Senior Information Security Officer
Any city, AK, US, 99999 Any city, MT, US, 99999 Any city, ME, US, 99999 Any city, GA, US, 99999 Any city, RI, US, 99999 Any city, WY, US, 99999 Any city, NH, US, 99999 Any city, IA, US, 99999 Any city, KY, US, 99999 Any city, MO, US, 99999 Any city, NE, US, 99999 Any city, VT, US, 99999 Any city, CT, US, 99999 Any city, SC, US, 99999 Any city, MI, US, 99999 Any city, KS, US, 99999 Any city, ND, US, 99999 Any city, ID, US, 99999 Any city, OH, US, 99999 Any city, OK, US, 99999 Any city, WI, US, 99999 Any city, DC, US, 99999 Any city, AZ, US, 99999 Any city, MI, US, 99999 Any city, GA, US, 99999 Any city, MA, US, 99999 Any city, OH, US, 99999 Any city, ME, US, 99999 Any city, MS, US, 99999 Any city, OR, US, 99999 Any city, MN, US, 99999 Any city, NM, US, 99999 Any city, TX, US, 99999 Any city, MT, US, 99999 Any city, NY, US, 99999 Any city, IA, US, 99999 Any city, WA, US, 99999 Any city, FL, US, 99999 Any city, LA, US, 99999 Any city, VT, US, 99999 Any city, OR, US, 99999 Any city, UT, US, 99999 Any city, IL, US, 99999 Any City, DE, US, 99999 Any city, CO, US, 99999 Any city, MA, US, 99999 Any city, DC, US, 99999 Any city, MN, US, 99999 Any city, WV, US, 99999 Any city, ID, US, 99999 Any city, CA, US, 99999 Any city, NV, US, 99999 Any city, NE, US, 99999 Any city, ND, US, 99999 Any city, VA, US, 99999 Any city, OK, US, 99999 Any city, HI, US, 99999 Any city, NC, US, 99999 Any city, CA, US, 99999 Any city, PA, US, 99999 Any city, VA, US, 99999 Any city, WV, US, 99999 Any city, AK, US, 99999 Any city, SD, US, 99999 Any city, MD, US, 99999 Any city, CT, US, 99999 Any city, KS, US, 99999 Any city, TN, US, 99999 Any city, WA, US, 99999 Any city, MO, US, 99999 Any city, NH, US, 99999 Any city, NY, US, 99999 Any city, AL, US, 99999 Any city, NC, US, 99999 Any city, NJ, US, 99999 Any city, MS, US, 99999 Any city, IN, US, 99999 Any city, TN, US, 99999 Any city, IL, US, 99999 Any city, WY, US, 99999 Any city, RI, US, 99999 Any city, NM, US, 99999 Any city, UT, US, 99999 Any city, CO, US, 99999 Any city, KY, US, 99999 Any city, DE, US, 99999 Any city, NJ, US, 99999 Any city, PA, US, 99999 Any city, WI, US, 99999 Any city, VI, US, 99999 Any city, AR, US, 99999 Any city, SC, US, 99999 Any city, AZ, US, 99999 Any city, NV, US, 99999 Any city, FL, US, 99999 Any city, TX, US, 99999 Any city, AL, US, 99999 Any city, HI, US, 99999 Any city, AR, US, 99999 Any city, IN, US, 99999 Any city, MD, US, 99999 Any city, LA, US, 99999 Any city, SD, US, 99999
Be part of a team that unleashes the power of leading-edge technologies to help improve the health and well-being of those most vulnerable in our country and communities. Working at Gainwell carries its rewards. You’ll have an incredible opportunity to grow your career in a company that values work flexibility, learning, and career development. You’ll add to your technical credentials and certifications while enjoying a generous, flexible vacation policy and educational assistance. We also have comprehensive leadership and technical development academies to help build your skills and capabilities.
