Director Information Security - Cybersecurity Operations
Listed on 2025-12-26
-
IT/Tech
Cybersecurity, IT Project Manager, IT Consultant, Information Security
The Director Information Security - Cybersecurity Operations will lead the cybersecurity operations team and oversee all aspects of the technical cybersecurity operational services. This role is accountable for ensuring that the appropriate technical security controls, processes, and services are in place and operating effectively to protect the networks, systems, and information assets and ensure that UVA Health is fully prepared to prevent, detect, respond to, and recover from cybersecurity incidents.
The ideal candidate will have experience in IT security operations management including cyberdefense operational processes and management of the platforms on which they are built, as well as a strong technical background and success at advising and establishing solid security posture, pragmatic IT risk mitigation, advanced threat detection and response, incident response and digital forensics, cyber threat intelligence, application and platform security testing, Dev Sec Ops , network and cloud security, endpoint security and hardening, and vulnerability and attack surface management.
This role will grow and continuously improve the Cybersecurity Operations team and services to effectively and efficiently address the cyberdefense needs of the UVA Health system and minimize the risk to our patient, employee, and other critical data while balancing usability and the operational needs of health system users.
- Lead the strategy development and execution of multiple elements of a comprehensive enterprise-wide Information Security Program aligned with organizational goals and regulatory requirements.
- Design and execute multi-year road maps to transform information security capabilities and collaborate with health system entities to align critical security measures with key business initiatives.
- Drive innovation and lead organizational change initiatives to enhance security posture and operational resilience. Acts as a change agent for new technologies and processes that reduce risk and enhance security within Health IT.
- Develop and manage the information security budget, ensuring optimal allocation of resources to meet strategic objectives.
- Develop and maintain a culture of security that emphasizes the responsibilities of all health system employees to help protect sensitive information, systems, and networks.
- Provide visionary leadership to the Information Security team, fostering a culture of accountability, innovation, and continuous improvement.
- Apply deep expertise in cybersecurity operations, regulatory compliance, and risk management to guide enterprise operations and decision-making.
- Directs and manages Information Security Department actions and operations. Leads multiple teams through the prioritization and implementation of service improvement projects.
- Directs the design and implementation of solutions that are secure, scalable, reliable, and cost-effective and aligned with the Information Security mission to reduce risk while enhancing productivity.
- Determine the value and ROI of security projects, and prioritizes scheduling and implementation to ensure the efficient utilization of resources.
- Develop staff as needed to ensure current and future team skills and capabilities are aligned with the planned departmental growth and transformation.
- Serve as a senior authority and strategic advisor on information security, influencing executive leadership and cross-functional stakeholders.
- Champion effective communication and collaboration across departments to embed security into business processes and technology initiatives.
- Tracks implementations to ensure service and financial targets are met according to agreed timelines.
- Oversees and negotiates service level agreements (SLAs) with internal and external stakeholders.
- Directs relationships with vendors to ensure that vendors meet agreed performance objectives, SLAs, and deliverables in a timely manner and within budget guidelines.
- Interacts with major suppliers, overseeing RFPs, contracts, and service agreements.
- Oversees…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).