Skip to main content

Need Immediate Care?

Find Urgent Care Locations

Chief Information Security-Tech Officer

Requisition ID
189831
Department
100652 IT Security
Schedule
Full Time - Eligible for Benefits
Shift
Day
Category
Management
Apply Now

Relocation to Reno, NV required

Purpose:

Reporting to the Chief Information Officer (CIO), the Chief Information Security & Technology Officer (CISO) with a dotted line to Chief Compliance Officer provides vision and leadership for developing and supporting security initiatives. The CISO directs the planning and implementation of enterprise IT system, business operation, and facility defenses against security breaches and vulnerability issues. This individual is also responsible for auditing existing systems, while directing the administration of security policies, activities, and standards. The incumbent establishes and maintains a comprehensive company wide information security program to ensure that information assets are adequately protected against current, future, internal and external threats. The position is responsible for identifying, directing, coordinating, evaluating, and reporting on information security risks in a manner that meets compliance and regulatory requirements while enabling the company to develop an anticipatory response to minimize information security risk. The Chief Information Security Officer position acts as the key liaison and focal point in the company for all information security communications and projects. The CISO manages the relationship between Renown and all managed services partners.This role will also have oversight of the information technology technical infrastructure planning and management.

Nature and Scope

• Provides executive leadership, vision and managerial oversight in the development and implementation of security strategies to define policies and processes that enable consistent, effective information security practices and minimize risk. Determines projects and priorities for all information security issues. Establishes short and long-range business plans to achieve the necessary security to protect organization assets.

• Leads strategic security planning to achieve business goals by prioritizing defense initiatives and coordinating the evaluation, deployment, and management of current and future security technologies using a risk-based assessment methodology.

• Develops and communicates security strategies and plans to executive team, staff, partners, customers, and stakeholders.

• Assists with the design and implementation of disaster recovery and business continuity plans, procedures, audits, and enhancements.

• Develop, implement, maintain, and oversee enforcement of policies, procedures, and associated plans for system security administration and user system access based on industry standard best practices.

• Establishes a security program for Renown Health incorporating regulatory standards and methodologies and provides reporting to ensure that standards are followed.

• Oversees daily security activities to manage risk at an appropriate level, ensure effective response to incidents, and optimize secure data access and utilization.

• Directs the communication and dissemination of organization information security standards and advises senior executives regarding internal or external data security potential threats. Acts as advocate and primary liaison for the company's security vision via regular written and in-person communications with the company's executives, department heads, and end users.

• Manages information security team to proactively analyze and directly respond to internal and external threats to system stability including unauthorized access such as vulnerability assessments, record attempts; minimizes/mitigates risk to information and systems.

• Deploys integrated risk management approach to create executive level perspectives and status reports regarding all security risks we may encounter including risks in physical security, access and control issues, data security and contingency planning.

• Establishes and enforces a process to ensure that all users receive appropriate information security training to perform duties along with periodic information security awareness training; insures appropriate levels of information security awareness and personal responsibility.

• Provides leadership, direction, and oversight to the security team. Manage the human resources activities of Information Security in accordance with established policies and procedures.

• Develops, tracks, and controls the security services annual operating and capital budgets for purchasing, staffing, and operations.In conjunction with Renown's vendor relationships, this position will also focus on the information technology infrastructure needs of the entire Renown Health System.Oversight of:

• Backups and Recovery

• Data Center and Data Center Operations

• Help Desk

• Networking and Networks (Wired, Wireless)

• Firewalls

• All Servers including all Operating systems.

• All Desktops including PCs, printers, scanners, USB connected devices, multi-Function devices

• All Mobile devices including Laptops

• Some infrastructure applications such as enterprise email

• Interface teams

• Establish standards and technical architectural designs

• Evaluate vendors and technologies.

• Keep current on technical developments.

• Evaluate proposals

• Review, negotiate and manage vendor contracts

• Run and participate in structured system selection processes

• Analyze options, summarize findings, make recommendations

• Ensure compatibility and integration with existing and planned systems and infrastructure

• Monitor and manage vendor performance and compliance with contract terms

• Document, report and escalate vendor performance problems as appropriateDisaster preparedness and response, Documentation and Accreditations:

• Develop, review, refine policies & procedures

• Ensure adherence with Renown and departmental P&P

• Support auditing and audits, respond to findings, take corrective actions as appropriate

• Ensure development, updating and routine review of Disaster Recovery Plans

• Assist business units with development of Business Continuity & Recovery Plans

• Conduct and support drilling of DRP and BC&RP

• Direct disaster and routine outage recovery response efforts when necessary

• Ensure attainment and maintenance of various accreditations

• Ensure compliance with all software licensing requirements and documentation of such.