Summary
As the Senior Information Security Officer (ISO), you will be accountable for all security-related compliance and delivery for the customer(s) assigned. In a typical engagement, you operate as a trusted advisor and security partner in the organization, working with senior management and focusing specifically on health care industry regulated security requirements and environments in relation to client business objectives. The Senior ISL helps interpret and explain operational issues and plans next steps from an information security viewpoint. This requires the ability to interact and influence at an executive management level within client organizations such as C-level IT leadership and IT Security leads. You will be able to demonstrate industry expertise and your working knowledge of security governance and compliance. Health Insurance Portability and Accountability Act of 1996 (HIPAA) and the National Institute of Standards and Technology (NIST) 800-53 framework are the standard security frameworks that the Senior ISL will be reviewing, maintaining, and helping to assess on each designated account or health care product within Gainwell Technologies and its partners.
Your role in our mission
- Compliance, operationally focused and security driven
- Lead Security operational governance activities
- Ensuring delivery excellence in security tooling and business operations (Ensuring avoidance of non-performance / non-compliance leading to contractual penalties).
- Relationship management with Gainwell Technologies suppliers and the client.
- Create and maintain an account security plan for the selected account(s) and Products
- Manage and report security incidents from start to finish
- Manage audit preparation, facilitation and remediation
- Manage security risks and exceptions
- Ensure knowledge and implementation of security fundamentals, policies, and standards (regulatory and contractual)
- Escalate and resolve security issues
- Coordinate delivery of security metrics and reporting in support of contractual commitment
What we're looking for
- At least 5 years’ experience working in a risk management, audit, security, or technical delivery role
- Bachelor or Master’s degree in Computer Science, Computer Studies, Information Security (or equivalent combination of education and experience)
- Experience with and understanding of the security and auditing regulations
- Experience with audit and compliance programs, including leading audits and remediation efforts
- Experience with HIPAA, NIST, and FedRAMP
- Excellent and effective communication skills
- Ability to work effectively in diverse, multi-national and virtual environments
- Self-motivated and tenacious
- Demonstrate sound judgment and integrity
- Ability to influence delivery personnel in the execution of security and compliance requirements
- Experience as a Security consultant, architect and/or engineer
- Experience in working with security management including information governance and compliance
- Deep understanding and working knowledge of information security industry best practices with hands on experience
- Experience of security processes and standards, in particular NIST 800-53 and/or ISO27001
- Knowledge of security audit and accreditation processes
- Ability to adapt to new security regimes.
- CISSP certification, CISM/CISA or CRISC a plus
What you should expect in this role
- Remote position (US only)
- Opportunities to travel through your work (0-10%)
- Video cameras must be used during all interviews, as well as during the initial week of orientation
- The deadline to submit applications for this posting is 3/30/2026
The pay range for this position is [[salaryMin]] - [[salaryMid]] per year, however, the base pay offered may vary depending on geographic region, internal equity, job-related knowledge, skills, and experience among other factors. Put your passion to work at Gainwell. You’ll have the opportunity to grow your career in a company that values work flexibility, learning, and career development. All salaried, full-time candidates are eligible for our generous, flexible vacation policy, a 401(k) employer match, comprehensive health benefits, and educational assistance. We also have a variety of leadership and technical development academies to help build your skills and capabilities.
We believe nothing is impossible when you bring together people who care deeply about making healthcare work better for everyone. Build your career with Gainwell, an industry leader. You’ll be joining a company where collaboration, innovation, and inclusion fuel our growth. Learn more about Gainwell at our company website and visit our Careers site for all available job role openings.
Gainwell Technologies is an Equal Opportunity Employer, where all qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical condition), age, sexual orientation, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. Gainwell Technologies defines “wages” and “wage rates” to include “all forms of pay, including, but not limited to, salary, overtime pay, bonuses, stock, stock options, profit sharing and bonus plans, life insurance, vacation and holiday pay, cleaning or gasoline allowances, hotel accommodations, reimbursement for travel expenses, and benefits.