Live opening · Posted 2 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
Requirements:
7+ years in security, with 3+ years in a regulated environment (HIPAA, finance, or government), must be evidenced in bullets, not just worked at a healthcare company.
Operational HITRUST or SOC2 experience managed/maintained an ongoing program, not just audit participation or a one-time certification push.
Structured risk quantification to non-technical leadership (documented cost vs. risk recommendations, not just identified risks).
Built or significantly improved security infrastructure in a cloud-native environment (GCP, AWS, or Azure).
Track record evaluating and managing external security vendors/consultants (scoping, risk assessment, delivery accountability).
Direct hands-on AI/LLM security work assessing risk in an AI product, governing internal LLM tool usage, or building controls for LLM systems.
Evidenced cost vs. risk judgment: a recommended against decision or a documented tradeoff, not just risk-averse defaults.
Comfortable as a solo IC with no team to delegate to, recent hands-on security work, not pure people management.
SOC2 Type II operational experience specifically.
CISSP / CISM / CCSP or equivalent certification.
EHR integration security familiarity with HL7 FHIR and Epic/Athena patterns.
Agentic AI systems experience built with agents (tool-calling, multi-step workflows) or assessed their security posture.
High-growth startup experience (Series A-C).
Direct enterprise customer-facing security work (questionnaires, CISO/trust reviews).
Experience
7-11 yrs
More openings worth a look
Recently tracked roles with full details and direct application links.