• Ensure documentation is complete, comprehensive, and timely; supports continuity in the event of turnover.Minimum Requirements:

• Expertise in technical and business environment, familiarity with national security standards, experience with business continuity, disaster recovery, auditing, risk management, vulnerability assessments, contract/vendor negotiations, and cyber-security and incident management.

• Extensive knowledge of information security technologies, markets and vendors including firewall, intrusion detection, assessment tools, encryption, certificate authority, web, and application development.

• Experience in and assessment methodologies, procedures and best practices that relate to information networks, systems, and applications

• Experience in application security, database technologies used to store enterprise information, directory services, financial information, and information systems auditing.

• Experience in identity and access management, security program policies, processes, standards, requirements and procedures and various supporting security technologies.

• Ability to apply in-depth critical and analytic thinking skills to unique problems and projects to provide effective assessment and solution generation

• Ability to communicate technical issues to non-technical employees.

• Experience to leading large and complex projects to plan, manage and coordinate diverse company-wide technical projects.Preferred Requirements:

• Healthcare and insurance industries work experience.

• Enterprise-wide administration expertise.

• Leadership experience managing direct reports with a focus on building a high-performance team in a rapid growth mode.

• Combination of education, experience and training must qualify the candidate as an information security expert.This position does not provide patient care

Minimum Qualifications

Requirements - Required and/or Preferred

Name
Description
Education:
Ability to read, write, speak, and understand English sufficiently to perform job duties safely and effectively. Bachelors in Information Technology, Business or similar required. Master's Degree in Information Technology, Business or similar preferred.
Experience:

• Ten years of experience working in a medium to large Information Systems department required.
• Five years of management experience in an information systems department required.
• Oversight of large IT project experience desired.
• Strong relevant technical knowledge is strongly preferred.
• Experience managing customer relationships preferred.
License(s):
None
Certification(s):
Required to have one of the following certifications: Certified Information Systems Security Professional (CISSP) Preferred; but will accept Certified Information Systems Auditor (CISA), Certified Information Systems/Security Manager (CISM), or Certified Risk and Information Systems Control (CRISC).
Computer / Typing:
Must be proficient with Microsoft Office Suite, including Outlook, PowerPoint, Excel, Teams, and Word and have the ability to use the computer to complete online learning requirements for job-specific competencies, access online forms and policies, complete online benefits enrollment, etc.

Disclaimer

The foregoing description is not intended to be, and should not be construed as, an exhaustive list of all responsibilities, skills, efforts, or working conditions associated with the job. It is intended to be an accurate reflection of the general nature and level of the job.

Benefits

Renown Health exists to make a genuine difference in the health and well-being of the people and communities we serve. And it is through your passion that this mission is made real every day. The relationship with employees is the foundation for success as we proceed with our strategic direction. We strive to build upon this solid partnership by offering a comprehensive and competitive benefits package that meets the diverse needs of employees and their family members.

With my CAREER Rewards there's peace of mind in knowing that Renown Health is also fighting for the most important things in your life - family, finances and future. Navigate options and make sure you are getting the most value from your Nursing career with us.

Education icon

Education Assistance

PTO icon

Paid Time Off

401K icon

401(k) Company Match

Flex Spending icon

Flexible Work Environment

Renown Health is northern Nevada's healthcare leader and Reno's only locally owned, not-for-profit health system. We are an entire network of hospitals, primary care offices, urgent care centers, lab services, medical specialties, and x-ray and imaging services - with more than 7,000 nurses, doctors and care providers dedicated to the health and well-being of our community.

Join Our Team Today!

For Providers: Renown Health and the University of Nevada, Reno School of Medicine (UNR Med) are affiliate partners in Nevada's first integrated academic health system. The affiliation aims to improve the health of the community, region, and state through research, medical education, and expanded clinical care. Renown physicians participate as joint faculty at UNR Med for teaching, lectures, supervising clinical rotations, and other academic activities for the education of medical and physician assistant students, residents and fellows.