CarePoint · 5 hours ago
IT Security & Operations Lead
CarePoint is a rapidly growing, mission-driven organization dedicated to delivering exceptional, patient-centered care. As the IT Security & Operations Lead, you will take hands-on ownership of critical IT security and operations projects, including HIPAA Risk Assessments and Google Workspace security remediation, while collaborating with stakeholders to enhance productivity through secure technology solutions.
Hospital & Health Care
Responsibilities
Spearhead our annual HIPAA Risk Assessment and lead related remediation activities
Take ownership of our existing Google Workspace security audit findings. You will drive remediation projects to completion by managing our MSP's execution and handling the critical configurations that require our internal business context
You will be a key contributor to our strategy, not just an executor. In partnership with the Senior Manager of IT & Data Analytics, you will be responsible for developing, implementing, and maintaining information security policies, standards, and procedures, including the AI Usage Policy and the Disaster Recovery Plan
Serve as the hands-on project lead for key initiatives. This includes long-term, high-impact projects like rolling out an enterprise password manager, implementing data classification, building our Data Loss Prevention (DLP) strategy, and driving secure AI adoption
Own the intake and security review process for new business applications, Google Workspace add-ons, and third-party vendors. You will be responsible for conducting security assessments to determine if a vendor or tool meets our standards before it is introduced to our environment
Act as a primary technical point of contact for our security partners and our MSP. You will coordinate penetration tests and cloud security assessments, ensuring vendors deliver on scope and that remediation plans are executed
Lead end-to-end change management strategy (communications, training, and stakeholder engagement) for new technology implementations
Contribute to the overall IT cybersecurity strategy and technical roadmap, ensuring alignment with business objectives and best practices
Proactively monitor and stay informed about new security threats, vulnerabilities, and technologies pertinent to the organization
Other duties as assigned
Qualification
Required
Bachelor's degree in a field related to technology or cybersecurity, or equivalent practical experience
Minimum 3 years of proven hands-on experience personally executing complex technical projects (e.g., system configurations, security audits) required
Direct, practical experience with HIPAA required
Must be able to demonstrate strong knowledge of cybersecurity related control frameworks such as NIST, HIPAA, CIS Critical Security Controls, and ISO 27001
Demonstrable experience building and executing change management plans to drive user adoption, including measuring success post-launch
Advanced proficiency in Google Workspace administration - including the admin console, security configurations, and permission structures
Ability to identify and prioritize security enhancements that provide maximum organizational protection while minimizing operational friction for clinical and administrative staff
Strong communication skills and a demonstrated ability to communicate complex technical risks and security objectives to non-technical stakeholders
Demonstrated ability to lead MSPs and security partners on specific project deliverables
Preferred
Relevant technical certifications (Security+, CISSP, PMP, Google Workspace Administrator, etc.) preferred
Experience with AWS services (e.g., IAM and S3) is preferred
Benefits
Comprehensive health coverage , including medical, dental, and vision insurance, with access to a Health Savings Account (HSA).
Wellbeing and support resources , including an Employee Assistance Program offering confidential counseling and support services.
Time away from work benefits , featuring accrued paid time off that increases with tenure, along with paid parental leave.
Financial security and protection , including 401(k) retirement plan, life insurance, and identity theft protection.
Community and culture initiatives , including weekly in-office events every Wednesday that foster connection collaboration, and team engagement.
Financial security , CarePoint automatically contributes 7.5% into 401(k) retirement plan after 1 year of employment.
Company
CarePoint
Our mission at CarePoint is to promote, provide, and preserve the quality, compassion, and value of care.
H1B Sponsorship
CarePoint has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (4)
2024 (2)
2023 (3)
2022 (5)
2021 (6)
2020 (3)
Funding
Current Stage
Late StageLeadership Team
Company data provided by crunchbase