Director of Cyber Security
Director of Cybersecurity & Compliance
Location: Denver, Colorado (Preferred) / Remote
Job Type: Full-Time
Overview
Our client is seeking a Director of Cybersecurity & Compliance to lead and strengthen the organization's security framework. This individual will be responsible for developing and executing a cybersecurity strategy that protects IT infrastructure, digital assets, and sensitive data. The role involves overseeing risk management, implementing security policies, and ensuring compliance with industry regulations such as HIPAA, HITRUST, and NIST standards.
This position requires a proactive leader with a blend of technical expertise and strategic vision to embed a strong security culture across a decentralized environment. The ideal candidate will drive cybersecurity initiatives, foster collaboration across teams, and stay ahead of evolving threats.
Key Responsibilities:
Cybersecurity Strategy & Risk Management
- Define and implement a comprehensive cybersecurity strategy, ensuring alignment with business objectives.
- Identify and mitigate cyber risks while continuously strengthening the organization’s security posture.
- Stay ahead of emerging threats and integrate proactive security measures to minimize risk exposure.
Threat Detection & Incident Response
- Establish advanced threat detection, monitoring, and response protocols to protect against cyber threats.
- Develop and oversee incident response processes, ensuring rapid and effective action when needed.
- Enhance business continuity and disaster recovery plans to minimize disruptions caused by cyber incidents.
Compliance & Governance
- Ensure adherence to HIPAA, HITRUST, NIST, and other regulatory requirements.
- Develop and enforce security policies and risk management frameworks across the organization.
- Implement and oversee vendor security assessments to mitigate third-party risks.
Security Awareness & Collaboration
- Foster a culture of security awareness, implementing training programs to minimize risks.
- Collaborate with executives, IT teams, and business leaders to integrate security across operations.
- Provide regular reporting on cybersecurity risks, initiatives, and mitigation strategies to key stakeholders.
What We’re Looking For:
Required Qualifications
- Bachelor’s degree in Computer Science, Information Security, or a related field (Master’s preferred).
- 10+ years of experience in IT security, with at least 5 years in a leadership role.
- Strong expertise in healthcare cybersecurity, including HIPAA and HITRUST compliance.
- Deep knowledge of cloud security, network security, endpoint security, and identity & access management (IAM).
- Proficiency in security operations, SIEM tools, incident response, and threat intelligence.
- Hands-on experience implementing Zero Trust architecture and data loss prevention (DLP) strategies.
Preferred Certifications
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CEH (Certified Ethical Hacker)
- CISA (Certified Information Systems Auditor)
- HCISPP (Healthcare Information Security and Privacy Practitioner)
- GSLC (GIAC Security Leadership Certification)
Leadership & Strategic Abilities
- Strong executive communication skills, with the ability to engage both technical and non-technical stakeholders.
- Experience leading security initiatives in decentralized or multi-entity organizations.
- A strategic thinker who balances security priorities with business goals.
- Adaptability to fast-paced, evolving environments, ensuring long-term security resilience.
Compensation & Benefits:
- Competitive salary, based on experience and qualifications.
- Full health benefits package, 401(k) options, and additional perks, which will be shared during the initial interview process.
Equal Opportunity Employer Statement
Our client is committed to fostering an inclusive and diverse workplace. They are an equal opportunity employer and prohibit discrimination and harassment based on race, gender, age, disability, veteran status, or any other protected characteristic under federal, state, or local laws.
Why This Opportunity?
This is a high-impact leadership role for an experienced cybersecurity professional who wants to shape and drive an organization’s security strategy. The Director of Cybersecurity & Compliance will play a critical role in strengthening cybersecurity resilience, ensuring compliance, and protecting valuable digital assets.
If you are a visionary security leader who thrives in dynamic environments and wants to drive meaningful change, we encourage you to apply.