Healthcare Information Security Manager Day Shift
Listed on 2025-12-27
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, IT Project Manager
Healthcare Information Security Manager - FT - Day Shift
Join to apply for the Healthcare Information Security Manager - FT - Day Shift role at Erie County Medical Center Corporation
.
Hourly rate: $50.98-$70.84.
OverviewThe work involves assisting the Chief Healthcare Information Security Officer (CISO) in managing the Information Security Program at Erie County Medical Center Corporation (ECMCC). The work involves addressing the electronic systems architecture and functionality as it affects safeguards of protected health information (PHI) and business information assets, as directed by the Healthcare Information Security Director or CISO. The incumbent monitors, assesses the IT business continuity and disaster recovery program and performs network penetration tests, application vulnerability assessment scans, and risk assessment reviews.
The work is performed under the general direction of the Healthcare Information Security Director or CISO. Supervision may be exercised over lower-level technical staff. Does related work as required.
- Manages the Information Security Program procedures, technical systems and workforce training to maintain the confidentiality, integrity, and availability of data within all information systems.
- Coordinates resources (staff, equipment, vendors, and consultants) across projects, manages the budget for assigned projects, monitors project progress (risks & issues) and adjusts resources and priorities accordingly.
- Drives adoption of secure hardening and configuration practices in the systems security deployment cycle throughout central technology and line of business technical engineering teams.
- Performs information security awareness and training to educate workforce about information risks.
- Prepares and presents progress reports for management and ensures technologies are appropriately integrated to support the objectives of the Cybersecurity Program.
- Provides subject‑matter‑expertise in the discipline of Core Platform security to Cybersecurity operation team and others.
- Provides consultancy for secure system design, development, engineering, and operation.
- Provides project management and operational responsibility for administrative coordination and implementation of the organization’s security program.
- Assists in development of Security Program Policies and enforces policies and procedures.
- Assists with enforcement of access control needs of the organization.
- Identifies and helps implement continuous process enhancements/improvements to Cybersecurity Operations.
- Assists in managing information security directives as mandated by Federal and State regulations, including but not limited to the Health Insurance Portability and Accountability Act (HIPAA).
- Assists with disaster recovery, business continuity, incident response, and risk management programs.
- As directed by the Healthcare Information Security Director or CISO, performs or works with third‑party consultants to perform information risk assessments, security audits, and accreditation surveys, ensuring that information systems are adequately protected and meet HIPAA certification requirements.
- Participates in accreditation surveys.
- Attends and participates in meetings, seminars, and training sessions.
Thorough knowledge of state‑of‑the‑art computer security; good knowledge of project management and development; good knowledge of internal computer logic, programs and facilities; good knowledge of technical infrastructure security components and integrated computerized rules‑based systems; familiarity with Federal and State privacy and security laws and regulations and industry best practices as they relate to healthcare information security; ability to enforce programs to ensure the security of health information across a widely dispersed workforce with a variety of information mediums;
ability to read, interpret and apply technical information; ability to analyze and resolve security problems quickly; ability to supervise others; ability to establish and maintain effective working relationships with a diverse constituency;…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).