Position Summary:The Senior Director, Information Security Operations and Product Management, will oversee and lead the lifecycle of products designed to provide security (e.g., antivirus, firewalls, identity management platforms, or threat intelligence tools) to the organization. Security Product Management is a specialized discipline that bridges the gap between technical security requirements, business objectives, and customer needs. Integration of security products and principles into the development of lifecycles of any product or application. This integration will include “secure-by-design” practices or software, applications, cloud environments, and AI. This position will report directly to the Chief Information Security Officer while leading a team of security product leads and engineers.
This role will ensure compliance with all applicable regulations and security controls in partnership with stakeholders in IT, Privacy Legal, Sales and Clinical teams to ensure Healthmap Solutions rigorous data control standards are met.
Because security teams and product teams often operate as distinct units, the Director of Product Management must excel at building alignment and negotiating scope.
Responsibilities:
- Strategic Roadmap Ownership: Define and sustain a multi-year product plan aligned with emerging threat landscapes, market demands, technology innovations, and company growth objectives
- Cross-Functional Leadership: Collaborate with engineering, design, and operations to deliver security products and services. This collaboration is critical across the business teams, infrastructure management, and engineering teams
- Compliance Integration: Ensure enterprise products are designed to meet regulatory demands (e.g., Privacy, Risk, Audit) at scale. Design at scale to ensure that within development lifecycle workstreams, compliance obligations are embedded within the security coding practices
- Innovation & AI: Integrate AI capabilities and advanced automation into defensive security tooling and threat detection
- Financial Management: Manage financial responsibility over the entirety of the security product roadmap inclusive of SaaS, services, and staffing
- Vendor Management: Monitor vendor security performance and identify areas for improvement. Work collaboratively with other functions, including Legal, Privacy, Finance and, IT and the business to ensure proper use of vendors to achieve strategic goals
- Staff Management: Direct and manage staff ensuring coach, development and performance management is in alignment with department goals, ensuring key performance metrics are attained and adjusting efforts to ensure target attainment
- Perform other duties as assigned
Requirements:
- Bachelor’s degree in cyber security (or) related degree or equivalent working experience
- 10 years’ experience in Information Security which includes 7 years’ experience managing and leading staff in at least Information Security domains
- Certified Information Security Systems Professional (CISSP), Certified Information Security Manager (CISM) or Global Information Assurance Certifications (GIAC) certifications are preferred
- Independently develop and manage the security product and services lifecycle
- Manage relationships cross functionally with Infrastructure Operations and Engineering
- Hands-on security professional
- Experience managing non-IT and outside supplier partner staff to achieve Security product goals and objectives
- Experience reviewing contracts and negotiating terms and conditions with the best interest of the organization
- Manage budgets and financial impacts related to security products and services
- Experience using Governance Risk and Compliance (GRC) tools such as Archer preferred
- Familiarity with regulatory controls and industry best practice frameworks such as HIPAA, ISO27001/2, PCI, NIST etc.)
Skills:
- Technical Domain Knowledge: Understanding cybersecurity principles, encryption, data protection regulations, and threat landscapes
- Systems Thinking: Ability to anticipate the effects of security changes on identity, logging, data, and operations
- Excellent team building, leadership, and people management skills
- Strong verbal and written communications skills
- Ability to effectively prioritize and execute tasks in a high-pressure environment
- Ability to communicate at all levels within the organization including senior executives
- Excellent Customer service skills
- Collaboration and Conflict management
Travel:
Limited Travel, scheduled per needs of the business
Working Conditions:
All roles require:
• Sitting
- Ability to sit for extended periods stationary or while driving
• Dexterity/Effort
- Repetitive motion for typing and/or texting
- Good manual dexterity for handling packages, paperwork, operation of motor vehicles and/or electronic devices
• Sense Acuity
- Ability to see/read computer monitors or other electronic devices
Additionally, on-site or at location positions (ex. Mailroom, IT or Admin) may require:
• Lift/Carry/Push/Pull
- Occasional movement of equipment, or materials up to 50/75 Pounds
• Bend/Twist
- Occasional bending, twisting, and stooping
- Occasional need to kneel or crouch
Additionally Traveling positions (ex. Field Care Navigators or Quality Practice Advisors) may require:
• Sense Acuity
- Ability to see/read road signs, maps, and electronic devices
- Good visual acuity for driving, including peripheral vision and depth perception
• Environmental
- Possible exposure to travel, traffic and/or other outdoor hazards
- Possible exposure to various weather conditions, including extreme heat, cold, rain, and snow
#LI-REMOTE