Back to jobs
Job Description
Lead and oversee our Security Operations Center and cybersecurity technical engineering teams. This role will support and assist the Deputy Chief Information Security Officer (Deputy CISO) in maintaining and maturing our 24x7 cybersecurity threat detection and response processes, procedures, and strategy; manage and provide oversight for the team of analysts, engineers, and associated vendors; and perform other various cybersecurity operations responsibilities. The role will also support the Deputy CISO in defining controls and governance for the overall corporate cybersecurity strategy, with a focus on incident response, logging analysis, regulatory compliance, and ongoing hardening of the enterprise's on-prem and cloud technologies for defense and detection. Lead the 24x7 incident detection and response team and day-to-day efforts. In the event of a breach, this role will lead efforts in detection, containment, and mitigation, and will aid the corporate response team (General Counsel, HR, Marketing, etc.) as needed. Lead the cybersecurity technical team to provide and maintain a stable and effective cybersecurity technical stack supporting endpoint protection, secrets management, identity and privileged access management, data loss prevention, SIEM and SOAR, and process automation specific to cybersecurity. Lead efforts in ongoing tabletop and red/blue team exercises to continue implementing better defenses and quick incident detection and response. Review industry news, intelligence reports, and emerging technologies to ensure MedPro is taking appropriate action to mitigate risk and enhance defenses. Research regulatory and compliance mandates to ensure cybersecurity practices fulfill these requirements. Support efforts with external and internal audit control compliance and responses to due diligence inquiries. Provide thought leadership and assistance with developing short and long-term enterprise-wide cybersecurity goals and objectives. Assist with security assessments and help provide recommendations on technology and vendor selection, and business and technical team processes and procedures used by MedPro. Assist with maintaining and supporting corporate policies and controls, ensuring that cybersecurity and incident response properly support and protect MedPro and comply with regulatory requirements and industry best practices. Assist with the execution and completion of cybersecurity-related projects. Perform other related duties.
