IT Manager - Information Technology & Information Security
Listed on 2026-08-31
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Snapshot
Location:
Hybrid - San Diego, CA (Frequent Local Travel Required)
Employment Type:
Full-Time
Compensation: $78,500 - $82,500 annually (based on experience and qualifications)
Schedule:
Full-Time
Reports To:
Chief Executive Officer
Work Environment:
Hybrid (In-person collaboration with travel throughout San Diego County)
Preferred Residence:
Rancho Bernardo, Poway, Rancho Peñasquitos, or Scripps Ranch area.
At Pacific Health Group, we care deeply about the people and communities we serve. We meet individuals with kindness, respect, and understanding—listening first, honoring each person’s journey, and offering support without judgment.
Through compassionate, person-centered healthcare, behavioral health services, and social supports, we walk alongside people as they work toward healing, stability, and a healthier, more hopeful life.
Our Core Values- Speak with integrity—clear, respectful, and honest in every interaction.
- Embrace innovation, trying new ideas, learning fast, and improving care.
- Own our roles, staying accountable for outcomes and documenting accurately.
- Build genuine connections with members, families, and teammates through empathy and cultural sensitivity.
- Lead with trust by being consistent, transparent, and following through.
- Celebrate wins together, recognizing individual and team achievements.
- Collaborate with purpose, partnering across departments and with community providers to solve problems.
- Ask for support and offer support, because thriving together is how we serve our members best
The Manager of Information Technology & Information Security is responsible for the end-to-end ownership of all technology systems, data security, and regulatory compliance at Pacific Health Group. This role establishes, governs, and enforces the organization’s security posture, ensuring that all systems, data, and operations meet or exceed HIPAA, HITECH, and industry best practices.
This position functions as the single point of accountability for IT infrastructure, cybersecurity, data protection, PHI safeguards, and security governance. The role requires both strategic leadership and hands-on execution in a regulated healthcare environment. This position directly safeguards organizational integrity, regulatory standing, and operational continuity.
Key Responsibilities Core Responsibilities Information Security Program Ownership- Architect and maintain a formal, organization-wide Information Security Program.
- Define and enforce security controls across applications, infrastructure, devices, and users.
- Establish policies for data classification, encryption, access control, logging, monitoring, and retention.
- Implement least-privilege access and zero-trust principles across systems.
- Continuously monitor evolving threat landscapes and proactively adapt controls.
- Serve as the internal authority for HIPAA Security Rule and Privacy Rule compliance.
- Ensure proper safeguards for the creation, storage, transmission, and disposal of PHI.
- Maintain compliance documentation, risk assessments, and audit evidence.
- Lead HIPAA risk analyses and remediation plans.
- Oversee Business Associate Agreements (BAAs) from a security and IT standpoint.
- Coordinate and support internal and external audits, assessments, and investigations.
- Conduct regular testing of disaster recovery and business continuity plans.
- Own the design, implementation, and maintenance of all IT systems, including cloud platforms, networks, endpoints, SaaS applications, and internal tools.
- Ensure systems are secure, resilient, and scalable.
- Implement and maintain backup and disaster recovery plans, business continuity procedures, and system redundancy strategies.
- Approve and govern all technology deployments and architectural changes.
- Oversee installation, configuration, and lifecycle management of hardware, software, and telecommunications systems.
- Ensure system reliability, uptime, and performance across all departments.
- Establish formal incident response plans and escalation procedures.
- Lead response efforts for…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).