Baylor Scott & White Health · 1 hour ago
Cybersecurity Risk Manager - Healthcare
Baylor Scott & White Health is a large, complex healthcare organization seeking a Cybersecurity Risk Manager. This role is pivotal in enhancing cyber risk management practices, overseeing risk assessments, and ensuring compliance with regulatory requirements.
FitnessHealth CareMedicalSports
Responsibilities
Lead a team of cybersecurity analysts executing risk identification, analysis, scoring, and monitoring
Guide the development and continual enhancement of risk‑management processes using industry frameworks (e.g., NIST CSF 2.0, HIPAA)
Provide coaching, performance feedback, and professional development support to team members
Promote alignment and consistency across cybersecurity and IT functions regarding risk practices and governance
Develop clear, concise risk reporting through associated tooling, tailored for senior leaders and operational stakeholders
Track and measure progress through Objectives & Key Results (OKRs) aligned to cybersecurity and organizational priorities
Identify opportunities to streamline processes, drive operational excellence, and improve transparency into cyber risk
Oversee enterprise-wide cyber risk assessments, including but not limited to EHR systems, medical devices, IoT clinical equipment, and cloud-hosted PHI
Lead threat modeling and control evaluations based on NIST CSF 2.0 categories (Identify, Protect, Detect, Respond, Recover, Govern)
Coordinate mitigation strategies with IT, Clinical Engineering, and operational leaders
Support risk-related governance forums and risk review discussions with leadership
Maintain risk registers and compliance monitoring
Continuously refine cyber risk processes informed by healthcare threat intelligence, regulatory changes, and HIPAA Security Rule requirements
Oversee periodic audits and corrective action tracking
Qualification
Required
Bachelor's or 4 years of work experience above the minimum qualification
5 Years of Experience
Strong understanding of healthcare technology environments (e.g., EHR systems, clinical devices, PHI handling)
Demonstrated ability to communicate risk effectively to both technical and non-technical audiences
Experience working within Agile delivery environments
Experience with NIST CSF 2.0, HITRUST, HIPAA Security Rule, and healthcare technology environments
Strong understanding of clinical workflows, EHR systems, and medical device cybersecurity
Proficiency with GRC and risk platforms
Preferred
Master's Degree is preferred in Cybersecurity, Information Systems, Risk Management, or related field
Certifications such as CISSP, CISM, CRISC, HCISPP, HITRUST CCSFP, or other relevant industry certifications are strongly preferred
Benefits
Immediate eligibility for health and welfare benefits
401(k) savings plan with dollar-for-dollar match up to 5%
Tuition Reimbursement
PTO accrual beginning Day 1
Company
Baylor Scott & White Health
Baylor Scott & White Health is a non-profit health care system that research about the outpatient, and emergency treatment services.
H1B Sponsorship
Baylor Scott & White Health has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (17)
2024 (9)
2023 (6)
2022 (5)
2021 (4)
2020 (6)
Funding
Current Stage
Late StageRecent News
2025-12-09
Company data provided by crunchbase