Manager - Information Security

NYU Langone

Manager - Information Security

New York, NY
Full Time
Paid
  • Responsibilities

    NYU Langone Health is a world-class, patient-centered, integrated academic medical center, known for its excellence in clinical care, research, and education. It comprises more than 200 locations throughout the New York area, including five inpatient locations, a children's hospital, three emergency rooms and a level 1 trauma center. Also part of NYU Langone Health is the Laura and Isaac Perlmutter Cancer Center, a National Cancer Institute designated comprehensive cancer center, and NYU Grossman School of Medicine, which since 1841 has trained thousands of physicians and scientists who have helped to shape the course of medical history. At NYU Langone Health, equity, diversity, and inclusion are fundamental values. We strive to be a place where our exceptionally talented faculty, staff, and students of all identities can thrive. We embrace diversity, inclusion, and individual skills, ideas, and knowledge. For more information, go to nyulangone.org , a nd interact with us on LinkedIn , Glassdoor , Indeed , __Facebook , Twitter , YouTube and Instagram .

    Position Summary:
    We have an exciting opportunity to join our team as a Manager - Information Security.

    In this role, the successful Manager reports to the Director of IT Controls and Regulatory Compliance and is responsible for managing, executing, and overseeing the Information Security Risk Assessment process and procedures to ensure NYU Langone Health (NYULH) is compliant with related regulations and industry requirements such as FISMA, PCI, HIPAA, and Meaningful Use.
    The candidates work will primarily focus on activities that involve the Research Department and will work collaboratively with stakeholders across the organization, including senior management, IT partners, and research staff to identify and manage cybersecurity risks.
    The candidate is expected to be fully aware of the enterprises security goals as established by its stated policies, procedures, and guidelines and to actively work towards upholding those goals.

    Job Responsibilities:

    * Develop and maintain the cyber enterprise risk assessment program to ensure systems adhere to and comply with all research requirements such as FISMA and multiple Data Usage Agreements.
    * Conduct security risk assessments according to FISMA, PCI, HIPAA, HITRUST requirements and develop risk management plans that mitigate any discovered risks.
    * Review contracts to ensure that security controls that align with NYULH policy and standards are documented.
    * Lead and direct external resources in the security assessment process. Set clear goals and expectations that accomplish objectives.
    * Develop and maintain key relationships with IT Business Partners and core teams to gain oversight on new initiatives, manage cybersecurity risks, and promote a risk aware culture. 
    * Act as liaison with the Internal Audit department to review key findings and develop remediation plans.
    * Maintain knowledge of regulatory requirements to provide detailed advisories on NYULMC IT Risk framework, policies, and standards.
    

    Minimum Qualifications:
    To qualify you must have a Bachelor s Degree Information technology related field. 6- 8 years IT Security Experience. 1- 2 years Supervisory or management or Lead Role. Excellent communication (both written and oral), organizational, interpersonal, leadership, analytical and problem-solving and Quick thinker, experienced in unconventional problem solving skills. Ability to deal effectively with a wide variety of company personnel, including senior management, frequently on interdepartmental or company-wide projects; and with outside consultants and vendors. Ability toHandle the stress related to balancing multiple issues and perspectives. BroadHands-on knowledge of network and IS security components, including firewalls, intrusion detection systems, anti-virus software, data encryption, and other industry-standard techniques and practices. Comprehensive knowledge of TCP/IP, network administration protocols, vulnerabilities and solutions.

    Preferred Qualifications:
    CISSP (Certified Information Systems Security Professional).

    Qualified candidates must be able to effectively communicate with all levels of the organization.

    NYU Langone Health provides its staff with far more than just a place to work. Rather, we are an institution you can be proud of, an institution where you'll feel good about devoting your time and your talents.

    NYU Langone Health is an equal opportunity and affirmative action employer committed to diversity and inclusion in all aspects of recruiting and employment. All qualified individuals are encouraged to apply and will receive consideration without regard to race, color, gender, gender identity or expression, sex, sexual orientation, transgender status, gender dysphoria, national origin, age, religion, disability, military and veteran status, marital or parental status, citizenship status, genetic information or any other factor which cannot lawfully be used as a basis for an employment decision. We require applications to be completed online.
    If you wish to view NYU Langone Health's EEO policies, please click here. Please click here to view the Federal "EEO is the law" poster or visit https://www.dol.gov/ofccp/regs/compliance/posters/ofccpost.htm for more information.

    NYU Langone Health provides a salary range to comply with the New York City Law on Salary Transparency in Job Advertisements. The salary range for the role is $112,034-153,443 Annually. Actual salaries depend on a variety of factors, including experience, specialty, education, and hospital need. The salary range or contractual rate listed does not include bonuses/incentive, differential pay or other forms of compensation or benefits.

    To view the Pay Transparency Notice, please click here

    Required Skills

    Required Experience

  • Qualifications