Director of Security & Compliance
$220,000–$270,000 year
HybridNew York City, New York, United States
Job Summary
Director of Security & Compliance to own and build the company’s security program, define security architecture, lead HITRUST certification, and protect patient data. Role is hands-on and strategic, acting as the senior security voice within a fast-growing healthcare-tech company; responsibilities include owning the security strategy/roadmap, HIPAA/HITRUST/SOC 2 compliance, incident response leadership, implementing technical and non-technical security controls, building the security team over time, and advising executives on risk posture and security investments. The position is hybrid, based in the New York office with in-office presence required 4x per week; compensation and benefits are competitive with 401(k) and comprehensive health coverage.
Required Qualifications
- 8+ years in security, compliance, or information security
- 2–3 years as a senior leader or SME at a startup/growth-stage company
- Direct experience owning HIPAA, HITRUST, and/or SOC 2 compliance end to end
- Experience leading incident response
- Experience designing and implementing security controls (MDM, IAM, endpoint protection, access policies, vulnerability management)
- Strong cross-functional communication with executives, engineers, auditors
- Comfort as a player-coach, hands-on keyboard
- Desirable: building security programs from early maturity
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.