encryption.
Demonstrated experience with developing strategies for the proper operation and management of DLP monitoring capabilities.
Experience with the design and implementation of data encryption capabilities for workstations, laptops, and servers.
Strong understanding of information security threats affecting the healthcare industry.
Experience strategizing with cross-functional business partners on information security solutions.
Strong understanding of risk-based decision-making (i.e. risk analysis, mitigation, resolution, acceptance, etc.).
Demonstrated organizational and leadership skills with the ability to lead, build, and develop a team of senior IT professionals through formal and informal reporting relationships.
Demonstrated communication skills with the ability to build relationships and influence others to get results.
Extensive knowledge in governance frameworks including: ISO 27001, NIST, COBIT, ITIL.
Extensive knowledge in regulations and/or contractual obligations including: HIPAA, PCI, Sarbanes Oxley, GLBA, SOC /SSAE16.
Preferred
Advanced Degree in Computer Science, Information Systems, Engineering, Business Administration, or a related field.
Industry certifications: CISSP, CISA, CISM, CRISC, EAP, etc.
Additional related education and/or experience preferred.
Benefits
Health, financial, and security benefits
Management Incentive Program
Company
Banner Health
Banner Health operates as a nonprofit health care system in the United States. The company offers hospital care, home care, hospice care,
H1B Sponsorship
Banner Health has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (7)
2022 (12)
2021 (22)
2020 (6)
Funding
Current Stage
Late StageRecent News
2024-04-28
2024-04-23
Company data provided by crunchbase